Manage ISR Controls
Assign owners, track progress and document how applicable DESC requirements are implemented.
Cybersecurity / Middle East
Strengthen information security across Dubai Government.
Section 1 — About DESC ISR
The Dubai Electronic Security Center (DESC) Information Security Regulation (ISR) establishes minimum information-security requirements for Dubai Government Entities. It is designed to support continuity of critical business processes, reduce information-security risk and protect the confidentiality, integrity and availability of government information.
The ISR is organized across 13 domains covering governance, operational and assurance requirements. Entities are expected to review the applicability of controls and implement security measures appropriate to their risks and environment.
Section 2 — DESC ISR with Controllo
Controllo brings ISR controls, implementation, risk, evidence and monitoring into one workspace.
Assign owners, track progress and document how applicable DESC requirements are implemented.
Manage asset, organizational and vendor risks while keeping them linked to relevant controls.
Maintain policies, procedures and supporting evidence against the requirements they help demonstrate.
Connect AWS, Azure, GCP, Microsoft 365 and Google Workspace to bring cloud, configuration and identity signals into the wider security view.
Maintain third-party risk information alongside applicable security requirements.
Analyze implementation descriptions, policies and evidence against individual controls to identify potential gaps and detailed recommendations.
See mappings between DESC ISR controls and similar requirements across other cybersecurity frameworks.
Section 3 — Why Controllo for DESC ISR?
Keep controls, risks and implementation together.
Know which documents support each requirement.
Bring cloud and identity signals closer to compliance.
Use Secura AI before formal review.
Manage Dubai Government cybersecurity requirements, risk and evidence from one connected GRC platform.