Result · AI governance & readiness

AI was already live across the firm. Nobody could say who owned it

A professional services firm with UK and international offices, carrying client confidentiality and professional-liability obligations, commissioned an independent read on where it actually stood. We found four distinct classes of AI activity, each needing a different kind of governance.

Board-level engagement Readiness + governance + cyber posture Benchmarked to ISO 42001 & NIST AI RMF
4
Distinct classes of AI activity found, each with its own governance shape
2
Production tools built in-house with no organisation-controlled source code
7
Board decisions delivered, each with a named internal owner
90 days
Stabilisation and acceleration plan, sequenced and costed
The situation

Capable people, finding real value, with nothing underneath them

This was not an organisation resisting AI. It was the opposite. Practitioners across several offices had independently found genuine, material value — work that had taken days being produced in minutes, and tools built in-house that were good enough to put in front of clients.

What had not kept pace was the structure around it. There was no register of what was in use, no gate before a new tool entered the business, no named owner for any of it, and no consolidated view of what client data was travelling where. An AI strategy paper had been written at director level the previous year and had never been taken forward — less because of its content than because no standing body existed whose job it was to receive that thinking and convert it into action.

The firm did not lack AI ideas. It lacked structure.

There was a commercial edge to it as well. Business development leadership in one region reported losing bids in a market that had historically been a strength, attributing the losses to competitors responding faster with AI assistance. The exposure ran in both directions: ungoverned use carried risk, and failing to organise carried competitive cost.

What we mapped

Four classes of AI activity, four different governance problems

Treating "AI" as one thing is the most common mistake we see. In practice the activity separates into classes that need genuinely different controls — an intellectual property question is not a data protection question, and neither is answered by a single policy document. Mapping the classes is what makes the governance tractable.

Class 01 · BuiltAmber
Built under external research partnership

Tools developed under a formal arrangement with an external research partner, automating specialist technical analysis that would otherwise take a consultant several days per instance. Phase one complete and in testing.

Governance shape Contract review against the productisation case Sub-licensing and commercialisation terms Organisation-controlled source-control mirror Deployment surface review
Class 02 · BuiltAmber
Built in-house by employees

A tool built solo by a senior practitioner that compresses roughly two days of skilled manual work into a single parameter adjustment, producing a client-deliverable output. Intellectual property position clean, resting with the firm by default of employment.

Governance shape Lives on one machine, no controlled repository Single point of knowledge — no documented handover Data-flow question on AI-assisted code generation Build steps and design decisions undocumented
Class 03 · BoughtRed
SaaS brokers for imagery and content

A third-party platform giving users one workspace across several upstream AI providers, with accounts held individually by practitioners rather than by the firm — and now being used on real client presentation work in more than one office.

Governance shape Three-hop data path, unmapped and ungoverned Model-training upload possible with no approval gate Personal-tier terms applied to client material IP-sharing clauses in vendor terms unreviewed
Class 04 · BoughtRed
SaaS handling personal and prospect data

The main CRM and marketing platform, with AI features enabled at entry tier and higher-tier agents available behind a paywall. The data flowing through it is personal data, which changes the governance shape entirely.

Governance shape Controller / processor analysis under UK GDPR Article 28 data processing agreement absent Data-residency election never made Algorithmic-decisioning posture if the tier rises

The two Red classes shared a root cause: tools procured individually by capable people acting in good faith, on personal terms, without anyone in the firm holding a view of the aggregate position. Neither was a failure of judgement. Both were a failure of structure.

What the assessment surfaced

Findings that had not been articulated internally

Individually, several people held pieces of the diagnosis. What was missing was anyone holding all of it at once.

Confidentiality terms and tool terms did not match

Where practitioners used personal-tier subscriptions on material covered by client non-disclosure agreements, confidentiality reduced to the vendor's general terms and the individual's discretion — rather than the controller and processor framework an organisational subscription would have provided.

