Skip to content
Offensive and defensive security, unified

Operate fearlessly in a hostile digital landscape.

NGT tests your defences, operates your SOC, and governs your compliance — from Dammam, Riyadh, Dubai, Manama and New Cairo.

Securing the Future, Today.

NGT Security Operations Centre
Who we are

A regional partner, accountable to every engagement

NGT is a cybersecurity firm headquartered in the Kingdom of Saudi Arabia, with teams across the UAE, Bahrain and Egypt.

We unify offensive and defensive capability under a single accountable team: penetration testing, SOC operations, GRC advisory, security platforms, and training. That structure means findings from one discipline inform the others rather than sitting in separate reports.

We are deliberately mid-sized — large enough to bring specialist talent to every engagement, small enough that our leadership remains personally accountable to every client. We hunt hostile actors using machine learning, behavioural analysis and automated defence, so material findings surface before they become incidents.

Vision

To be the most trusted cybersecurity partner in the Middle East — empowering organisations to operate fearlessly in an increasingly hostile digital landscape.

Mission

To deliver accessible, high-quality cybersecurity services that bridge the gap between advanced technology and real-world application — making next-generation security available to every organisation that needs it.

Securing the Future, Today.

Service overview

Six pillars, one 360° approach

Our offerings are structured around six strategic pillars, so coverage runs from attack simulation through to culture without gaps between disciplines.

Pillar 01

Penetration Testing

Comprehensive ethical hacking that simulates real-world attacks to identify, exploit, and remediate critical vulnerabilities.

  • Ethical hacking and red teaming
  • Vulnerability exploitation and reporting
  • Continuous security assessments
  • Cloud-based and on-premise engagements
Pillar 02

SOC as a Service

A fully managed 24/7 Security Operations Centre, continuously monitoring, detecting and responding to threats across your digital environment.

  • Real-time 24/7 threat monitoring
  • Incident containment and eradication
  • Behavioural anomaly analysis
  • Business continuity assurance
Pillar 03

Penetration Test Platforms

SaaS and automated testing platforms providing continuous security assessment for environments that change weekly.

  • Automated continuous scanning
  • Cloud and on-premise deployment
  • Machine learning-driven detection
  • Integration with development pipelines
Pillar 04

Training and Awareness

Programmes that turn employees from a potential vulnerability into a proactive human firewall.

  • Security-conscious culture programmes
  • Anti-phishing and social engineering defence
  • Role-specific security training
  • Ongoing awareness campaigns
Pillar 05

GRC Standards

Guidance for achieving and maintaining international security frameworks and regulatory compliance.

  • ISO 27001 and ISO 27002
  • NIST Cybersecurity Framework
  • GDPR and data privacy
  • ECC — Essential Cybersecurity Controls
Pillar 06

Security Products and Platforms

Selection, deployment and lifecycle management of the security technology your estate runs on — sized to your environment rather than to a vendor price list.

  • Vendor-neutral technology selection
  • Deployment and integration
  • Licence and lifecycle management
  • Ongoing tuning and optimisation
Why NGT

What the engagement actually gets you

360° coverage

From attack simulation to real-time defence, and from compliance through to culture.

24/7 operations

Our Security Operations Centre runs continuously, with defined escalation paths.

Proactive, not reactive

We hunt threats using behavioural analysis and automated detection rather than waiting on alerts.

Certified expertise

International certifications backed by hands-on delivery experience across the region.

Local presence, global standards

Saudi-based engineers working to internationally recognised practice.

Tailored engagements

Scoped for each organisation\u2019s risk environment, not sold from a fixed catalogue.

How we work

A continuous security lifecycle

Security is not a project with an end date. Every engagement follows the same five stages, and the fifth returns to the first.

  1. 01

    Discover

    Assess current security posture and risks.

  2. 02

    Design

    Build a tailored cybersecurity strategy.

  3. 03

    Deploy

    Implement systems and controls.

  4. 04

    Monitor

    Continuous threat monitoring and reporting.

  5. 05

    Evolve

    Ongoing improvement and reassessment.

Who we serve

Sectors where the stakes are highest

Small and medium businesses

Scalable, enterprise-level protection sized to the organisation.

Government agencies

Compliance-driven secure systems aligned to national frameworks.

Public safety organisations

Mission-critical protection where downtime is not an option.

Financial institutions

High-security environments under continuous regulatory scrutiny.

Compliance and certifications

The frameworks we work to

Our advisory practice is built around the frameworks that govern our clients\u2019 sectors. Each engagement maps controls to the standard that applies, and the evidence trail is designed for audit from the outset.

  • ISO 27001 Information Security Management Systems
  • ISO 27002 Security controls best practice
  • NIST Framework Cybersecurity risk management
  • GDPR Data protection regulation
  • ECC Essential Cybersecurity Controls
24/7
SOC operations
6
Service pillars
5
Regional offices
5
Frameworks covered
Track record

Trusted across government, healthcare and finance

We work with organisations whose operations cannot pause — and whose regulators do not accept best effort.

  • Al-Ahsa Municipality
  • General Authority for the Care of the Two Holy Mosques
  • Aljabr Finance
  • Almoosa Specialist Hospital
  • Avalon Pharma
  • Eastern Province Municipality
  • KACST
Technology partners

The vendors our clients standardise on

We hold direct partnerships with the technology vendors that underpin our engagements, and we stay vendor-neutral in what we recommend.

  • Barracuda
  • Cloudian
  • Dell Technologies
  • Hewlett Packard Enterprise
  • Lenovo
  • Microsoft
  • Oracle
  • Pure Storage
  • Red Hat
  • Veeam
  • Veritas
  • VMware
Our team

The people who deliver the engagement

Cybersecurity experts, engineers and consultants who combine deep technical practice with real-world execution — the same people who scope your engagement are the people who run it.

  • Ahmed El Debaby

    Ahmed El Debaby

    Chief Executive Officer

  • Mohamed Omar

    Mohamed Omar

    Technical Head & NOC Team Leader

  • Amal Amr

    Amal Amr

    Senior Unix / Linux System Engineer

  • Nour Ahmed

    Nour Ahmed

    Server & Virtualization System Engineer

  • Ahmed Gomaa

    Ahmed Gomaa

    Server & Virtualization System Engineer

  • Mohamed Salem

    Mohamed Salem

    Senior Network & Security Engineer / Project Manager

  • Hassan Jaber

    Hassan Jaber

    Technical Consultant / Project Manager

  • Mohammed Adel

    Mohammed Adel

    Senior Network & Security Engineer

Start with an assessment, not a sales call.

Tell us what you are protecting and what worries you about it. We will come back with a scoped approach and a view of the residual risk.

Start a conversation