AI Security
Rolling out Copilot? Staff writing proposals with AI? A chatbot answering your clients?
Every one of those is company information going into a system, under an identity that already sees everything that person can see. Nobody scoped that, and you are the one accountable for it.We inventory what is actually running, scope what each tool can reach, close the paths data leaves by, and catch the drift as configurations move.
AI inventory and control plan — extract
Sample| Area | Finding | Priority |
|---|---|---|
| Identity and accessHigh |
| P1 |
| Vulnerability managementMedium |
| P3 |
| Data protection — residency, encryptionHigh |
| P1 |
| Network securityMedium |
| P3 |
| Workload protectionHigh |
| P1 |
| Logging and monitoringMedium |
| P2 |
| Incident response and continuityMedium |
| P3 |
| Governance and compliance — Loi 25High |
| P2 |

01
Assess
- Identity and access — what each tool inherits from the person using it
- Vulnerability management — what a vendor release quietly turned on
- Data protection — training on your data, and where it sits
- Network security — N/A, this runs over the vendor's network
- Workload protection — the AI tools in use, and what each can reach
- Logging and monitoring — whether prompts and responses are recorded
- Incident response — how you revoke an agent mid-incident
- Governance — Loi 25 exposure and automated decisions
How it runs
- Discovery workshop
- Technical evaluation against the OWASP LLM and Agentic Top 10s
- Roadmap, with the risk that stays
02
Protect
- Identity and access — what the tool may reach, scoped to the work
- Vulnerability management — new models and releases assessed on arrival
- Data protection — training opt-out, retention, and the residency answer
- Network security — N/A, nothing here is yours to segment
- Workload protection — an approved list of tools, and the settings that enforce it
- Logging and monitoring — prompt and response logging turned on
- Incident response — a way to switch a tool or agent off
- Governance — Loi 25 notice, explanation and human review
How it runs
- Design, with the controls named up front
- Build, tested against a real rollout
- Handover, with an evidence pack
03
Maintain
- Identity and access — who has the tooling, and what their agents reach
- Vulnerability management — capabilities added by a vendor release
- Data protection — where prompts and code are going
- Network security — N/A, nothing here changes on your side
- Workload protection — shadow AI, and tools bought by a department
- Logging and monitoring — whether the logs are still being written
- Incident response — whether revoking an agent still works
- Governance — AI risk in the same register as everything else
How it runs
- Approval criteria agreed in advance
- New models assessed on arrival, not quarterly
- A decision your security team can defend
Do you know which AI tools your staff use?
Most organisations cannot answer that. Tell us what you run and we will scope the work with you. Or start with the free evaluation — sixty minutes, and a written read on which domains deserve a real look. We reply within one business day.