Two production tools with no independent copy of the source

Both in-house tools were genuinely valuable and both sat on individual machines, with no firm-controlled repository and no documented build steps. If either developer had become unavailable, the firm had no way to maintain or extend an asset it depended on and partly owned.

Two production lines for the same task, never compared

Two of the firm's most active AI users, in the same office, performing the same task, had built entirely different toolchains and had never met. Neither stack had been compared on quality, cost or data handling. The firm was paying twice and had no information on which to choose.

The licensing mechanism already existed

Centralised, request-and-approve licensing was already running successfully for the firm's design software estate. Extending that same pattern to AI tooling was an organisational decision, not a technical build — which made it one of the fastest available wins.

How we ran it

Readiness, governance and cyber posture as one engagement

Assessing AI readiness without assessing the security baseline underneath it produces recommendations that cannot be implemented. We ran them together.

Workstream A AI readiness

How staff were actually using AI, sanctioned and unsanctioned. What tools were in use, what data went into them, and the level of literacy across the business.

Workstream B Cyber security posture

A governance and risk assessment rather than a penetration test. Ownership, accountability, and whether the baseline could carry what was being built on it.

Workstream C Systems & data landscape

What existed, what was genuinely end-of-life against what could be extended, and the infrastructure preconditions that had to be met first.

Workstream D Findings & direction

The most material gaps against stated ambition, the foundational actions that had to come first, and the sequence in which to take them.

Structured stakeholder interviews Executive and practitioner sampling Facilitated working session Policy and documentation review ISO/IEC 42001 benchmark NIST AI RMF ICO guidance on AI Cyber Essentials baseline Board-ready report
The outcome

Seven decisions, each with a name against it

The report was structured so the board could act on it directly rather than commission further work. Every recommendation carried an internal owner — because governance that depends on a consultant to operate is not governance.

01
Stand up the governance body

A small standing group with a chair, a reporting line and decision rights — the mechanism that had been missing when the previous strategy paper stalled.

02
Put a gate in front of new tooling

A vetting checklist applied before practice-wide release, with a lightweight impact assessment attached, so new tools enter a controlled environment.

03
Move off personal subscriptions

Extend the existing centralised licensing pattern to AI tooling, bringing client work back inside organisational terms.

04
Secure the tools already built

Firm-controlled source-control mirrors, documented build steps, dependencies pinned and scanned, deployment surface reviewed.

05
Settle the data protection position

Controller and processor roles established, Article 28 agreements put in place, data-residency elections made deliberately rather than by vendor default.

06
Close the cyber baseline gaps first

The specific foundational items that had to be in place before the rest of the programme could be considered defensible.

07
Run the acceleration pilots

A short list of near-term opportunities, each scoped to internal data to avoid governance blockers, each pilotable inside a single project cycle, each with an owner.

The board took the recommendations forward. What made that possible was not the analysis but the shape of it — decisions rather than observations, owners rather than recommendations, and a 90-day horizon short enough that the first actions were complete before the momentum went.

Why it mattered

The pattern repeats across sectors

We see this shape repeatedly: capable people finding real value before the organisation can explain the risks, the owners or the limits. Individuals across functions each hold a piece of the diagnosis. What is missing is ownership, and a defensible footing under activity that is already in flight.

The work is rarely about slowing adoption down. In this engagement the same assessment that identified the red-rated exposures also identified the acceleration opportunities — and the fastest of those turned out to be extending a licensing mechanism the firm was already running successfully for other software. Governance and advantage came from the same piece of work.

This case study is published in anonymised form under engagement confidentiality. Sector, location, tooling and individual details have been generalised or omitted. Cyberbase can discuss the engagement in more detail under NDA, and references are available at C-suite level.

Related

The services behind this engagement

The next step

Could your board answer these four questions today?

Advantage, risk, control and ownership — applied to the AI activity already visible in your organisation. In a single hour with your leadership team we map your immediate exposure and show what a full review would uncover.

Arrange the briefing

No preparation required. No obligation to proceed.