Healthcare
Patient data is the hard part.
Licensing sits with the federal ministry and the emirate health authorities; health data sits under a dedicated federal law that most privacy programmes miss.
What makes this sector hard
- Health data residency that constrains cloud architecture
- Licensing split between federal and emirate authorities
- Mandatory health insurance rules by emirate
- Clinical AI and decision-support tools with no settled framework
Health providers usually have their licensing well managed and their data position poorly understood. The health-data regime is separate from the general data protection law, and its residency requirements are stricter.
The advisors read both together — the licence and the data — because a cloud decision can breach one while satisfying the other.
Where it applies
Where to start
-
Entering the UAE market
Onshore or a financial free zone — and what each one costs you.
The UAE is not one jurisdiction. Choosing between the mainland and a financial free zone sets your licensing route, your courts, your data rules and your tax position for years.
Learn more Entering the UAE market -
Licensing and authorisation
What you need permission for, and from whom.
Regulated activity in the UAE is defined narrowly and enforced literally. The expensive mistakes are the ones where a firm thought it was outside the perimeter.
Learn more Licensing and authorisation -
Building a compliance programme
Policies that survive an inspection.
AML/CFT, sanctions, data protection and conduct — drafted against the instruments that actually apply to you, not a template from another market.
Learn more Building a compliance programme
Other sectors
Put the council to work
Create an account and ask your first question in under a minute.
Najem AI produces analysis and drafts for internal use. It is not legal, tax, audit or investment advice and does not create a professional relationship.