Have you updated to 7.0.9.6 yet? Let us know in the comments if you’ve noticed the performance improvements!

The primary function of Tasreeh is to bridge the gap between an organization's security posture and the requirements set by the UAE’s cybersecurity framework.

Since specific release notes for this exact incremental version are proprietary, this post focuses on the themes relevant to recent UAE cybersecurity mandates (such as NESA compliance), the importance of patch management, and the specific naming conventions used by CICPA, making it relevant and engaging for IT professionals in the region.

| Area | Previous Practice | Required under Tasreeh 7.0.9.6 | |------|------------------|--------------------------------| | IT controls | Rely on SOC 1 or management assertion | Independent test of automated controls (e.g., ITACs) | | Email confirmations | Accept from corporate email | Verify DNS, SPF/DKIM, or use portal-based platform | | Scepticism | Implicit | Explicit documented step in every cycle |

With , we are seeing improved mapping capabilities for recent regulatory updates. As standards evolve to combat modern threat vectors (including ransomware resilience and cloud security controls), the tool must evolve to measure them. This version introduces refined logic for compliance scoring, ensuring that your "Green" status truly reflects your security posture, rather than a software oversight.