About us

Experts Group is a multidisciplinary group of companies providing integrated solutions, services, technologies, and project support across energy, oil and gas, refining and petrochemicals, information and communication technology, artificial intelligence, cybersecurity, and software development.

Through its affiliated companies and network of international and local partners, Experts Group combines technical expertise, project development capabilities, management experience, specialized technologies, and commercial resources to serve public- and private-sector clients.

Our business model enables us to assemble the appropriate combination of expertise, technologies, contractors, manufacturers, suppliers, and partners according to the specific requirements of each project, including its technical scope, location, contractual structure, financing requirements, schedule, and budget. This approach allows Experts Group to participate effectively in projects of different sizes and complexity. 

Read More ...

#

Experts Group

Towards Prosperous & Sustainable World

Our Services

Project Development & Management

Developing projects from concept to execution through feasibility assessment, planning, coordination, scheduling, cost control, risk management, and overall project supervision.

Read More ...

EPC Contracting

Providing integrated Engineering, Procurement and Construction services to deliver projects efficiently, safely, and in accordance with agreed technical, quality, cost, and schedule requirements.

Read More ...

Operation & Maintenance

Supporting the reliable and efficient operation of facilities and systems through planned operation, preventive and corrective maintenance, performance monitoring, and technical support.

Read More ...

Consultancy Services

Providing independent technical, commercial, and strategic advice to support project planning, technology selection, decision-making, performance improvement, and problem solving.

Read More ...

Trading, Supply & Procurement

Sourcing and supplying equipment, systems, materials, technologies, and spare parts from qualified manufacturers and suppliers to meet project and operational requirements.

Read More ...

Training & Capacity Building

Delivering professional training, technical workshops, and tailored capacity-building programmes to develop skills, strengthen organisational capabilities, and support knowledge transfer.

Read More ...

Our Fields of Interests

Conventional & Renewable Energy

Experts Group is interested in the development, evaluation, and implementation of energy projects across both conventional and renewable technologies. This includes power generation, transmission and distribution, solar energy, wind energy, hybrid systems, energy efficiency, and emerging clean-energy solutions. Our interest extends from early project assessment and technology selection to project development, implementation, operation, and performance improvement, with particular attention to reliability, economic viability, sustainability, and long-term energy security.

Read More ...

Oil & Gas Technologies

Our interests in oil and gas cover technologies and solutions related to upstream, midstream, and downstream activities. This includes production systems, processing facilities, pipelines, associated gas treatment, compression, storage, monitoring, automation, and supporting infrastructure. Experts Group focuses on practical technologies that improve operational efficiency, safety, reliability, environmental performance, and asset utilisation, while supporting the development and modernisation of oil and gas projects.

Read More ...

Refining & Petrochemical Industries

Experts Group is interested in refining and petrochemical projects that enhance the value obtained from crude oil, natural gas, and hydrocarbon feedstocks. Areas of interest include refinery development and upgrading, process units, product quality improvement, petrochemical production, utilities, storage, and supporting infrastructure. We also focus on modern technologies that improve efficiency, increase product value, reduce losses, strengthen operational performance, and support the development of integrated refining and petrochemical industries.

Read More ...

Information & Communication Technology

Our ICT interests cover modern digital infrastructure and communication technologies that support business, industry, government, and project operations. This includes computer and communication networks, data centers, cloud solutions, telecommunications, digital systems, system integration, monitoring platforms, and secure information exchange. Experts Group is interested in reliable, scalable, and integrated ICT solutions that improve connectivity, operational control, data management, and organizational efficiency.

Read More ...

Artificial Intelligence & Cybersecurity

Experts Group is interested in the practical application of artificial intelligence and cybersecurity across industrial, commercial, governmental, and digital environments. Areas include intelligent data analysis, automation, predictive systems, decision-support tools, machine learning, secure communications, cyber risk management, network protection, data security, and threat detection. Our focus is on solutions that strengthen operational intelligence, improve decision-making, protect critical information, and enhance the resilience of digital systems.

Read More ...

Software & Mobile App Development

Our interests include the development of secure, reliable, and user-focused software solutions for desktop, web, cloud, and mobile platforms. This covers business applications, specialized technical software, database systems, online platforms, mobile applications, system integration, and customized digital tools. Experts Group aims to develop practical solutions that respond to specific operational and commercial requirements while maintaining strong standards of usability, scalability, performance, and security.

Read More ...

