The standard first step
AI Readiness Assessment
Your current AI use and risk, benchmarked against ISO 42001 and AIUC-1, ending in a prioritized roadmap you can act on.
3 to 4 weeks
AI governance and certification
ISO 42001 and AIUC-1 certification, run by a security leader who has actually shipped the software.

Engagements
Directors carry personal accountability for AI risk. They want evidence of a governed program, not a slide saying you are exploring AI.
Enterprise security questionnaires now carry AI sections. Deals stall while procurement waits for certification-grade answers.
The EU AI Act and sector regulators are converging on one expectation: demonstrable, auditable AI governance.
The standard first step
Your current AI use and risk, benchmarked against ISO 42001 and AIUC-1, ending in a prioritized roadmap you can act on.
3 to 4 weeks
Assessment to certificate
Your AI compliance program designed, built and run to ISO 42001 and AIUC-1 certification readiness, with audit support throughout.
3 to 6 months
Ongoing leadership
AI governance leadership on retainer: program operation, board-level reporting and direct access when it matters.
6-month minimum
Do not understand architecture.
Does not understand certification.
Deep experience in both.
Building and deploying AI that is scalable, secure and certifiable.
Drove ISO 42001 and AIUC-1 certification as the accountable executive, in the first wave to hold both.
Built the security program for a regulated wealth platform and formed its AI Governance Committee.
Scaled security through hypergrowth without slowing the release cadence.
Sixteen years scaling IT, cyber, GRC and DevOps to $500 million in revenue.
Twenty years across IT, engineering and B2B SaaS. Built and scaled the software itself.
Production platforms at scale, secured to SOC 2 Type 2 and ISO 27001 across four industries.
Drove ISO 42001 and AIUC-1 certification from the CISO seat, in the first wave to hold both.
About
Twenty years inside B2B SaaS, securing what engineering shipped. Sixteen in healthcare technology, growing past $500 million in revenue, then security leadership in B2C finance and retail syndication hypergrowth. Every platform held SOC 2 Type 2 and ISO 27001 in production.
AI governance was proven in the CISO seat in regulatory audit software: ISO 42001 and AIUC-1 certification carried as the accountable executive, scope boundary to final auditor conversation, in the first wave to hold both.
Engagements run from unmapped AI footprint to audit-ready management system and stay through certification. Evidence is on the shelf before the questionnaire lands, and engineering keeps shipping. Clients get a security leader who has sat on both sides of the certification table.
Contact
Tell me where you are with AI governance and what you need to certify. Every engagement opens with a short discovery and a fixed-fee proposal.
Prefer email?
[email protected]