Security leadership, minus the noise.

Field notes on cyber risk, GRC and AI from a practising CISO in the UAE — written for people who have to make the call on Monday morning.

  • From ISO 27001 to ISO 42001

    From ISO 27001 to ISO 42001

    This is practical guidance. It is not the text of ISO/IEC 27001:2022 or ISO/IEC 42001:2023, and it is not a certificate. Zaheer Ikbal, Founder, CyHelm For years, ISO/IEC 27001:2022 has been the…

This week · Cyber Pulse

Explore by topic

All articles →

AI & Cybersecurity

Local LLMs, AI threats, and securing AI in the enterprise.

Compliance & Governance

ISO 27001, UAE PDPL, NESA/IAS and audit-ready programmes.

CISO & Leadership

Board reporting, budgets, and aligning security with business.

Threats & Trends

Ransomware economics, malware-free attacks and threat intelligence.

Zero Trust & Architecture

SASE, CNAPP, network design and building for assumed breach.

Latest analysis

View all articles →

The Monday Brief

Ten minutes on Monday. Ready for the week.

  • Top threats and actively exploited CVEs, ranked by real risk
  • Regulation watch for the UAE & GCC (PDPL, NESA/IAS, CBUAE)
  • One practical playbook or template you can use the same day

No spam — unsubscribe in one click. See our privacy policy.

Zaheer Ikbal

Written by a practitioner

Zaheer Ikbal

20+ years building security programmes for enterprises in the UAE. Everything here comes from real implementations, audits and incidents — not vendor brochures.

CCISO · CISSP · CISM · CISA · CEH · MBA