Our Companies

MICT Experts

Experts for Modern Software and Communication Systems is a Jordan-based technology company affiliated with Experts Group, specializing in software, communications, digital systems, and information technology solutions. The company was established to support the development and supply of modern software and communication technologies for commercial, institutional, industrial, and governmental applications. Its areas of activity naturally complement the Group's broader interests in Information and Communication Technology, Artificial Intelligence and Cybersecurity, and Software and Mobile App Development. Through its association with Experts Group, the company can participate in projects involving software applications, computer and communication networks, data communication systems, digital platforms, system integration, information security, and related technology solutions. The Group's ICT activities also include artificial intelligence, cybersecurity, cloud computing, e-governance, Internet of Things, system design and implementation, training, and after-sales support. The company can support projects at different stages, from requirements definition and technical assessment through development, supply, integration, deployment, testing, training, and continuing technical support. Working within the Experts Group structure also enables it to cooperate with other affiliated companies and qualified international and local partners when projects require multidisciplinary capabilities. Its role within the Group is particularly important in projects where software, communications, connectivity, control, data management, and digital transformation form an essential part of the overall solution.

Read More ...

ISS Experts

Experts for Integrated Solutions Ltd. Co. is a UK-based technology and professional services company operating within Experts Group. The company focuses on providing secure, intelligent, and scalable solutions that combine software development, digital technologies, communication systems, artificial intelligence, cybersecurity, consultancy, training, and project support. Its activities are centered on helping organizations adopt and implement modern technologies that improve efficiency, security, communication, data management, and operational performance. The company supports clients through the development of customized software, websites and mobile applications, computer and communication networks, artificial intelligence solutions, cybersecurity technologies, and specialized digital systems. In addition to technology development, the company provides consultancy, project planning and management, professional training, and technical support, allowing it to participate in projects from initial concept and requirements definition through implementation, deployment, operation, and continuing development. Experts for Integrated Solutions has also developed a number of specialized software and security products, reflecting the Group's broader experience in mobile applications, information-security software, engineering applications, and digital platforms. The Experts Group profile documents extensive ICT experience, including websites, mobile applications, content management systems, management and financing systems, specialized engineering software, information-security applications, and e-learning platforms. As part of Experts Group, the company benefits from access to multidisciplinary expertise, international and local partners, and project experience across energy, engineering, ICT, and emerging technologies. Visitors interested in detailed information about its services, products, technologies, and projects can continue to the company's dedicated website (www.issexperts.co.uk).

Read More ...

Our Products of Websites & Mobile Apps

StegoTime

In an era where data security and privacy are essential, StegoTime provides an innovative solution for secure communication and information protection. By combining advanced encryption with sophisticated steganographic techniques, StegoTime enables sensitive messages, files, and critical business information to be securely concealed within ordinary digital media, such as images and audio files. Unlike conventional encryption, which may reveal the presence of protected information, StegoTime adds an additional layer of privacy by concealing the existence of the information itself. This makes it a valuable solution for governments, financial institutions, businesses, professionals, and individuals requiring a high level of confidentiality. Whether used for secure file transfers, confidential business communications, or personal data protection, StegoTime delivers a practical and user-friendly approach to safeguarding sensitive information. StegoTime—because privacy is not an option; it is a necessity. For further information and downloads, visit www.stegotime.com.

Read More ...

BlindCell
App Store unavailable Google Play unavailable Website unavailable Brochure unavailable

BlindCell is a secure, end-to-end encrypted messaging application for Android, designed to protect SMS communications using AES-256 encryption. It helps ensure that encrypted messages remain private and accessible only to their intended recipients. Designed as a complete replacement for the default SMS application, BlindCell enables users to exchange encrypted messages with individual recipients or groups. It generates a recipient-specific encryption key for each secure communication while retaining the option to send standard, unencrypted SMS messages whenever required. BlindCell automatically identifies incoming encrypted messages, decrypts them securely, and displays them through a simple and familiar messaging interface. Users can also transfer their BlindCell account to another compatible device while retaining the same mobile number and SIM card. By combining strong encryption with the convenience of conventional SMS messaging, BlindCell provides a practical and user-friendly solution for protecting private communications. For further information visit us at: https://www.blind-cell.com. 

Read More ...

BlindCell Gear
App Store unavailable Google Play unavailable Website unavailable Brochure unavailable

BlindCell Gear is a versatile text-encryption application for iOS and Android, designed to protect sensitive information across different communication channels. Using AES-256 encryption, it enables users to encrypt text before sharing it, helping ensure that protected content can be accessed only by its intended recipients. With BlindCell Gear, users can create and exchange encrypted messages through SMS, email, and compatible messaging or social media applications such as WhatsApp, Viber, and Messenger. It can also be used to securely store encrypted text on the device, providing additional protection for confidential notes, personal information, and important business content. By generating recipient-specific encryption keys, BlindCell Gear adds an independent security layer to everyday digital communications. Its practical and user-friendly design makes strong text encryption accessible to businesses, professionals, and individuals who require greater privacy and control over their information. For further information, visit www.blind-cell.com.

