Enterprise On-Premise Edition

GRC Compliance,
Automated.

Deploy Arduredu inside your network in under 30 minutes. AI-powered evidence collection across 12+ frameworks — SAMA, NCA, ISO 27001, GDPR and more. Nothing leaves your infrastructure.

12+
Frameworks
500+
Controls Mapped
30min
Deploy Time
install.sh — Arduredu Enterprise Setup
$bash install.sh --license XXXXX-XXXXX-XXXXX
✅ License verified — Organisation: National Bank
📦 Installing dependencies...
🗄️ Initializing database...
🤖 Downloading AI model (qwen2.5:14b)...
$Select frameworks to activate:

Select your compliance frameworks:

SAMA CSF
NCA-ECC
NCA-CCC
ISO 27001
SOC 2
GDPR
NIS2
DORA
PCIDSS
✅ 3 frameworks selected — 292 controls will be activated

Built for regulated
organizations

Every feature designed for the realities of banking, government, and enterprise compliance — not generic SaaS.

🏠

100% On-Premise

Full deployment on your own servers. Not a cloud connector — the entire platform runs inside your network. Data residency guaranteed.

🤖

On-Premise AI Engine

Local LLM (qwen2.5:14b via Ollama) reads your policy documents and extracts verbatim evidence per control. No data sent to OpenAI or any cloud.

👤

Human-Reviewed Evidence

Every AI-generated evidence item is held for review. A CISO, DPO, or compliance officer approves before it counts toward any score.

🔍

Technical Scanner

On-premise agent reads your live systems directly — firewall rules, SSL certificates, patch status, log retention — real proof, not policy claims.

🎯

Audit Scopes

Create named scopes for specific regulatory requests. When NCA asks for 18 specific controls — not all 80 — Arduredu calculates only those.

🧩

Custom Frameworks

Add your own internal compliance framework with custom controls. Import via CSV or build control by control. Works like any built-in framework.

12 frameworks,
one platform

Each framework is mapped control by control — not a generic checklist, but the real evidence each regulator actually asks for.

SAMA Cybersecurity Framework
The Saudi Central Bank's comprehensive cybersecurity framework for all licensed financial institutions. Covers governance, risk management, operations security, and third-party risk across 28 domains.
131
Controls
28
Domains
36
High Automation
Automation Feasibility
High
36
Medium
45
Low
29
N/A
21
NCA Essential Cybersecurity Controls
The National Cybersecurity Authority's baseline controls (ECC 2:2024) mandatory for all government entities and critical national infrastructure in Saudi Arabia.
80
Controls
5
Domains
28
High Automation
Automation Feasibility
High
28
Medium
32
Low
14
N/A
6
NCA Cloud Cybersecurity Controls
NCA CCC 2:2024 — required for any organization using cloud services in Saudi Arabia. Extends ECC with cloud-specific governance, access management, encryption, and data residency controls.
24
CST Controls
4
Domains
Cloud Cybersecurity Controls for Cloud Service Tenants. Covers governance, defense (17 subdomains), resilience, and third-party cloud security requirements.
ISO/IEC 27001:2022
The international standard for information security management systems. Required for certification and widely accepted across banking, enterprise, and government sectors globally.
57
Controls
11
Annexe A Sections
Covers organizational controls, people controls, physical controls, and technological controls across Annex A. Evidence collected from policy documents and live system scans.
SOC 2 Trust Services Criteria
AICPA Trust Services framework for service organizations. Required by US enterprise customers and increasingly demanded in global technology procurement.
38
Controls
9
Trust Categories
Covers CC1-CC9 Trust Services Criteria including security, availability, processing integrity, confidentiality, and privacy. Both SOC 2 Type I and Type II evidence supported.
EU General Data Protection Regulation
Mandatory for any organization processing EU personal data. Arduredu maps the core GDPR obligations to specific evidence requirements including ROPA, DPIAs, and breach procedures.
15
Controls
Covers lawful basis, privacy notices, data subject rights, breach notification (72-hour), DPO appointment, data processing agreements, encryption, and audit logging.
Digital Operational Resilience Act
EU regulation effective January 2025, mandatory for all financial institutions operating in the EU. Focuses on ICT risk management, incident reporting, and third-party risk.
38
Controls
Covers ICT risk framework, incident classification and reporting, digital operational resilience testing, and third-party ICT provider risk management.
EU NIS2 Directive
EU cybersecurity directive in effect from 16 January 2023 (Sweden: SFS 2025:1506, effective January 2026). Mandatory for essential and important entities across 18 sectors.
37
Controls
Covers risk management measures, incident reporting (24h/72h thresholds), business continuity, supply chain security, and multi-factor authentication. Fines up to €10M.

