Close

Hard Lessons: How Gulf Businesses Can Protect Data During Times of War

Hard Lessons: How Gulf Businesses Can Protect Data During Times of War
  • PublishedOctober 6, 2026

Amazon Web Services’ disclosure in September that it cannot restore access to some cloud-computing facilities damaged during the Iran war has raised fresh concerns over data resilience among Gulf businesses.

Lawyers said to AGBI, it has been a “hard lesson” for Gulf businesses, prompting companies to take a closer look at data resilience, backup systems and where critical information is stored.

Following the incidents in Bahrain and the UAE, companies have decided to tighten their data policies, but attempts to protect important information by storing copies overseas may conflict with regional data protection and localisation regulations.

AWS Outage Forces Rethinking Of Data Resilience

“We’re seeing greater attention paid to data resilience and where data and back-up copies are held,” said Rob Flaws, partner and head of MENA tech and innovation at Mishcon de Reya.

“The disclosures are likely to accelerate those conversations, particularly among businesses that depend on continuous access to critical data.”

Companies that wish to extend backups to other regions or move data outside their jurisdiction must follow the local laws that protect sensitive information.

There are many organisations for which transferring data or maintaining a secondary back-up in an overseas market is considered legal, but for some it is not.

Rules For Transferring Data Outside The Region For Gulf Companies

Moving data to another country can provide businesses with an additional layer of protection, but companies cannot simply transfer sensitive information abroad without considering local regulations.

Cross-border data transfers are generally permitted in Gulf jurisdictions, including Saudi Arabia and the UAE, but companies must meet requirements intended to protect personal information after it leaves the country, according to Sara Paradisi, a partner at Rosenblatt Law.

Speaking about the requirements for cross-border data transfers, Flaws said data transfers can be permitted “where the destination provides an appropriate level of protection, or where specified safeguards apply.”

Also Read:

Tunisia Secures $391 Million Islamic Development Bank Loan for Motorway Project

Israel Supreme Court Clears Arab Parties to Contest October Election

Written By
thetycoontimes

Leave a Reply

Your email address will not be published. Required fields are marked *