Read More ...

REICAL

REICAL is a renewable energy-investment analysis and strategic planning software solution developed by Experts for Integrated Solutions Ltd. It enables users to evaluate the technical performance, financial viability, and economic feasibility of renewable energy projects of different technologies and generation capacities. REICAL supports the analysis of a broad range of renewable energy systems, including solar, wind, hydropower, biomass, biofuel, tidal, geothermal, kinetic, osmotic, waste-to-energy, and hydrogen energy. It can also assess conventional power-generation projects using fossil fuels such as oil and natural gas, allowing users to compare different technologies and investment scenarios through a consistent analytical framework. The software brings together the principal technical, financial, and administrative factors that determine project viability. Users can assess generation capacity, project cost, energy yield, system efficiency and degradation, operating and maintenance costs, energy tariffs, equity, debt financing, interest rates, loan duration, insurance, administration, depreciation, and inflation. Based on these inputs, REICAL calculates essential technical and financial outputs, including projected energy production, revenue, operating costs, loan repayments, net revenue, and total project performance. It also provides widely recognised investment indicators such as Net Present Value (NPV), Internal Rate of Return (IRR), Return on Investment (ROI), Profitability Index (PI), and Payback Period. Results are presented through clear tables and graphs, including annual project performance and loan-amortisation schedules. Input data, calculated outputs, and analytical results can also be printed or saved in PDF format for reporting, evaluation, and decision-making. REICAL is designed for investors, public and private companies, consultants, government and local authorities, renewable-energy developers, decision-makers, universities, researchers, training centres, and individuals seeking to make informed energy-investment decisions. Whether used to evaluate a proposed project, compare alternative technologies, explore different financing structures, or support research and professional training, REICAL transforms complex energy-investment data into clear and practical decision-making information. REICAL—turning energy opportunities into informed investment decisions. For further information, visit www.reical.uk.

Read More ...

Our News

Protecting Patient Data in UK

StegoTime provides an excellent, simple, flexible solution to protect your patient data, while it is stored on your computer, local server, or cloud; or while it is exchanged across the Internet. Simpley, use Stegotime to hide the patient data in an image of your choice (e.g., your patient photo), authroize your patient or any other person who is legally authroized to access this data, and store it or send it to them by email. You can be sure that no one can disclose the data except you, your paient, and those whom you authroized. As a doctor you have an ethical, legal and contractual duty to protect patient confidentiality. Under data protection law, those responsible for patient data are legally obliged to store it securely and protect it from unauthorized or unlawful processing. The General Medical Council (GMC) guidance on confidentiality states that “you must make sure any personal information about patients that you hold or control is effectively protected at all times against improper access, disclosure or loss”. You must make sure that identifiable patient data is not improperly disclosed in any circumstances. An inadvertent breach of patient confidentiality could result in you facing patient complaints or even a trust disciplinary or GMC investigation. Communicating via Mobile Apps NHS guidance for doctors using mobile apps which lack proper security features – such as WhatsApp – advises that “it should never be used for the sending of information in the professional healthcare environment.” The guidance warns that, as a consumer service, WhatsApp “does not have a service level agreement (SLA) with users and has no relevant data security certification” and, as such, should not be used to send patient information or details of clinical cases to colleagues. Data Storage on Portable Devices When used with care, portable storage devices are a valuable and convenient way to store and transfer data. However, since mobile devices are particularly vulnerable to loss or theft, security and best practice should be your first priority. Avoid storing identifiable personal data on personal mobile devices, such as memory sticks, laptops or personal mobile phones, which risk being misplaced or accessed by other people. Familiarise yourself with your trust's information security policy and the name of the person in charge of data security. Always follow trust procedures on the use of mobile devices, laptops and portable data storage. If you are worried about whether you should use a portable storage device at work, talk to your trust information officer for advice. Encryption and password protection of data held on mobile devices would be considered to be standard practice. Make sure you only transfer or store information in line with your trust's information security policies, and take care not to mix professional and personal data. There can be particular dangers where doctors use the same devices for both professional and personal use. Follow relevant GMC and NHS guidance and get to know your legal requirements under data protection law. If you lose any data, report the incident to the nominated senior person in your organisation immediately. They can then take appropriate action and inform patients, if necessary.

Read More ...

