AI Governance Foundation Audit
Gap analysis against NIST AI RMF plus Microsoft Foundry control-plane recommendations. The report you hand to InfoSec before the procurement conversation starts.
These packages cover a specific review or integration. Each page lists the deliverables, price, and required access. For a larger project, start with a conversation.
Gap analysis against NIST AI RMF plus Microsoft Foundry control-plane recommendations. The report you hand to InfoSec before the procurement conversation starts.
Written review of an MCP server implementation against the OWASP Agentic AI Top 10. Tool-by-tool, auth boundary, output bounds, audit surface — with a remediation list ordered by exploitability.
Live walkthrough of your Azure OpenAI architecture. Diagram of what you have, 5–10 specific recommendations, written summary you can forward.
Live review of your retrieval-augmented generation pipeline. Embedding model, chunking, retrieval strategy, eval harness — what's actually broken and what's noise.
A working Copilot Studio agent wired to one enterprise data source through Azure Functions middleware. OAuth on-behalf-of, scoped to the right DLP zone, generative orchestration enabled, ready for your security review.
Each package lists its deliverables. We confirm the scope before starting and agree separately on any additional work.
The package page states its payment schedule and delivery timeline. If I cannot finish on time, you receive the completed work and a pro-rated refund.
I will describe additional work separately from the agreed package. You can use the findings with your own team or discuss a follow-on engagement.