We give regulated organizations across the Middle East control of their firewall policy.
OpClerk builds one thing, deliberately. A firewall policy control plane for the banks, operators, and public bodies that regulators hold to account — deployed inside their own perimeter, never ours.
One control plane for the policy that decides what your network allows.
OpClerk makes OpClerk PolicyManager — a control plane that unifies every firewall rule across every vendor, proves compliance against the frameworks regional regulators audit, and governs every change with a full approval trail. It runs inside your own environment, so no rule, IP, or configuration ever leaves your perimeter.
We serve the people who have to answer for that policy: security architects, network and firewall teams, and the compliance and audit functions who must prove — not just assert — that every rule is accounted for. The product is built to turn scattered, undocumented policy into a system you can govern and evidence on demand.
One loop, deployed inside your own environment.
Built for the organizations a regulator holds to account.
OpClerk is made for regulated environments across the GCC and Egypt — where firewall policy is examined, not assumed, and where the answer to an auditor has to be evidence.
Banks & financial services
Firewall estates several mergers deep, examined by the central bank and the card schemes, where audit evidence is a standing request.
Telecom operators
National networks spanning dozens of firewalls and clouds, where change has to move fast without losing the approval trail.
Government & public sector
Sovereign environments where policy data cannot leave the perimeter and least privilege has to be provable across vendors.
Insurance
Regulated carriers carrying sensitive data, holding the same segmentation and access obligations as the banks they sit beside.
Four commitments that shape every decision we make.
They read like the product itself — secure, precise, and plain. We would rather state less and prove it than claim more than we can show.
Sovereignty first
Your policy data never leaves your perimeter. OpClerk deploys inside your environment — on-premises or in your sovereign cloud — and no rule, IP, configuration, or log is ever sent to a vendor's cloud. For a regulated organization in this region, that is the precondition, not a feature.
Precision and auditability
Every claim the product makes is backed by something you can inspect: a rule, a reachability proof, an approval, a timestamp. We render network and policy data exactly, and design every workflow to leave a complete trail — because precision you cannot audit is just an opinion.
Plain, honest claims
We state outcomes, not adjectives. We describe what the product is designed to help you achieve against a framework — not certifications we do not hold, and not customer names we cannot share. If we say it, we can show it.
Regional commitment
We foreground the frameworks regional regulators actually audit — SAMA CSF, NCA ECC and CCC, UAE NESA / IA, CBE, and SWIFT CSP — alongside ISO 27001, PCI DSS, and NIST. The Middle East is the design center of this product, not a localization added at the end.
Start with your own policy.
The most useful first conversation is a scoped walkthrough on your environment, your frameworks, and your perimeter. No policy data leaves your control.
Request a demo
A focused session on a sample of your own policy — inside your perimeter, nothing leaves.
Follow OpClerk
Company updates, regional framework notes, and the easiest way to reach the team.
See OpClerk in your environment.
A scoped walkthrough on your policy, your frameworks, your perimeter — deployed inside your own control, nothing leaves.