AI Governance · IT Audit · Business Continuity

Three applications.One governance workspace.

Each application has its own workflow for the team that uses it: AI governance, IT audit or business continuity. They run on one shared core, so organizations in KSA, the UAE and the EU can run all three without keeping people, access and audit trails in separate tools.

The applications

Pick the application you need, or all three

AI Governance, IT Audit and Business Continuity are separate applications with their own workflows. They run in the same workspace, with the same people, roles and audit trail.

Inventory, assess and evidence your AI systems.

Keep one register of the AI systems you build and buy, classify their risk, and assess them against the EU AI Act, NIST AI RMF, ISO/IEC 42001, OECD, KSA (SDAIA + PDPL) and UAE requirements. Incidents, human oversight decisions and policies are recorded alongside, so evidence is ready when someone asks for it.

What you can do

  • AI system inventory with CSV and JSON bulk import
  • Guided assessments across seven frameworks, with gap analysis
  • Incident log, human oversight log and per-system evidence packages
  • Policy templates, action plans and board-facing reports
Early access
Plan, test and report IT audits in one place.

Maintain an audit universe, run engagements with a defined scope and team, and build a risk and control matrix for each one. Record design and operating-effectiveness tests, turn exceptions into findings, and track findings through agreement and remediation to closure.

What you can do

  • Audit universe of auditable entities with owners and risk ratings
  • Engagements with scope, team and stages from planning to close; later stages are gated before they open
  • Risk and control matrix, with design and operating-effectiveness testing
  • Findings lifecycle and a printable engagement report
Early access
Know your critical services and show you can recover them.

Record the business services that matter, run a versioned business impact analysis to set RTO, RPO, MTPD and MBCO, and see where a dependency cannot recover fast enough. Write continuity plans against each service, exercise them, and track the actions that come out.

What you can do

  • Business services with criticality tiers and owners
  • Versioned business impact analysis with RTO, RPO, MTPD and MBCO, and approval
  • Dependency mapping that flags recovery conflicts before approval
  • Versioned continuity plans and exercises with follow-up actions

Applications marked early access are working today and available to selected organizations while we finish them with early users. Request access and we will enable it for your workspace.

One suite, shared core

Each application stands on its own. Together they share one core.

Use one application or all three. They run in the same workspace, so the people, the audit trail and the records they have in common are not duplicated across tools.

How the suite works today

  • One workspace, one team

    One sign-in, one organization and one set of members and roles across every application you use. Access is switched on per application.

  • One audit trail

    Changes in AI Governance, IT Audit and Business Continuity are written to the same organization audit log.

  • AI systems linked across applications

    Audit universe entities and business services can link to AI systems in your AI Governance inventory, so an auditor or continuity owner starts from the same record.

Where the shared core is going

  • On the roadmap

    One inventory

    Applications, services, third parties and AI systems kept once and used by every application: audit scope and BCM dependencies picked from the inventory instead of retyped.

  • On the roadmap

    One issues & actions list

    Audit findings, BCM exercise actions and AI remediation tracked in one lifecycle, so the organization has one remediation list.

  • On the roadmap

    One queue per person

    My Work: every assignment, review and approval from all three applications in one place for each person.