Skip to main content

Luftic User Manual

Welcome to Luftic, a governance, risk, and compliance (GRC) platform built for organizations in the GCC. Luftic brings your risk register, compliance frameworks, controls, policies, audits, incidents, and third-party vendors into one bilingual workspace that works fully in Arabic and English.

This manual is for everyone who works in your organization's Luftic workspace — from team members who complete tasks and approvals, to risk and compliance managers, auditors, and the administrators who set up users, roles, and settings. It describes what you see on screen and how to get things done, step by step.

What You Can Do in Luftic​

AreaWhat it helps you do
Risk managementIdentify, assess, treat, and monitor risks, and link them to the assets and controls they affect.
IncidentsReport, investigate, and resolve security and operational incidents, including regulatory notification deadlines.
AssetsKeep an inventory of the systems, data, and facilities you need to protect.
ComplianceActivate frameworks such as NCA ECC, PDPL, NESA, and SAMA, run compliance assessments, and track readiness.
ControlsMaintain your control catalogue and internal controls, assign them to owners, and monitor them continuously.
PoliciesDraft, approve, publish, and collect attestations for organizational policies, and manage exceptions.
Audit & assurancePlan and run internal audits, record findings, and collect evidence through evidence requests.
Third-party riskAssess vendors and send them questionnaires.
Access & identityManage users, departments, roles, and access reviews such as Separation of Duties checks.
Automation & analyticsRoute work through approval workflows, track SLAs, save reusable views, and produce reports.

What you see in the sidebar depends on the permissions your role grants, so some areas may not appear for you.

Where to Start​

Pick the path that matches your job:

Getting Help​

  • Field help icons — many form fields show a small ? icon next to their label. Click it for a short explanation of what to enter and why it matters. Where available, the explanation includes a Read full documentation link that opens the matching section of this manual.
  • AI Advisor — click the sparkle icon in the top bar (or choose Ask AI Advisor in search) to ask questions in English or Arabic, such as "how do I assign a control?" or "which of my risks are overdue?". See AI Advisor.
  • Guided tour — open your user menu (your name in the top-right corner) and choose Take the tour for a short walkthrough of the main areas.
  • Your administrator — if a menu item or button you expect is missing, you probably don't have the permission for it. Ask your organization's administrator to review your role.