Cisco Launches Sovereign Critical Infrastructure Portfolio Across EMEA With Saudi Arabia in Focus

Cisco has launched its Sovereign Critical Infrastructure portfolio across EMEA, offering GCC enterprises and governments air-gapped, on-premises control over critical digital workloads, with Saudi Arabia as a key focus market.

Layla Haddad
Cyber Policy & Digital Risk Correspondent4 min read
Cisco Sovereign Critical Infrastructure portfolio launch across EMEA targeting Saudi Arabia and GCC enterprise environments

Cisco Sovereign Critical Infrastructure portfolio launch across EMEA targeting Saudi Arabia and GCC enterprise environments

Cisco has officially launched its Sovereign Critical Infrastructure (SCI) portfolio across Europe, the Middle East, and Africa, offering enterprises and government bodies a purpose-built framework to manage sensitive digital workloads with full operational autonomy — and with Saudi Arabia positioned as a key target market.

The launch signals a significant shift in how global technology vendors are approaching the GCC market, where data sovereignty, regulatory compliance, and protection of critical national infrastructure have become board-level priorities.

What the SCI Portfolio Covers

The SCI portfolio brings together Cisco's core product lines under a single sovereignty-first architecture. This includes networking, security, compute, collaboration, network management, AI capabilities, and Splunk — Cisco's security intelligence and observability platform acquired in 2024.

Crucially, the entire portfolio can be deployed and operated within air-gapped, on-premises physical environments, eliminating reliance on external cloud providers or third-party data routing. For organisations in regulated sectors — government, defence, energy, financial services, and healthcare — this addresses a long-standing gap between innovation ambition and data control requirements.

Cisco has structured the SCI offering around three deployment models:

  • Fully on-premises and air-gapped — for maximum control, zero external dependency
  • Hybrid sovereign — combining on-premises infrastructure with selective cloud services
  • Sovereign cloud — for organisations requiring scalability while maintaining jurisdiction over their data

Gordon Thomson, President of Cisco EMEA, emphasised that the portfolio is not a one-size-fits-all solution, but a flexible architecture designed to meet organisations at their current stage of digital sovereignty maturity.

Saudi Arabia: A Strategic Focus

Saudi Arabia receives direct attention in the launch communications, reflecting the Kingdom's accelerating push to modernise its digital infrastructure under Vision 2030 and the National Transformation Program.

Bader Almadi, Vice President of Cisco Saudi Arabia, noted that organisations across the Kingdom are increasingly grappling with a specific challenge: how to adopt AI and modernise critical systems without surrendering sovereignty over sensitive data and operational infrastructure.

The SCI portfolio is positioned as Cisco's direct answer to that challenge — giving Saudi enterprises the ability to run AI workloads, security operations, and critical applications within fully controlled environments, aligned with guidance from bodies such as the Saudi National Cybersecurity Authority (NCA).

This aligns closely with the NCA's Essential Cybersecurity Controls (ECC) and Cloud Cybersecurity Controls (CCC), which mandate strict requirements around data residency and infrastructure security for organisations operating in the Kingdom.

Enterprise Support Built In

A frequently overlooked challenge in sovereign infrastructure deployments is the support gap — vendors traditionally offer support through cloud-connected diagnostics, which is incompatible with air-gapped environments.

Cisco has addressed this directly. Its Customer Experience (CX) organisation now provides dedicated support and professional services specifically designed for air-gapped, on-premises, and hybrid sovereign configurations. This is a meaningful differentiator for enterprise procurement teams evaluating sovereign infrastructure vendors.

Why This Matters for GCC Security Leaders

For CISOs and IT decision-makers across the GCC, this launch is worth tracking closely. Three factors make it particularly relevant:

1. Regulatory momentum is accelerating. Saudi Arabia, the UAE, and Qatar are each advancing national cybersecurity frameworks that increasingly require documented control over data and infrastructure. Sovereign infrastructure is shifting from best practice to regulatory expectation.

2. AI adoption is creating new exposure. As GCC enterprises integrate AI into critical workflows, the question of where AI models are trained, where inference happens, and who can access that data is becoming a compliance and security question, not just a technical one. Cisco's SCI portfolio addresses this by enabling AI workloads to run within fully controlled environments.

3. Supply chain risk is under scrutiny. The broader geopolitical environment is prompting GCC governments and enterprises to reduce dependency on foreign-operated infrastructure. Sovereign infrastructure frameworks directly address this risk surface.

Layla Haddad

Cyber Policy & Digital Risk Correspondent

Layla Haddad covers cybersecurity regulations, data protection laws, and digital transformation initiatives across GCC and North Africa. She has worked closely with compliance teams, fintech startups, and government advisory groups. Her articles explore how cyber policy, AI governance, and privacy frameworks shape the region’s digital future.

Intelligence Focus Areas

GCC Compliance & Regulatory FrameworksEnterprise Infrastructure SecurityData Sovereignty in the Middle EastAI Security & Governance Saudi Arabia Cybersecurity