Company
Global Presence
New Delhi, India is our head office. In every other region we serve, engagements are delivered through working partners on the ground, each scoped to the regulator our customers there actually have to answer to.
India
Head Office
IST (UTC+5:30)
RBI, CERT-In, and DPDP Act
Engagements delivered from India are scoped against CERT-In requirements and the DPDP Act ahead of its phased enforcement.
UAE
Delivered via partners
GST (UTC+4)
UAE NESA / Dubai Electronic Security Center
Engagements in the UAE are scoped against the UAE Information Assurance Standards and NESA requirements for critical infrastructure.
Saudi Arabia
Delivered via partners
AST (UTC+3)
SAMA & NCA Essential Cybersecurity Controls
Engagements in Saudi Arabia are scoped against the SAMA Cybersecurity Framework for financial institutions and NCA ECC requirements for regulated entities.
Singapore
Delivered via partners
SGT (UTC+8)
MAS TRM Guidelines & PDPA
Engagements in Singapore are scoped against MAS Technology Risk Management guidelines for financial institutions across the ASEAN region.
UK
Delivered via partners
GMT/BST (UTC+0/+1)
UK GDPR & NCSC Cyber Essentials
Engagements in the UK are scoped against UK GDPR compliance requirements and NCSC Cyber Essentials / Cyber Essentials Plus certification.
USA
Delivered via partners
ET (UTC-5/-4)
NIST CSF, HIPAA, and SOC 2
Engagements in the USA support SaaS and healthcare clients on SOC 2 attestation and HIPAA Security Rule compliance programs.
Our partner network lets us bring the same delivery standard — regulatory-first scoping, evidence-backed reporting, a named point of contact — to organizations well outside our head office, without pretending a partner-delivered engagement is something it isn't.
Have a question this page didn't answer?
TIARA can go deeper on this, grounded in the same platform facts.