Skip to Content
  1. ETERAX
  2. AI & Cybersecurity
  3. Cybersecurity
AI & Cybersecurity

Cyber security in Dubai for growing companies

ETERAX GROUP offers cybersecurity consulting in Dubai for growing companies. We assess your security baseline (accounts, two-factor login, password vault, backups, access reviews) and specify what to put in place, map your data protection against the UAE PDPL and the EU GDPR, and draft the records a bank or client asks for. We also scope and coordinate the IT set-up for a new company.

  • Security baseline
  • UAE PDPL
  • EU GDPR
  • IT for new companies
Security baseline

Six controls that reduce common risks.

Cyber security in Dubai, or anywhere, starts with the basics done properly. We assess these six, specify the fixes and write down the evidence.

01

Accounts

One owner for every account, no shared logins, and a clean list of who has access to what. Recommended practice: leavers are removed the same day.

02

Two-factor login

Switched on for email, banking, cloud tools and admin panels, with app-based codes or security keys instead of SMS where possible.

03

Password vault

A company vault for every shared credential. People stop keeping passwords in chats and spreadsheets.

04

Device policy

Disk encryption, screen locks, updates and a lost-device procedure for laptops and phones, written on one page your team can follow.

05

Backups

Mail, files and key systems copied to a place an attacker can't reach, and a restore test, so you know the backup works.

06

Access reviews

A short review every quarter: who has access, who still needs it, which accounts are unused.

Data protection

UAE PDPL and EU GDPR, mapped for your company.

If you handle personal data of clients or staff, you need records that show how. We prepare data protection records for UAE companies, and for EU rules where they apply, for review by your lawyer.

  • Data inventory: what personal data you hold, where it sits, who can reach it.
  • Record of processing: the purposes and legal basis for each use, in one table.
  • Supplier list: the tools and vendors that process data for you, and where they are based.
  • Retention schedule: how long you keep each type of data and how it is deleted.
  • Breach and requests procedure: who does what, in which order, if something goes wrong or a person asks for their data.
  • Policy pack: a privacy notice and internal rules, prepared for review by your lawyer.

We map your company against the PDPL and the GDPR and prepare the records. We don't give legal opinions or guarantee compliance. For the legal conclusion we work with your lawyer. Looking for ISO 27001 in Dubai? The baseline and the records above are what that work starts from.

IT for a new company

Scoped once, and owned by you.

A new company needs working IT in the first week: a domain, mail that reaches people, and accounts you control. We specify it, select the provider and manage the setup.

  1. Domain and email records

    We specify that the domain is registered in your name, with the mail records that help keep your messages out of spam and protect against spoofing, and manage the provider who does it.

  2. Microsoft 365 or Google Workspace

    We choose with you and specify the setup: users, shared mailboxes, storage, sharing rules and two-factor login from day one. The provider configures it under our management.

  3. Devices

    We specify encryption and update rules for laptops and phones, so a lost device is less likely to become a data breach.

  4. Migration

    We plan the move of mail, calendars and files from the old setup, with a cutover plan, and manage the provider who carries it out.

EETERAX advises and manages the project. Implementation is done by specialist providers we select and manage. ETERAX stays your single point of contact for advice and project management.
How we work

Assess, plan, hand over.

  1. Free assessment

    Fifty minutes on your company, tools and what a client or bank asked for. You get a proposal within 48 hours.

  2. Baseline check

    We review accounts, devices, backups and data, and write the gap list in plain language, in priority order.

  3. Plan and document

    We guide you in closing the gaps, and draft the records and policies for review by your lawyer.

  4. Handover and review

    Your team gets a one-page routine, and the access review goes in the calendar.

Questions

Asked before every project.

What is a cybersecurity baseline?

A baseline is the short list of controls every company should have before anything advanced: managed accounts, two-factor login, a password vault, a device policy, tested backups and regular access reviews. It stops most of the incidents small companies actually have, and it is the first thing a bank, auditor or client asks about.

Does the UAE have a data protection law?

Yes. The federal Personal Data Protection Law (PDPL, Federal Decree-Law 45 of 2021) covers personal data in the UAE, and free zones such as DIFC and ADGM have their own data protection regimes. Which rules apply to you depends on where you are licensed and whom you serve. We map your company against them, and a lawyer confirms any legal conclusion.

Do we need to follow GDPR if we are in Dubai?

Possibly. GDPR can apply to a company outside the EU when it offers goods or services to people in the EU or monitors their behaviour. If you have EU clients, staff or website visitors, we check it and prepare the records for both regimes together.

Can you help with ISO 27001 in Dubai?

We help you specify the baseline and prepare the records an ISO 27001 effort starts from: asset lists, access control, backup evidence, supplier records. Certification itself is done by an accredited body, and we don't issue it or promise the outcome.

How do you handle IT for a new company?

We scope and coordinate your IT set-up: we choose the domain, email and productivity setup (Microsoft 365 or Google Workspace) with you, specify the configuration, and manage the specialist provider that implements it, including moving mail and files from an old setup. You receive an admin handover note, so you own every account.

How do we start, and what does it cost?

Book the free 50-minute assessment. You receive a written proposal within 48 hours with a fixed price and a clear scope. Nothing starts until you approve it.

Free assessment

Know where you stand.

Fifty minutes on your accounts, devices, data and what a bank or client has asked for. A written proposal within 48 hours. No obligation.