Two evidence paths,
one platform

1

Upload Policy Documents

Drop PDFs, Word docs, or text files into the file manager. The on-premise AI watcher detects them automatically and begins processing.

2

AI Extracts Evidence

The local AI model reads each document and extracts the verbatim sentence that proves each control — with a confidence score. Nothing is sent externally.

3

Technical Scanner Runs

The on-premise agent reads your live systems — firewall rules, SSL certificates, patch status, log retention, backup recency — real proof, not policy claims.

4

Human Reviews & Approves

Every AI-generated item is held for review. A CISO, DPO, or compliance officer approves or rejects before anything counts toward the score.

5

Score Updates Live

The dashboard updates in real time showing your verified compliance score — traceable to its source, control by control, framework by framework.

6

Share with Auditors

Generate a scoped auditor link showing only the controls they need to see. Download audit-ready Excel reports per framework. No login required for auditors.

Deploy in 30 minutes

On a fresh Ubuntu 22.04 or 24.04 server. No internet required after installation.

1

Verify your license

Enter your license key on this page or pass it to the installer directly.

2

Copy package to server

Transfer via USB, SCP, or internal network. No internet dependency.

scp arduredu-enterprise-[version].tar.gz root@YOUR_SERVER_IP:~/
3

Select frameworks & run installer

Pass your license key and the frameworks your organization is licensed for.

tar -xzf arduredu-enterprise-[version].tar.gz
cd arduredu
./install.sh
4

Platform is live

Access at http://YOUR_SERVER_IP:3000 — configure SSL and create your admin account.

Select frameworks for your installation:
SAMA
SAMA CSF
NCA-ECC
Essential Controls
NCA-CCC
Cloud Controls
NCA-DCC
Data Controls
ISO27001
ISO 27001
SOC2
SOC 2 TSC
GDPR
EU GDPR
NIS2
EU NIS2
DORA
EU DORA
SDAIA
PDPL
UAE-IA
UAE IA
PCIDSS
PCI DSS v4

Verify before
you install

Enter your enterprise license key to confirm it is valid, check which frameworks are included, and see your expiry date before downloading.

Organisation name and licensed user count
Which frameworks are included in your license
License expiry date and renewal status
Download link unlocked after verification

🔑 Verify License Key

Enter the key provided by Arduredu or your authorized reseller.

Choose your edition

All editions are on-premise. No per-user fees. No cloud dependency.

Starter
Single Framework
For organizations that need to demonstrate compliance with one specific regulatory framework.
1 compliance framework
Up to 5 users
AI evidence extraction
Technical scanner
Audit reports & export
Email support
Contact Sales
Enterprise
Full Suite
For large organizations or managed service providers deploying Arduredu at multiple customer sites.
All 12+ frameworks
Unlimited users
White-label option
Multi-tenant deployment
Docker/automated installer
Dedicated support engineer
SLA guarantee
Contact Sales
Enterprise Download

Deploy Arduredu in 30 Minutes

One command deploys the complete platform — AI engine, compliance database, all 12 frameworks, and 27+ connectors. On your server. Your data stays with you.

📦
Arduredu Enterprise v3.0
Docker Edition — July 2026
📁 Size: 719 KB
🐳 Docker Compose
🖥 Ubuntu 20.04+
⚡ One-command install
🔒 On-premise
wget [secure-link-from-email] && tar -xzf arduredu-enterprise-[version].tar.gz && cd arduredu && ./install.sh
⬇ Download Package 📄 Installation Guide
🐳
Docker Compose
6 containers: Backend, Frontend, PostgreSQL, Redis, Nginx, Ollama AI
One Command Install
./install.sh handles everything — validation, SSL, database, AI model
🔒
License Protected
License key required. Contact sales@arduredu.com for enterprise pricing

Need a license key? sales@arduredu.com · Need help? support@arduredu.com