All services
Assessments

AI Readiness Assessment

Where AI is actually being used in your business, what data it is touching, and what that means for your risk and your accountability

AI arrived before the policy did

In most smaller businesses, AI did not arrive through a decision. It arrived through people. Somebody started drafting proposals in a chatbot, somebody else connected a tool to the CRM, and a vendor quietly added an AI feature to software you already licensed. That is not a scandal, it is Tuesday.

Our AI Readiness Assessment helps you answer three questions your customers and insurers are starting to ask: what AI is in use, what data reaches it, and who decided that was acceptable.

AI Readiness Assessment overview (PDF)

Benefits

  • Know what AI is actually in use
  • Know what data reaches it
  • The AI your vendors added without telling you
  • Named accountability for what the robots produce
  • Prioritized recommendations we help you act on
  • Evidence for customers and insurers who are starting to ask

Features

A structured review of your AI landscape, run the same way as any other compliance assessment we perform.

  • Inventory of who is using AI, and which tools and services they rely on
  • Evaluation of your policy, for adequacy and for whether it is working
  • Review of training and awareness across the workforce
  • The risks AI is creating that you cannot see yet, including third-party tools that added AI features without asking
  • Measured against the NIST AI Risk Management Framework 1.0
  • We have not adopted AI. Does this still apply?

    Almost always, yes. AI rarely arrives through a decision at this size. It arrives through people trying something useful, and through vendors adding features to software you already pay for. The question is not usually whether it is in use but whether anybody has looked.

  • What does the assessment look at?

    What is actually being used, what information reaches it, what the vendor is permitted to do with that information, and what your people have been told. It ends with a scored picture and a short list of decisions worth making deliberately rather than by default.

  • Will you tell us to stop using AI?

    Rarely. Most of what we find is about scope and instruction rather than prohibition: which tools, for which information, with which settings, and what staff understand about all three. Banning a useful tool usually moves it somewhere you cannot see it.

  • Someone here pasted company data into a chatbot. How much of a problem is that?

    It happens at every company we work with. What matters is what the data was, where it went, and whether any of it should have stayed private. The AI Readiness Assessment answers those questions: which tools your people use, what those tools touch, and what it means for your risk. You end up with a policy people will follow instead of a ban they work around.

Tell us about your business.

A half-hour conversation about what you're being asked for and where you actually stand. If we can help, you'll have a proposal usually within a day.

Not ready to talk? Check your readiness in five minutes and see where to start.