Emirates NBD
The threat surface is massive. Emirates NBD operates across 13 countries - including the UAE, Saudi Arabia, the UK, Germany, and Russia - serving over 20 million customers. With AED 836 billion in total assets and nearly all financial transactions (97%) happening digitally outside branches, the attack vectors multiply. Their digital platform Liv alone approaches half a million users, a concentrated target for credential stuffing, API exploitation, and fraud engineering. The cybersecurity function here spans a financial conglomerate that includes retail banking, corporate and institutional banking, Islamic banking, investment banking, and global markets. That means securing not just customer-facing apps but treasury systems, brokerage operations, and cross-border payment rails across multiple regulatory regimes. The geographic footprint - from Dubai headquarters to branches in Bahrain and representative offices in China and Indonesia - demands defense-in-depth strategies calibrated to varied compliance standards and regional threat intelligence. As a self-described pioneer in digital banking in the MENAT region, Emirates NBD has bet heavily on digital transformation. That bet creates a specific operational reality for security teams: high transaction volume on digital rails, mobile-first attack surfaces, and the persistent challenge of securing legacy banking infrastructure while pushing cloud-native product development. The bank's role as Principal Banking Partner of COP28 also signals ESG-linked risk considerations that extend into the cyber domain, particularly around critical infrastructure resilience and supply chain security.
The threat surface is massive. Emirates NBD operates across 13 countries - including the UAE, Saudi Arabia, the UK, Germany, and Russia - serving over 20 million customers. With AED 836 billion in total assets and nearly all financial transactions (97%) happening digitally outside branches, the attack vectors multiply. Their digital platform Liv alone approaches half a million users, a concentrated target for credential stuffing, API exploitation, and fraud engineering.
The cybersecurity function here spans a financial conglomerate that includes retail banking, corporate and institutional banking, Islamic banking, investment banking, and global markets. That means securing not just customer-facing apps but treasury systems, brokerage operations, and cross-border payment rails across multiple regulatory regimes. The geographic footprint - from Dubai headquarters to branches in Bahrain and representative offices in China and Indonesia - demands defense-in-depth strategies calibrated to varied compliance standards and regional threat intelligence.
As a self-described pioneer in digital banking in the MENAT region, Emirates NBD has bet heavily on digital transformation. That bet creates a specific operational reality for security teams: high transaction volume on digital rails, mobile-first attack surfaces, and the persistent challenge of securing legacy banking infrastructure while pushing cloud-native product development. The bank's role as Principal Banking Partner of COP28 also signals ESG-linked risk considerations that extend into the cyber domain, particularly around critical infrastructure resilience and supply chain security.