Search

Find insights, training programs, and workshops

Risk, Compliance & Control Points
Intermediate to Advanced (SA, EA, TS)5-6 hoursRisk and control register template + compliance mapping guide + architecture risk heat map

How architecture manages technical risk and meets regulatory obligations — covering architectural risk analysis, compliance by design, privacy by design, security controls as decisions, operational risk, control points, and demonstrating compliance through architecture.

...landscape Privacy by design Security controls as decisions Operational risk Control points Demonstrating compliance Putting it all together Cheat sheet Before we start — the one thing to hold onto Architecture...

1 DayIntensive
CriticalSA · EA · TS
AI & Agentic Systems Strategy Workshop
CIO, CTO, Chief AI Officer, VP EngineeringAI operating model, governance policy, compliance roadmap, 90-day action plan

Develop a clear, governed AI and agentic systems strategy that delivers business value while managing risk, cost, and compliance.

...governed AI and agentic systems strategy that delivers business value while managing risk, cost, and compliance. I've seen organisations spend six figures on AI pilots that never reached production. Not...

2 DaysStrategic
Operating ModelGovernance Framework
Responsible AI Implementation Workshop
AI/ML Engineers, Data Scientists, Product Managers, Compliance OfficersResponsible AI implementation guide, safety guardrail templates, compliance checklist

Implement responsible AI practices including safety guardrails, alignment mechanisms, bias detection, and regulatory compliance.

Before we start — the one thing to hold onto Most teams think responsible AI is a compliance checkbox. I've sat in rooms with legal teams who believed that once they'd filled out an AI...

1-2 DaysHands-on
Compliance ReadyGovernance
AI Policy, Security & Organisational Controls
Beginner to Intermediate4-5 hoursAI policy checklist + security controls map + incident response starter template

Building and enforcing AI policy — the practical mechanisms that turn ethical principles into enforceable organisational rules. Data security, access controls, audit trails, and incident response.

...security Prompt injection and adversarial risk Access controls Audit trails and logging Incident response Compliance mapping The control environment in one diagram Cheat sheet The enforcement gap A company that...

1 DayIntensive
Beginner FriendlyNo legal background required
The Enterprise AI Operating Model: From Experimentation to Institutional Capability
The Enterprise AI Operating Model: From Experimentation to Institutional Capability

A structured executive guide explaining how to move from AI experimentation to an Enterprise AI Operating Model with governance, autonomy control, and cost discipline.

...without cross-review Six months later: Costs fluctuate unpredictably Security escalations slow progress Compliance reviews increase friction Executives hesitate to scale The issue is not capability. The issue...

Nobody Uses ADRs as an Agentic Decision Log. They Should.
Nobody Uses ADRs as an Agentic Decision Log. They Should.

Why Architectural Decision Records are the only structure most organizations already have that can govern AI agent accountability — and how to extend them into an Agentic Decision Log before the EU AI Act deadline.

...What Most Organizations Believe About Agent Governance Most teams believe AI agent governance is a compliance problem. Something the legal team handles. Something that will be addressed with a policy...

Your AI Agents Are Making Architecture Decisions. Nobody Assigned Them That Role.
Your AI Agents Are Making Architecture Decisions. Nobody Assigned Them That Role.

AI agents are making micro-architecture decisions in production. No ADR recorded them. No review board approved them. No architect ever saw them. Here is the structural fix.

...are having it at the wrong altitude. The boardroom asks: How much autonomy should agents have? The compliance team asks: What data can agents access? The security team asks: What actions can agents execute?...

Complete Enterprise Data Architecture Framework: Business, Logical, Physical Layers with Real Templates
Complete Enterprise Data Architecture Framework: Business, Logical, Physical Layers with Real Templates

Most enterprises build data architectures one layer at a time. Business, logical, and physical layers exist as separate artefacts owned by separate teams. That separation is the structural gap that makes data estates ungovernable.

...Restricted Data Steward Quarterly Retention Policy How long data in this domain may be held Legal / Compliance Annual or on regulation change Consent Model What consent governs collection and use Privacy...

Security Is Not a Gate. It Is an Architecture Property.
Security Is Not a Gate. It Is an Architecture Property.

Security is treated as a gate at the end of delivery. It should be an architecture property designed into three distinct boundaries. Here is the model that fixes the friction between security and delivery.

...The Wrong Category Security has been filed under the wrong category for two decades. It sits in the compliance deck under controls. It appears in the delivery workflow as a checklist item. It gets a team...