AI Governance

Know exactly where your AI stands.

Your AI use, measured against the rules that matter: the EU AI Act, ISO/IEC 42001, NIST AI RMF, and Canada’s Quebec Law 25 and PIPEDA. You get a prioritized gap report and a risk register you can act on. Fixed scope, delivered in 5 business days from your scoping call.

Frameworks covered

  • EU AI Act
  • ISO/IEC 42001
  • NIST AI RMF
  • Quebec Law 25 + PIPEDA

5 business days, start to readout

Async intake, a scoping call, and a senior-led gap analysis mapped to your actual AI systems. The clock starts at the scoping call.

Fig. A · Assessment spec

Built for founders who can’t answer with a shrug.

Founders and technical leaders at seed to Series B companies who are adopting AI and now face a customer security review, an investor question, or a regulator asking how it’s governed.

We run this the same way we run everything else at SECURIQUE: as your fractional CISO would, not as a consultant selling you a follow-on project. One named senior does the analysis and walks you through it.

What you get.

Five deliverables, built around your actual AI footprint, not a generic checklist.

  • A short async intake questionnaire plus one 45 to 60 minute scoping call.
  • A gap analysis mapped to the AI systems you run and the ones you plan to ship.
  • A prioritized risk register you can hand to your team.
  • An executive summary and a 0-30, 30-90, 90+ day remediation roadmap.
  • A 60 minute readout call to walk the findings and the plan.

How the assessment runs.

Three steps from intake to readout.

  1. 01
    Intake
    A short async intake questionnaire, plus a 45 to 60 minute scoping call to understand your stack and your AI systems.
  2. 02
    Gap analysis
    A gap analysis mapped to your actual systems against the EU AI Act, ISO/IEC 42001, NIST AI RMF, Quebec Law 25, and PIPEDA.
  3. 03
    Report and readout
    A gap report, a prioritized risk register, and a 60 minute readout call, within 5 business days of the scoping call.

Fixed scope. Clear deliverables.

One assessment to start, one subscription to keep the picture current.

Governance Watch

For teams who want the picture kept current after the assessment.

A monthly or annual subscription. Your AI footprint and the rules both move; this keeps the picture true.

  • Quarterly re-assessment
  • Reg-change monitoring against the crosswalk
  • Updated risk register

Billed · monthly or annual

Request Governance Watch

Not sure which one fits? Book a scoping call and we’ll work it out together.

What this is not.

Straight talk on the scope, before you book.

Not a compliance binder, and not legal advice. A short, direct read on where you stand and what to do first, from someone who has sat in the room when the questions get asked.

Book a scoping call.

A short call with the founder to confirm fit and scope before you start the assessment.

Book a scoping call