
AI Governance & Compliance
-
AI policies, decision processes, role ownership
-
AI system inventory + risk classification
-
EU AI Act, GDPR, NIS2, DORA alignment
-
Model/data lifecycle governance (approval → monitoring → retirement)
Secure AI & Custom Systems
-
Architecture for LLM apps, agents, RAG systems
-
Threat modelling for AI workflows and integrations
-
Guardrails, logging, monitoring, abuse detection
-
Vendor selection (model gateways, vector DBs, platforms)


AI Incident Response
-
Integration with SOC/IR workflows
-
Incident investigations
Engagement Models
-
Project-based: e.g., “Design governance & controls for our first 3 AI systems.”
-
Retainer: ongoing AI security, reviews, incidents, governance.
-
Partner model: co-delivery with MSSPs/SIs.


Best For
-
Organisations planning multiple AI initiatives in 12–24 months
-
CISOs/Heads of AI who need specialised support
-
Companies turning regulation into practical, enforceable controls