DoD Applications of Steganography

Department of Defense Applications of Steganography The U.S. Department of Defense (DoD) is mandated to follow the National Institute of Standards and Technology (NIST) Special Publication (SP) 800–53 to be compliant with the Federal Information Security Management Act (FISMA) of 2002, in which the most current version, Revision 4, serves as a Risk Management Framework (RMF) which contains a list of over eight-hundred unique security controls that federal organizations are required to implement to varying degrees depending on the risk categorization of their particular information system. There are several other NIST and DoD publications that complement the SP 800–53, however, this publication is the sole reference source for NIST security controls. With NIST’s SP 800–53 revision 4, it specifically addressed for the first time ever the dangerous threat of steganography. Specifically, the SC-7 boundary control security control, addresses monitoring for steganography; the malicious code protection security control, SI-3, addresses malicious code possibly hidden in files using steganography; and the SI-4 enhancement (18), addresses covert means that can be used for unauthorized exfiltration of organizational information. The U.S. Department of Defense (DoD) is mandated to incorporate digital steganography to protect National Security Information (NSI). It makes practical sense to apply a high level of security as is both feasible and possible on National Security Information (NSI) due to the fact that if this sensitive information were to come into the possession of adversaries, it could potentially cause grave damage to U.S. national security. It is logical then to apply the strongest forms of security controls to protect this information. One advantage of steganography is that it allows users to both cloak and encrypt data into cover mediums such as images, video and audio files, voice over Internet Protocol (VoIP) data, and many other types of digital media. In order for it to be effectively used, the NSI data could be hidden using steganography while the data is at rest, but especially when the data is in transit across networks. When NSI data is being copied to any type of media, it is required to be encrypted but could also be hidden using steganography. The added protection would make it so much more difficult for adversaries to locate NSI data, and if it were somehow spotted they would need to find the appropriate steganography application to attempt to open the file with the correct passphrase and crack the encryption. There would be a learning curve that would need to occur for all federal employees, military personnel, and DoD contractors who have access to NSI data in order to properly educate personnel on how use steganography applications and proper encryption methods and passphrase creation. However, this slight measure of pain would ensure that America’s most sensitive information is well-protected and if it were intercepted by adversaries, it would be nearly impossible for an adversary to read it. National Security Information (NSI), also known as classified information, as defined by Executive Order 12356 as being classified at three different levels as either top secret, secret, or confidential information that could be expected to cause gravedamage, serious damage, or a level of damage to national security respectively. Ronald Reagan, Executive Order 12356, 2nd April 1982. Intelligence Community Applications of Steganography The Intelligence Community uses cryptography almost by default to protect sensitive NSI. Cryptography systems are generally either symmetric with a single key or asymmetric with both public and private keys for decrypting messages. When encryption is employed in messages or data it raises suspicion by adversaries who could potentially be remotely monitoring network data packets and it’s a dead giveaway that at least some type of sensitive information is included within packets. Using cryptography openly may serve to compel adversaries to try even harder to decipher encrypted data. However, steganography is not detectable and does not raise suspicion unless it is specifically being checked for with special steganalysis software application tools and even then it is possible that if discovered, the secret message stego file will not be able to be decrypted and readable. Advanced Persistent Threat (APT) groups are often named by a numerical value and sometimes also associated with the name the malware the group uses. The “Stuxnet” virus was by far the most sophisticated digital warfare weapon ever conceived and has been confirmed by President Obama to have been developed cooperatively between the U.S. and Israel to thwart the Iranian efforts to enrich Uranium for nuclear weapon manufacturing. While steganography was not discovered within the complex bundles of code used in the Stuxnet virus, other forms of malware have incorporated steganography into the code to mask the exfiltration of sensitive proprietary, classified, personal and financial data. U.S. officials discovered that in 2010 a Russian spy ring located in the U.S. was utilizing “Duqu” and “Alureon” malware to exfiltrate classified U.S. NSI back to Russia using steganographic techniques to hide their payloads (Wendzel et al., 2014, p. 2). It is relatively safe to assume that government spy agencies like the National Security Agency (NSA) and the Central Intelligence Agency (CIA) have also used digital steganography by this point in time. Predictable Adversarial Response to Protective Steganography Use If a country such as the U.S. were to begin utilizing digital steganography to protect NSI, assuming it is not already doing so, the predictable adversarial response would be an increase in steganalysis tools designed to detect steganography file signatures combined with cryptanalytic software tools designed to break and decrypt encrypted data. State and non-State actors would also begin utilizing steganography if it was not already being employed to protect their own sensitive information. Essentially, the use of steganography will only result in nuclear détente situation that serves to elevate the level of sophistication that nations will have to ascend to in order to protect their NSI. In other words, if every country has nukes or uses digital steganography to protect NSI, then there is little value in having or using these types of weapons. Employing digital steganography combined with strong encryption does not assure secrecy any more than employing highly-compensated cybersecurity professionals does not assure an organization will never be hacked. What it does do, however, is make it much more difficult for adversaries to intercept and decrypt secret messages. For that reason, it does make practical sense for the U.S. government to implement some measure of “protective” steganography to better protect its most sensitive data. Conclusion In conclusion, digital steganography can be a very effective and affordable means of further protecting NSI beyond traditional encryption methods to conceal its existence altogether. It may not be worth training the massive amounts of U.S. government, military, and contractor personnel on how to properly use steganography applications to hide data in transit, but perhaps the cost and hassle would be justified only for Top Secret-level or above NSI. There is absolutely no reason that digital steganography has to only be used by the malicious actors online. There is a valid case to be made for the U.S. government to direct the implementation of digital steganography combined with strong encryption and passphrases to further protect its most sensitive information. It is all but guaranteed that America’s adversaries like Russia, China, Iran, and North Korea have implemented digital steganography into their cyber weapon arsenal, and perhaps the U.S. has secretly done so as well. If the U.S. has incorporated digital steganography to protect NSI then it is on the right track, however, if it has not then it is walking a dangerous line by not utilizing this great form of protection. Source: Using Digital Steganography to Protect National Security Information by z3roTrust, Nov 26, 2018

