HOW IT WORKS
Your outsourced AI risk team
Most businesses can't justify a full AI risk function in-house. So we manage it for you on subscription — we design the controls, deploy them with your team, verify they hold, and monitor them — built to meet what your insurers, lenders, and regulators require, so your operations stay secure, compliant, insurable, and fundable as you grow.
It starts with a fixed-price first engagement, then continues as your outsourced AI risk team, on subscription.
THE MODEL
How we build your AI risk function
We start where the money is: where AI pays off, where it puts you at risk, and the grants, tax credits, and financing to fund it. From there we capture what your insurers, lenders, and regulators require, then design the controls, deploy them with your team, and monitor them to meet it. The order is deliberate: secure and compliant makes you insurable, and insurable makes you fundable. So when your insurer, board, or bank asks for the evidence, it holds up.
-
THE FIRST ENGAGEMENT
Agentic AI Investment Strategy
A fast, fixed-price project. You walk away knowing where AI will pay off in your business, where it could put you at risk, and how to fund it — grants and tax credits included.
- AI landscape & your situation — what's possible for your business, what regulations apply, what programs are available, and who can implement
- AI Risk Diagnostic — an inventory of every AI agent and tool you already run, and where each one puts you at risk
- AI Investment Roadmap — a prioritised plan for where to invest first, what's worth doing, and what to defer
-
THE SPECIFICATIONS
Insurance & Capital
We research your insurance options, capital sources, and government programs — grants, loans, and tax credits — then build the plan to insure and fund your AI investment. We capture exactly what your insurers, lenders, and regulators require; those requirements are the specifications everything else is built to.
- Research your insurance and capital options
- Build the plan to insure and fund your AI investment
- Collect what your insurers, lenders, and regulators require — the specifications for the build
- Get ready for coverage and funding: the early, concrete win
-
THE ENGINE
Agentic AI Operational Risk Management
Built to those specifications: we design your AI risk register to meet those requirements, deploy it with your teams and contractors, verify it holds, and monitor it month to month. Secure, reliable operations with the evidence to prove it — the spine everything else organises around.
- Design your AI risk register to meet the requirements
- Deploy it with your teams and contractors
- Keep it current month to month: living register, monitoring, and new-agent intake
- Insurance and funding readiness, kept current
Pricing is sized to you and the number of agents you run; the exploratory call sizes it. On coverage and funding, we ready the evidence and improve your odds — the decision stays with the insurer or lender.
THE MANAGED ENGINE
The value we deliver every day
The AI risk register is at the centre of our work — the live record we use to manage your operational AI risk. Every agent you run is in it; every service we deliver feeds into it or flows from it.
- 01
A living AI risk register
The single record of every agent you run, what it touches, and how exposed it is — kept current as your AI changes. It is the source of truth for your oversight, your infrastructure requirements, and your insurance and funding readiness. It doubles as the evidence your insurer, board, and bank can read.
- 02
Threat alerts that fit you
When a new threat, regulatory change, or shift in best practices lands, we check it against your register and tell you whether it hits the specific agents you run and what to do. When it changes what needs to be in place, we update the framework or the infrastructure requirements — not just a bulletin.
- 03
Management & accountability framework
The framework your team integrates into their operational processes: who is accountable for AI risk, how decisions get made, how to escalate, and how to work with us when you are adding new agents — intake is built into it. We provide it, update it as regulations and best practices evolve, and follow through to make sure the critical parts actually get implemented.
- 04
Infrastructure & guardrails
We specify what your IT team and contractors need in place to keep agents within bounds — the modules, configurations, and access policies that produce hard controls and logs legally required. We update those requirements as the technical landscape changes, and support your team when they hit a problem or need to handle something new.
- 05
Ongoing funding & insurance readiness
We keep your register in shape as your evidence package and watch the grants, financing, and coverage that fit — so you are ready to act when you need capital.
STRAIGHT ANSWERS
Questions owners ask about the work
No. We watch from the outside, read-only. Your IT keeps operating everything; we observe, measure the risk, and make sure the safeguards you put in place are holding. We keep an eye on it — we don't take the wheel — and that's part of what keeps our read independent.
We align the work with the NIST AI Risk Management Framework and ISO/IEC 42001, the recognised references for managing AI risk, and account for Québec's Law 25 where personal data is in scope. We cite them as proof the method is sound — not a badge we sell. What matters is a register and controls your bank or insurer can rely on.
The first engagement is fixed-price. The subscription is sized to your business and how many agents you run. The exploratory call sizes both — no surprises.
It's fast — typically a few weeks from the exploratory call to a clear AI Risk Diagnostic and a plan. From there, the subscription keeps it live month to month. We pace the rest to how fast you're adopting AI.
See where your AI risk actually stands
It starts with a short exploratory call. Tell us what you're running and where you're taking the business, and we'll tell you whether we can help, what the first engagement looks like, and what it costs. Not for you? We'll say so.