dont panicLet's talk

Security & AI

Security built into how AI works.

We define what AI can access, what it can change and where people must approve. Data handling, infrastructure and operating responsibilities are considered from the start.

See the controls in action

A principle we build around

AI can propose an action.
The system enforces whether it is permitted.

01 · Data flow

Know where your data goes.

Before connecting AI, we agree what information it needs, where it is processed, who can access it and how long it is retained. That review includes prompts, outputs, logs, backups and model-provider terms.

Your systems

  • CRM
  • Finance
  • Documents

Scoped context

  • Information selected for the task
  • Access rules applied
  • Relevant context prepared

Model provider

Processing location, retention and training terms checked for the chosen service and configuration.

Model response Scoped context
Location
Where information is processed and stored.
Access
Who and what can reach it.
Retention
How long it is kept.
Illustrative data flow. The actual route and controls depend on the agreed solution.

The full review also covers retrieval stores, activity logs, backups and third-party access.

02 · Control in practice

Give AI a role.
Not unrestricted access.

The same request can be permitted, refused or held for approval, depending on who is asking, which records they can access and the rules for the action.

Illustrative control example

Example request

“Record this customer’s promise to pay.”

One request. Three illustrative authority settings.

System-enforced checks

  1. 01

    Identity

    Who is asking?

    Recognised user or service.

  2. 02

    Scope

    Which records can they access?

    Customer within permitted scope.

  3. 03

    Action rules

    Is this operation permitted?

    Requested operation permitted.

04

Outcome

What can happen next?

Action permitted.

The request can proceed within the agreed rules.

Action rules Outcome

Reduced motion · all steps shown

Agent-facing APIs and MCP interfaces expose defined business actions. Shared services enforce the permissions and rules behind each request.

This managed agent services pattern describes the interface architecture. Ongoing operation and support are agreed separately.

Illustrative behaviour only. No live systems or customer records are connected to this demonstration.

03 · Test and verify

Test the boundaries.

We turn agreed rules into repeatable tests and evaluate AI behaviour against representative cases. We check what the system should allow and what it should refuse before release and again when models, tools or permissions change.

Illustrative test cases
Example requestExpected system behaviour
Update details with the required permissionPermit the update.
Access an account outside the caller’s scopeRefuse access.
Record the same event twicePrevent a duplicate.

Relevant cases also include misleading instructions in retrieved content, consequential changes, retries and unavailable services.

04 · Secure foundations

Security beneath the surface.

We define infrastructure as code using Terraform, so changes can be reviewed, reproduced and traced. The design also considers access, secrets, environment separation and recovery.

Access controls
Identities, permissions and action policies.
Data
Access, retention and encryption.
Application
Controlled interfaces and tested safeguards.
Infrastructure
Separate environments, reviewed changes and recovery.
Complementary protections. No single security switch.

05 · Shared responsibility

Clear ownership after launch.

Before handover, we agree who reviews security, authorises releases, manages access and responds when something goes wrong. Ongoing support and escalation responsibilities are made explicit.

dont panic

Engineering, test evidence, release documentation and handover. Ongoing operation and improvement where included in the engagement.

Your business

Business rules, approval authority, information ownership and the people accountable for using the capability.

External providers

Their contracted service responsibilities, with dependencies, escalation routes and limitations recorded.

Support hours, monitoring and response arrangements are defined in the operating agreement.

Security decisions, documented.

During delivery, we agree the relevant data flows, access rules, security checks and operating responsibilities. Review and approval responsibilities are assigned before launch.

Architecture & risk review
Data flows, access boundaries and decisions to resolve.
Test evidence
The checks performed, their results and outstanding issues.
Operating handover
Responsibilities, escalation routes and agreed coverage.

Start a conversation

Have an AI use case and security questions?

Bring the proposed workflow, the systems involved and your security requirements. We’ll discuss the boundaries and what a responsible implementation would need.

Let’s talk about your business