Services / Consulting

AI governance consulting, built by a practitioner.

Strategy, controls, and ongoing advisory for organisations that have to govern AI well because the consequences of getting it wrong are real. EU AI Act, ISO/IEC 42001, NIST AI RMF, DORA — implemented, not summarised.

Engagement tracks

Four ways to work together.

Most clients start with one track and expand. Engagements run 4 to 12 weeks for project work, or a fixed monthly retainer for advisory.

01

Strategy & operating model

Where AI governance sits in your org chart, who owns which decisions, and how risk, product, security, and legal stop talking past each other.

02

Controls & implementation

A control framework built around the systems you actually run — not a generic library. Implemented inside your existing SDLC, MLOps, and risk processes.

03

Advisory & fractional support

On-call advisory for the moments that matter: board papers, vendor reviews, incident response, regulator correspondence, and high-stakes go/no-go decisions.

04

Enablement & training

Workshops for boards, engineering teams, and risk functions — so the governance you build outlives the engagement.

How we differ

Not the only option — the most direct one.

  • Big-Four advisoryOne named practitioner, no rotating juniors, evidence written for your stack.
  • Law firmsImplementation alongside the legal interpretation — not just a memo.
  • GRC platformsTooling-agnostic. We help you get value from what you own, not buy a new SKU.

Let's see if there's a fit.

Half an hour, no slides. We discuss what you're trying to govern, what's already working, and whether an outside practitioner moves the needle.

Book a scoping call →