New framework helps Gulf organizations assess AI readiness, improve security governance, and align AI initiatives with global standards
SANS Institute, a global leader in cybersecurity training and certifications, has launched the Gulf Edition of its AI Security Maturity Model eBook, providing organizations across the region with a practical framework to assess AI security readiness, strengthen governance, and build resilient AI security programs.
As enterprises across the Gulf accelerate AI adoption, they face growing challenges including data leakage, unverified AI models, compliance requirements, and increasingly sophisticated AI-enabled cyber threats. Developed by Chris Cochran, Field CISO and Vice President of AI Security at SANS Institute, the framework is designed to help organizations securely scale their AI initiatives while maintaining effective oversight and risk management.
“Security leaders can no longer rely on reactive approaches. They need a consistent way to evaluate their readiness, establish stronger governance, and build resilience as AI becomes integral to business operations.”
Chris Cochran, Field CISO and Vice President of AI Security, SANS Institute
The AI Security Maturity Model is built around three core pillars: Protect, Utilize, and Govern. Together, these pillars help organizations secure AI systems, use AI to enhance cybersecurity operations, and establish robust governance practices for responsible AI adoption.
The framework defines five levels of AI security maturity, ranging from organizations with limited governance structures to enterprises operating advanced, adaptive AI security programs. It includes practical controls, measurable indicators, recommended actions, and self-assessment tools to help organizations benchmark their current capabilities and identify areas for improvement.
Aligned with globally recognized standards, including the NIST AI Risk Management Framework, ISO/IEC 42001, the EU AI Act, and the CSA AI Controls Matrix, the Gulf Edition helps enterprises translate AI security strategies into operational execution while supporting international compliance requirements.
“The Gulf Edition of the AI Security Maturity Model addresses the region’s unique priorities and regulatory landscape, helping organizations build trust in AI, strengthen cyber resilience, and enable innovation with confidence.”
Ned Baltagi, Managing Director, META, SANS Institute
To support the launch, SANS Institute will host a regional webcast on August 4, 2026, offering practical guidance on evaluating AI security maturity and building resilient AI governance frameworks.
With AI becoming increasingly embedded in business operations, the new Gulf-focused framework aims to help organizations adopt AI confidently while managing emerging security, governance, and compliance risks.
