AI Risk Desk
AI adoption outpaces governance in most organisations. Tools are deployed without oversight, risks accumulate quietly, and gaps surface only when something goes wrong. The AI Risk Desk provides structured assessment of AI use, risks, and priorities across your organisation.

Skopix
Best for: Organisations needing ongoing compliance monitoring for live AI chatbots
Most AI chatbots are assessed once, then left unmonitored. Behaviour drifts, edge cases emerge, and compliance gaps go unnoticed until a customer complaint or regulator inquiry surfaces them. Skopix closes that gap with continuous, independent monitoring - using synthetic probing to test your chatbot the way a real user would, without requiring any SDK integration on your side.
Each monitoring cycle checks four areas: scope adherence (does it stay within its intended purpose), refusal and safety behaviour, disclosure (does it accurately represent what it is and can do), and behavioural consistency over time. Findings are mapped to NIST AI RMF, ISO/IEC 42001, and national frameworks, including Australia's VAISS, and delivered as a report you can hand directly to a board, auditor, or customer's due-diligence team.
Framework Compliance Assessment
Best for: Organisations responding to external due-diligence or proactively managing AI compliance internally
A structured view of where you stand against a named AI framework is useful whether the question comes from outside or from within. Customers, partners, and regulators increasingly ask directly about NIST AI RMF or VAISS alignment, so boards and risk committees often want the same clarity proactively, before being asked. Our Framework Compliance Assessment evaluates your organisation against the NIST AI RMF, Australia's VAISS, or both, depending on what you need to demonstrate.
Express AI Risk Assessment
Best for: Organisations wanting a fast first view of AI risk exposure
Not every organisation is ready for a full assessment engagement. Sometimes you just need to know, quickly, where the biggest risks sit before deciding what to do next. The Express AI Risk Assessment is a scoped, self-service review that surfaces your highest-priority AI risks without the time or cost of a full engagement.
It's designed as a practical entry point: a clear, prioritised starting list you can act on immediately, or use as the basis for deciding whether a deeper engagement, like a Framework Compliance Assessment or full Governance Review, is the right next step.
AI Risk and Governance Review
Best for: Organisations wanting expert judgement, not just a scored report
Scored assessments are useful, but they can't tell you whether your AI is actually well-governed in practice - only whether your documentation says it is. The AI Risk and Governance Review is a practitioner-led engagement that looks past the paperwork: how AI systems are actually built, deployed, and overseen day to day.
This review covers three dimensions: AI practice maturity across your teams, product-level risk in specific AI systems you're running, and the strength of your organisational governance structures - roles, accountability, and escalation paths. The output is direct, practical judgment from someone who has done this work before, not a generic checklist.
ISO 42001 Certification Support
Best for: Organisations for whom certification is a customer or contractual requirement
For some organisations, AI governance maturity isn't optional. A customer contract, tender requirement, or regulatory expectation may specifically call for ISO/IEC 42001 certification. Getting there requires more than good intentions: auditors expect specific documentation, controls, and evidence trails that most organisations haven't yet built.
We help close that gap - identifying what's missing against the ISO/IEC 42001 standard, building the required documentation and controls, and preparing your organisation for the certification audit itself. The goal is a smooth audit, not a scramble.
