Headline product · Recurring service · Standalone or paired

The AI Governance Bundle.
Productised. Vendor-neutral. Board-ready every quarter.

A fixed-price, fixed-scope service that establishes your AI governance framework, deploys Microsoft Purview controls, and delivers quarterly governance reporting your board can sign off on. Covers every AI vendor in your environment — not just Microsoft.

Data governance dashboard
VENDOR-NEUTRAL · ISO 42001 ALIGNED
"AI does not create risk. It exposes what already exists. The Bundle exists to make sure what's already there is on your terms, not theirs."
What's in the box

Five deliverables. One operating standard.

Every Bundle includes the same five productised deliverables. We don't sell tiers and we don't lock features behind premium pricing. The work is the work.

1

Shadow AI Discovery audit

Every AI tool in use across your business — Copilot, Claude, ChatGPT, Gemini, Perplexity, whatever's there. Who's using it, what data flows through it, what risk it creates.

2

AI Acceptable Use Policy

Drafted for your industry and your regulator (TPB, ASIC, APRA, AHPRA, Law Society — whichever applies). One page, plain English, ready for legal sign-off.

3

Microsoft Purview & Copilot configuration

Sensitivity labels, DLP rules, Copilot guardrails, aligned to Essential Eight. Cross-vendor governance overlays for non-Microsoft AI tools your staff are using.

4

Framework alignment mapping

ISO 42001 + Voluntary AI Safety Standard + your industry-specific regulator. The document your board will be asked to evidence when an audit lands.

5

Quarterly AI Governance Report

Board-ready, signed off by Evisent senior, every quarter. Traffic-light status across Inventory, Policy, Controls, and Reporting. The single artefact that proves the ongoing fee is being earned.

Setup phase · 4 weeks

From signed engagement to first board report — 30 days.

The Bundle's setup phase is sequenced. Each week has a defined goal, a defined output, and a defined gate to the next week. You always know where we are.

1

Week 1 — Onboarding

Tenant access, stakeholder map, condensed Discovery (if no Sprint completed).

2

Week 2 — Framework

AI Governance Framework drafted, mapped to ISO 42001 + your regulator. Stakeholder review.

3

Week 3 — Controls

Microsoft Purview deployment / refinement. Cross-vendor governance overlays applied.

4

Week 4 — Live

AUP rolled out, staff training delivered, AI inventory published. First monthly report generated.

Ongoing · what the monthly fee covers

The Bundle isn't a deliverable. It's a discipline.

AI changes monthly. So does your team's use of it. The ongoing fee covers the cadence of review and refinement that keeps your governance posture current.

Monthly

Inventory + drift check

  • ↳ AI tool inventory refresh — new tools flagged
  • ↳ Purview / Copilot configuration drift check
  • ↳ AUP version control + change log
  • ↳ Incident review (leak attempts, policy bypass)
  • ↳ One-page status report to primary contact
Quarterly

Board-ready governance report

  • ↳ Quarterly AI Governance Report (sample below)
  • ↳ Live discussion with leadership (30-60 min)
  • ↳ Framework refresh against regulator updates
  • ↳ Recommended actions for next quarter
  • ↳ Roadmap reset where needed
Annual

Re-baseline + roadmap

  • ↳ Full framework re-baseline
  • ↳ Independent gap analysis
  • ↳ 12-month forward roadmap
  • ↳ Pricing & scope renewal
Always on

Regulator watch + same-day flag

  • ↳ APRA · ASIC · OAIC · TPB · AHPRA · Law Society
  • ↳ New guidance that affects you = same-day notice
  • ↳ Quarterly briefing on what changed industry-wide
The artefact your board will actually look at

Inside the Quarterly Governance Report.

Most governance work produces documents nobody reads. The Quarterly Report is built backwards from the one-page traffic-light summary a board chair will actually open.

