Your teams are using AI. Do you know if it’s properly governed?

Find the gaps before your AI initiatives scale — a 30-minute diagnostic of ownership, controls, risk and audit readiness across every AI tool and agent you run.

Applications are read individually. There is nothing to prepare.

Readiness profileillustrative output
An example of what you receive after the session: a readiness score across the governance domains assessed, your three priority gaps, and the frameworks the assessment draws on. Sample figures, not real data.
OwnershipInventoryAccessApprovalMonitoringRisk

Readiness score

58/100

Top gaps

No owner for agent decisions

Audit trail not retained

Vendor AI unreviewed

  • ISO/IEC 42001
  • NIST AI RMF
  • ASEAN and regional AI-governance guidance
  • Emerging agentic-AI governance practices

AI moved into production faster than governance did.

Three questions most organisations cannot answer — and each one surfaces at the worst possible moment.

What AI do we actually have running in the business?

Surfaces during an audit

Who owns it once it is making decisions on our behalf?

Surfaces during an incident

What happens the day it gets something materially wrong?

Surfaces in front of the board

What the diagnostic assesses

In one focused assessment, identify gaps across ten governance domains.

  • AI ownership and accountability
  • AI and agent inventory
  • Data and system access
  • Human approval and escalation
  • Agent autonomy and decision boundaries
  • Risk classification
  • Security and privacy controls
  • Monitoring and audit trails
  • Policies and acceptable AI use
  • Third-party AI and vendor risk
See what each domain covers

Why this works

Short, evidence-led and framed around decisions you can actually make this quarter.

Fast

One 30-minute session, no questionnaire to complete beforehand.

Framework-aligned

Mapped to ISO/IEC 42001 and the NIST AI RMF, so the output travels.

Actionable

Three ranked gaps and what to do about each — not a policy library.

30 minOne working session, no prep
10Governance domains assessed
3Priority gaps, ranked
4Frameworks referenced

What people bring to the session

The questions that come up most often — and the ones the diagnostic is built to answer.

We have Copilot across the business. Nobody can tell me which teams are putting customer data into it.
Group CIOFinancial services
Our support agent resolves tickets on its own. If it gives a customer the wrong answer, who is accountable?
Head of Customer OperationsTelecommunications
The board asked for an AI risk position by next quarter. I do not have an inventory to start from.
Chief Risk OfficerInsurance
We are going for ISO 42001. I need to know how far off we are before committing to a date.
Head of ComplianceHealthcare
Three vendors now ship AI features into our stack. None of them went through a review.
CISOLogistics
Our teams built useful things fast. Now I need to make it defensible without stopping them.
Director of Data & AIPublic sector

Composite examples drawn from common enquiries — not attributed client quotes.

Find the gaps before they find you

A 30-minute session, no preparation, and a ranked action plan at the end. Limited early-access places, reviewed individually.