Master your AI

Your employees have adopted AI.And your company?

Everyone uses it their own way. The company itself has neither a view nor a framework: it quickly turns into chaos, and your data leaves without you knowing. We install the framework that gives the right tools to the right people, securely and within the rules.

Why

Tuesday, 2 pm.
Three tools, no rules.

  • The sales rep pastes a client offer into a free assistant to rephrase it.

  • The accountant has a supplier contract summarised by a tool found the day before.

  • The developer plugs an AI into your code to go faster.

None of them did anything wrong, nobody forbade it. But your data has left, and the company does not know it.

Where are your AI uses?

Approved Used

Governed AI

Approved and used.

Missing adoption

Approved, but nobody uses it.

Shadow AI

Used, without anyone validating it.

No signal

Neither approved nor used.

What we check

Six pillars,
one standard, one law.

The AI Diagnostic reads your organisation on six pillars, built on ISO/IEC 42001 (the AI management system), the AI Act and the NIST AI RMF. Each requirement: is it written down, and is it applied?

  1. 1Strategy

    What AI should serve

    Your objectives, the uses that matter, who decides where AI goes.

    ISO/IEC 42001: 4.1, 4.2, 6.2

  2. 2Governance

    The framework and its owners

    AI policy, roles, committee, management review.

    ISO/IEC 42001: 5, 9, 10, A.2, A.3

  3. 3People

    Teams in control

    Skills, awareness, AI literacy for every person concerned (AI Act, Article 4).

    ISO/IEC 42001: 7.2, 7.3 · AI Act Art. 4

  4. 4Process

    Risks, impacts, suppliers

    AI risk assessment, impact assessment, human validation, supplier clauses, transparency (AI Act, Article 50).

    ISO/IEC 42001: 6.1, 8, A.5, A.10 · AI Act Art. 50

  5. 5Data

    What you feed AI

    Quality, provenance, preparation and rights on the data used.

    ISO/IEC 42001: A.7

  6. 6Technology

    The tools actually running

    Inventory of AI systems, life cycle, documentation, incidents.

    ISO/IEC 42001: A.4, A.6, A.8

Your role under the AI Act, deployer or provider, sets the obligations on top. Each pillar comes out with its level, the gap to target and the order of work.

What we do

First, know.
Then, frame.

Phase 1 · The AI Diagnostic

Your real uses, your risks

We map the AI tools that actually run and what they do with your data. Then we look at what the AI Act already asks of you, whether you use AI or sell it: Article 4, AI literacy, since 2 February 2025, and Article 50, transparency, since 2 August 2026.

Phase 2, if needed · AI Officer

Your AI framework, held every month

If you want, we install the framework with your teams: the right tools for the right people, clear rules, AI literacy for everyone. Then an AI Officer holds it month by month.

The full process and what you receive

How

From chaos to a framework, in three moves.

  1. 1

    Map

    The real uses, approved or not.

  2. 2

    Frame

    Validated tools, rules, access.

  3. 3

    Hold

    Every new use qualified, every month.

Already have a recent audit? We start from it.

Contact

Let's talk about your use of AI.
And take back control.

What you risk, and where to start. A cyber, AI or transformation diagnostic, or ongoing support as a service: describe your situation and we come back with the step that fits.

Let's talk →

We do use AI, but we stay human-focused: a person reads your message and replies within 48 hours. The first thirty-minute call is free of charge.