Access Control Design for Saudi Giga-Projects (NEOM, Red Sea, Qiddiya)
Access Control — ASDV Consultant

Access control on a Saudi giga-project is a fundamentally different scale of problem than a conventional tower, because NEOM, the Red Sea, and Qiddiya are semi-autonomous economic zones designed around eliminating physical credentials in favor of biometric and mobile-based identity from day one.

Multi-tenant, multi-authority credentialing. A single giga-project can span residential communities, hospitality, entertainment, and government buildings under different operating entities but expecting a shared identity backbone — access control architecture needs to be designed like an identity platform, not a building system.

Biometric-first design intent. Public messaging around NEOM emphasizes eliminating physical keys and cards in favor of facial recognition integrated into a broader smart-city identity layer. This raises data protection design questions — biometric templates are highly sensitive, requiring a clear position on local versus centralized template storage and encryption.

Scale and redundancy. At district scale, single points of failure are unacceptable, driving design toward edge intelligence in door controllers capable of independent decision-making during a backbone outage.

Integration with mobility. Giga-projects place heavy emphasis on autonomous mobility (NEOM's "The Line" is explicitly car-light), meaning access control extends to vehicle gates and autonomous shuttle boarding authentication.

ConsiderationConventional commercial towerSaudi giga-project
Credential typeCard/fob, sometimes biometric upgradeBiometric/mobile-first by design intent
GovernanceSingle building owner/operatorMultiple operating entities under one masterplan authority
ArchitectureCentralized head-end typicalDistributed, edge-capable, resilient to backbone failure
Identity scopeSingle buildingCross-venue identity following residents/workers/visitors
Mobility integrationMinimal (parking access only)Deep integration with autonomous/shared mobility

Common mistakes

The most common mistake is applying a conventional single-building specification without accounting for cross-venue identity requirements. A second is underestimating data protection design for biometric templates.

Future outlook

As NEOM, the Red Sea, and Qiddiya move into fuller operation, we expect access control to increasingly converge with broader smart-city identity and mobility platforms.

Frequently Asked Questions

Public plans for developments like NEOM emphasize a biometric- and mobile-first approach, though specific requirements vary by project phase — confirm current requirements with the relevant masterplan authority.
A masterplan-level authority sets the identity and security framework, while individual operators enforce access locally using shared credentials.
Well-designed systems use edge-capable door controllers with cached credential permissions, avoiding an entire district losing access control simultaneously.
Design should address encryption of biometric templates in transit and at rest, and a clear decision on local versus centralized template storage.
Yes, on car-light concepts, access control extends to boarding authentication for autonomous shuttles, requiring close coordination with intelligent transport system designers.