  • 1
    Executive summary
    Traffic-light status across Inventory, Policy, Controls, Reporting. Three changes this quarter. Recommended attention items.
  • 2
    AI inventory
    All AI tools in use, by team, by data classification. New tools introduced. Tools retired.
  • 3
    Policy posture
    AUP version. Training completion. Violations logged.
  • 4
    Controls posture
    Purview rule effectiveness. Copilot guardrail performance. Cross-vendor coverage. Incidents and near-misses.
  • 5
    Framework alignment
    ISO 42001 / AU Voluntary AI / industry regulator. Gaps closed. Gaps remaining.
  • 6
    Regulatory calendar
    Upcoming deadlines and how you track against them.
  • 7
    Recommended actions
    Prioritised list for next quarter with effort estimates.
Quarterly AI Governance Report
Acme Pty Ltd · Q2 2026
Inventory — current · 14 tools tracked
Policy — current · v3.2 · 96% training complete
Controls — attention · 2 Purview rules need refresh
Reporting — current
↳ Microsoft Copilot (M365) · 87 licences
↳ Microsoft Copilot Studio · 4 agents live
↳ Power Automate · 23 flows
↳ Anthropic Claude (API) · 2 integrations
↳ ChatGPT (shadow) · 12 users flagged
↳ Gemini (shadow) · 3 users flagged
Pricing

Same scope. Same price. Published.

Every other AI consultant starts a discovery call with "that depends." We publish the price and the deliverable. You can decide if we're worth booking before you book the call.

SETUP · ONE-OFF
From $9,950
+ GST · 30 days · flexes with org size, tenant count & AI footprint
  • Onboarding + tenant access
  • Shadow AI Discovery audit
  • AI Acceptable Use Policy drafted
  • Microsoft Purview & Copilot configuration
  • Framework alignment mapping
  • Staff training (1hr, recorded)
  • First monthly governance report
Book the Bundle
ONGOING · MONTHLY
From $1,950/mo
+ GST · monthly · flexes with reporting cadence & inventory size
  • Monthly inventory + drift check
  • Quarterly board-ready governance report
  • Quarterly leadership review (30-60 min)
  • Annual framework re-baseline
  • Same-day regulator alerts
  • Full documentation kept current
  • 30-day exit clause · vendor-neutral
Start the Bundle
For businesses 20+ in size — operational note
For clients 20+ in size we'll recommend moving Managed IT to Evisent — not because the Bundle requires it, but because clean admin access keeps governance work secure and avoids co-administration risk. From 1 July 2026, MSP pricing is from $185/user/month, 10-user minimum ($1,850/mo floor). Sub-20-seat businesses are welcome to engage on the Bundle alongside any incumbent IT provider.
What's deliberately not in scope

Honest about the boundary.

Common questions

What people ask before they book.

Three factors typically scale the Bundle setup above $9,950: staff count (the largest factor — more people means more shadow-AI to discover, more training delivery, more endpoints to cover), number of M365 tenants (multi-tenant or multi-entity structures add complexity), and existing AI vendor footprint (the Bundle covers governance overlays for every AI vendor in use, not just Microsoft). The monthly fee scales similarly with reporting cadence (some boards want monthly vs quarterly), AI inventory size, and the number of regulators we need to track for you. We always quote the final scope and price before you commit — no "discovery call surprises".

No. The Bundle runs standalone — alongside your existing IT provider, with just-in-time admin access where needed. For businesses 20+ in size we'll usually recommend moving Managed IT to us because clean admin access makes governance work safer, but that's an operational recommendation, not a gating rule.

The Bundle is vendor-neutral on AI. We govern every AI vendor your staff are using — Copilot, Claude, ChatGPT, Gemini, Perplexity, whatever's there. We deploy Microsoft Purview as the control layer because it's the deepest tooling we run, but the governance framework, AUP, and reporting cover any AI vendor in your environment.

Not yet. We're aligned to ISO 42001 in our delivery. ISO 27001 audit is in progress with ISO 42001 to follow, expected through the second half of 2026. Until certified, claims remain "aligned to" not "certified to". When the certifications land, every claim becomes an order of magnitude more defensible — but the underlying work is the same now as it will be then.

Every Bundle contract includes a clause that lets you offboard within 30 days of notice. We hand over full documentation — your AI inventory, your AUP, your Purview configuration export, your governance report archive — to either you or a successor provider. We don't lock prompts or governance artefacts in our tooling. You should always be able to leave; most clients don't, but the option is the point.

That's the natural next step. Most Bundle clients add a Build within the first 6 months — a Copilot deployment, a Power Automate flow, a Claude integration. Builds are quoted separately as Build & Operate engagements. Bundle clients get priority scoping and discounted scoping fees.

Yes. We'll send you a fully anonymised sample report from a comparable business in your industry, before you book the Bundle. Email info@evisent.com.au with "sample report" in the subject.

Start with the 2-week Sprint

See what's actually happening in your business.
Then decide if the Bundle is right.

The AI Readiness Sprint is the lowest-commitment way to see your shadow-AI exposure and whether the Bundle fits. Two weeks. From $4,950 + GST. Board-ready output.