AI_PLUMBER
SYSTEM_INDEX
UPLINK STATUS: OPTIMIZED
ACCESS_LEVEL: ADMIN_ROOT
SESSION_ID: 0x99_PIPE_FLOW
LAST_SYNC: 22.03.2026_04:00_GMT
©2026 AI_PLUMBER_CORP
architecture AI PLUMBER
Home / Case Studies / Najm Insurance
Insurance · Saudi Arabia

Najm Insurance: SAMA-Compliant AI Claims Processing

SAMA Compliance| PDPL Data Protection| 40 Cities
6,000+Daily Cases
40Cities
ZeroMisclassification
HybridCloud + Edge

Context

Najm Insurance, Saudi Arabia's leading insurance claims processor, needed to scale AI-driven claims processing across 40 cities while maintaining zero-tolerance misclassification under strict SAMA (Saudi Arabian Monetary Authority) compliance and PDPL (Personal Data Protection Law) requirements. The regulatory environment demanded that every claims decision be attributable, auditable, and reversible.

Regulatory Constraint

  • SAMA compliance — Saudi Arabian Monetary Authority oversight of all insurance operations
  • PDPL data protection — Saudi personal data protection law governing claims data handling
  • 40-city deployment — consistent governance across geographically distributed infrastructure
  • Zero-tolerance misclassification — no room for error in claims categorization

Architecture Decision

Hybrid cloud + edge architecture with governance-first deployment. Each city deployment went through the same governance gate sequence. The framework didn't slow deployment — it made deployment reliable.

Governance Controls

01Agent identity per city deployment — scoped permissions, no shared service accounts
02Full input/output logging with PII sanitization for PDPL compliance
03Kill threshold on misclassification rate — automatic suspension on breach
04Human escalation for claims above defined financial thresholds
05Rollback capability for any classification decision within defined window

Lesson

Governance infrastructure scaled with deployment scope. Every new city deployment went through the same governance gate sequence. The framework didn't slow deployment — it made deployment reliable. SAMA compliance was maintained not through manual audits, but through architectural enforcement.

Need SAMA-compliant AI architecture?

Book Architecture Review →