About
A compliance platform built in the region it serves.
VerifiX is developed by ITSEC for regulated entities in the UAE and wider GCC — VASPs, banks, fintechs, capital markets firms, and corporate service providers.
More about our parent company: itsecnow.com
Why we built it
The problem we kept seeing
Regulated firms in the UAE were assembling a compliance stack out of four or five vendors — one for documents, one for screening, one for company data, one for chain analytics — and then rebuilding the audit trail by hand across all of them.
The engineering effort landed on product teams, the evidence burden landed on the compliance officer, and neither side could change a threshold without involving the other.
VerifiX exists to collapse that into one platform, one API, and one audit trail — with the regional journeys already built.
How we work
Four operating principles
Regional by design
Built first for UAE and GCC obligations and data residency, rather than a global product with a regional bolt-on.
Evidence over assertion
Every decision leaves a retained artefact. If it cannot be shown to an auditor, we do not consider the check complete.
Compliance owns policy
Thresholds, lists, and rules belong to the compliance function — not to a backlog ticket in an engineering sprint.
Honest scope
We say plainly what the platform does and does not do. Presets are a starting point, never a substitute for your own risk assessment.
Governance
Certifications and assurance
Independent certifications, audit reports, and regulatory registrations are stated only where they can be evidenced. ITSEC holds ISO/IEC 27001 and ISO 22301 certification, and VerifiX is built to meet the UAE Personal Data Protection Law and the UAE encryption regulations. Our security architecture and data residency position are documented on the security page.
Want to meet the team?
We will put you in front of the people who build and run the platform, not only an account manager.