Read More ...

Data Breaches & Hacking Statistics

There have been an exponential increase in the amount and severityof large-scale, well-publicized data breaches. With data breaches occurring regularly, people have become desensitized to them. This isn’t good, since the protection of data has never been more important. Not only are business required to announce that a data breach has occured, they are also obligated to pay fines due to regulations in accordance with GDPR The seriousness of data breaches has cost some companies their entire business, and the predictions don’t look good: according to reports from Teramind, 231,354 data records are lost or stolen in a 60-minute period. What is a data breach? A data breach is a security incident of unauthorized release of private and sensitive information. The most frequent scenario is when a cybercriminal infiltrates a database and compromises sensitive data, whether it’s just merely that data or copying, transmitting or using it in any way. Data breaches can expose personal information, financial information such as credit card numbers from individuals and corporate secrets, their software codes, customers and even intellectual property, as in the major Sony breach. After a data breach, losses may result from an attacker impersonating someone from the targeted network and his gaining access to otherwise secure networks. If regulatory compliances are violated, the organization suffering the data breach can face legal fines. Why do data breaches happen? Data breaches can happen for a number of reasons; targeted attacks can lead to the compromise of identity, money theft, or it can even happen accidentally. Unfortunately, data breaches are mostly performed by cybercriminals. In a classic example, an attacker gains access to a corporate or organization’s private network where he can steal data from employees, or even go further and steal sensitive data from the organization’s database — containing information about customers, manufacturers, product development secrets, etc. A big issue with these kinds of breaches is that the attack and infiltration into the network can go undetected for long periods of time. Sometimes, they never get detected. Hackers attack every 39 sec, on average 2,244 times a day. Ref. VARONIS Some data breach and hacking statistics are presented below to help quantify the effects of these attacks. Security breaches have increased by 11% since 2018 and 67% since 2014. Hackers attack every 39 seconds, on average 2,244 times a day. The average time to identify a breach in 2019 was 206 days. The average lifecycle of a breach was 314 days (from the breach to containment). 500 million consumers, dating back to 2014, had their information compromised in the Marriott-Starwood data breach made public in 2018. 64% of Americans have never checked to see if they were affected by a data breach. 56% of Americans don’t know what steps to take in the event of a data breach. The average cost of a data breach is $3.92 million as of 2019. 83% of enterprise workloads will move to the cloud by the year 2020. In 2016, 3 billion Yahoo accounts were hacked in one of the biggest breaches of all time. In 2016, Uber reported that hackers stole the information of over 57 million riders and drivers. Uber tried to pay off hackers to delete the stolen data of 57 million users and keep the breach quiet. In 2017, 412 million user accounts were stolen from Friendfinder’s sites. In 2017, 147.9 million consumers were affected by the Equifax Breach. In 2018, Under Armor reported that its “My Fitness Pal” was hacked, affecting 150 million users. 18 Russians, 19 Chinese individuals, 11 Iranians and one North Korean were involved in indictments for their alleged state-sponsored espionage against the United States.   53% of companies had over 1,000 sensitive files open to every employee.

Read More ...

Video Library