Strategy Blueprint
Find Your First AI Wins
- 3-5 prioritised use cases identified
- 90-day roadmap with clear next steps
- GDPR-ready governance included
Enable safe, confident AI use across the team in 3-5 working days, not months.
UK businesses are adopting AI faster than they're managing the risks
AI adoption among UK businesses has jumped significantly, creating urgent governance needs
Source: OfcomSenior UK IT leaders cite data security as their top AI-related concern
Source: EY ResearchLeaving 96% exposed to data breaches, compliance gaps, and costly mistakes
Source: Tech UKThe UK GDPR requires businesses to conduct a Data Protection Impact Assessment (DPIA) if they process data that may result in high risk to the individual—and AI is considered a high-risk technology. Without a formal policy, you're exposed to regulatory scrutiny, data breaches, and reputational damage.
We close this gap with a practical policy and SOP delivered in 3-5 working days, giving your team clear guardrails without months of internal debate.
Only 4% of UK businesses have an AI policy—leaving 96% exposed to data breaches, compliance gaps, and costly mistakes. This service delivers a practical AI acceptable-use policy in 3-5 working days, complete with a Standard Operating Procedure so your team uses AI safely and confidently from day one.
We start with a free 30-minute consultation to understand your needs and provide a personalised quote. From there, we audit your current AI tools, map data flows, and build a risk profile tailored to your organisation. Unlike generic templates, we embed practical guidance directly into everyday tasks—showing teams exactly how to handle sensitive information, validate AI outputs, and escalate edge cases.
The service includes role-based guidance for marketing, sales, operations, and support teams, written in plain English. You receive a comprehensive SOP document, a quick-reference summary for day-to-day use, and a simple team acknowledgement system for governance purposes.
Choose a 30, 60, or 90-day follow-up review to check adoption, address emerging questions, and refine the policy as your AI tools and practices evolve. This creates a foundation for safe, confident AI use that scales with your organisation.
A complete governance framework tailored to your organisation
A comprehensive policy document tailored to your specific AI tools and use cases, written in plain English your team can actually follow.
Step-by-step guidance for common AI tasks—what's allowed, what needs approval, and how to handle sensitive data safely.
Documentation to support your Data Protection Impact Assessment requirements, with clear guidance on data handling and third-party AI tools.
Practical examples for different roles in your organisation—marketing, HR, finance—showing exactly what's appropriate for each team.
Day 1
We review your current AI tools, use cases, and data handling practices. A 30-minute consultation identifies your specific governance requirements.
Days 2-3
We draft your bespoke AI acceptable use policy and SOP, incorporating your specific tools, roles, and compliance requirements.
Day 4
You review the drafts and we incorporate your feedback. We ensure the documents work for your team and align with your business culture.
Day 5
We deliver final documents in your preferred format with implementation guidance and staff acknowledgement templates.
Every organisation is different. We adapt this process to fit your specific requirements, risk profile, and team size. Some projects need comprehensive coverage; others focus on specific departments. We'll recommend the right approach during your free consultation.
Clear pricing with no hidden costs. You get a complete governance package upfront.
From £995
Complete policy and SOP package to enable safe AI use across your organisation
Personalised quotes based on your specific requirements
Everything you need to know about our AI risk management services.
While a data protection policy covers how you handle personal data across all systems, the AI Risk Management Service specifically addresses the unique risks of generative AI: hallucinations, prompt injection, unintended data disclosure, and output validation. We provide practical, role-specific guidance that helps teams use AI tools safely in their day-to-day work, complementing rather than replacing your broader data protection framework.
That's precisely why this service exists. We start with a free consultation and Shadow AI Governance Assessment to identify current usage patterns and risks. The policy addresses real tools and workflows your team already uses, making it immediately applicable rather than theoretical. The SOP provides step-by-step guidance to transition from informal usage to safe, governed practices without disrupting productivity.
No. The policy and SOP are written in plain English and designed for non-technical teams to understand and apply. We provide a quick-reference summary, role-based examples, and clear escalation procedures. Your chosen follow-up review (30, 60, or 90 days) and refresh checklist help you maintain the policy as AI tools evolve, with guidance on when to update rather than requiring constant monitoring.
The SOP is a comprehensive, self-contained document designed for asynchronous use across all locations. It includes step-by-step guidance, role-based examples, and decision trees that teams can reference independently. The quick-reference summary provides an at-a-glance overview for day-to-day use, and the acknowledgement system works digitally for distributed teams.
The policy is designed to be tool-agnostic, focusing on principles (data handling, output validation, escalation) rather than specific platforms. The refresh checklist guides you through assessing new tools against existing guardrails. Your chosen follow-up review provides an opportunity to update the policy, or you can request an ad-hoc review at any time.
Yes. The policy includes role-based guidance that reflects different risk profiles - for example, stricter controls for finance and legal teams handling sensitive data, while allowing more flexibility for marketing teams working with public information. This balanced approach prevents the policy from being either too restrictive or too permissive.
We provide a simple sign-off mechanism (digital form or document-based) where team members confirm they've read and understood the policy. This creates a lightweight audit trail without complex systems. The tracking method is tailored to your organisation's size and technical capabilities - from a shared spreadsheet to integration with your HR system.
Get a practical, GDPR-compliant AI policy and SOP delivered in 3-5 working days
Discover other ways we can help transform your business with AI expertise
Strategy Blueprint
AI Integration