Free tool

AI Readiness Check

Ten questions, three minutes, an honest picture of how ready your organization is to run AI securely. Answered entirely in your browser — nothing is sent anywhere.

Identity & Access

1. Is phishing-resistant MFA with conditional access enforced for all workforce and admin accounts?

Identity & Access

2. Has standing privileged access been replaced with just-in-time elevation?

AI Governance

3. Do you maintain an inventory of all AI use in the organization — sanctioned and shadow?

AI Governance

4. Is there a communicated AI usage and data-handling policy your teams actually follow?

Data Protection

5. Is your data classified, with DLP controls on what can enter AI tools and prompts?

Data Protection

6. Is retrieval (RAG) access authorized at the document level, per user and per agent?

Engineering

7. Does every release pass automated security scanning in CI/CD (code, dependencies, IaC)?

Engineering

8. Do AI agents and workloads run with their own least-privilege identities — no shared keys?

Monitoring & Compliance

9. Are AI interactions and agent actions logged, monitored, and alertable?

Monitoring & Compliance

10. Are your controls mapped to frameworks (NIST, SOC 2, ISO) with evidence generated continuously?

0 of 10 answered