FinTech Payments Platform
SAMA-compliant payment processing at 2.4M transactions/month
- Client
- FinTech KSA (Saudi bank)
- Year
- 2026
- Duration
- 5 months
- Team
- 6 engineers
Hi, Fahad 👋
Today's performance at a glance
Today's tx
12,847
+8.2%
Volume
₹4.2M
+12.4%
Success
99.8%
+0.1%
p95
68ms
-3ms
Transaction volume (24h)
By channel
Transactions
My cards
3 active cards
FintechKSA
•• •• •• 4218
12/28
Visa
FintechKSA
•• •• •• 7821
12/28
Mada
FintechKSA
•• •• •• 3387
12/28
Master
Monthly limit
Subscriptions
We built a complete SAMA-licensed payment platform for an emerging Saudi bank, handling domestic transfers, international payments, and card processing. Today it processes 2.4M+ transactions/month at 99.99% uptime.
The challenge
The client ran a legacy system from 2017 that lacked support for new Mada, Apple Pay, or Open Banking. A SAMA audit had flagged 14 compliance gaps threatening their license. The timeline was brutal — 5 months to rebuild the entire infrastructure and close every gap.
The result
After launch, the bank passed its SAMA recertification on the first attempt across all products. Today the system handles 2.4M transactions/month at 68ms p95 latency, with zero P0 vulnerabilities discovered in 14 months of production.
Our approach
- 01
3-week architecture deep-dive with the bank's tech and legal teams
- 02
Designed AWS-native microservices with a zero-trust posture
- 03
Parallel development across 4 streams (payments, transfers, cards, audit) with weekly releases
- 04
Internal pentests weekly + monthly third-party audit
- 05
Zero-downtime data migration via dual-write pattern
- 06
Trained 47 bank employees on the new system
“PhiBit caught a critical SQL injection 48h before launch. Top-tier professionalism, precise report, immediate remediation.”
Other work worth a look
University Management System
Registration and grading system serving 8,000 students — 99.95% uptime
Delivro Delivery App
iOS + Android delivery app for 12 Gulf cities with real-time tracking
Hospital Pentest
Found 23 vulnerabilities — 4 critical — before the medical platform launched