Governance & Compliance Scans
Instant insight into your
Microsoft AI estate.
Five automated governance applications, scoped as part of an enterprise engagement. No Forward Deployed Engineer required to run them. Grant read-only Azure Lighthouse access and get a scored report of your AI estate's security, data posture, and compliance gaps — in hours, not weeks.
The five applications
Each app targets a distinct governance gap.
Launching between October 2026 and September 2027. Register interest now to access the first application at launch.
CAF/WAF Landing Zone Audit
Automated scan of your Azure subscription topology, management groups, policy assignments, and Private Link isolation. Scored against Cloud Adoption Framework 2026 and Well-Architected Framework five-pillar baselines. Unencrypted transit paths, broad network peering, and key management risks surfaced in a single executive report.
- Subscription topology & management groups
- Azure Policy assignments & Deny effects
- Private Link & network isolation gaps
- Key management & encryption posture
- WAF pillar scores — target 8 across 5 pillars
Copilot & Agent Data Oversharing Scan
Exposure mapping of sensitive corporate data accessible to M365 Copilots and ad-hoc agent tools. Identifies what a Copilot can see — and what it shouldn't. Tenant-level RBAC gap analysis, unindexed data sprawl, and SharePoint permission hygiene scored and prioritised for remediation.
- M365 Copilot data exposure mapping
- SharePoint permission & sensitivity gaps
- Tenant RBAC analysis
- Unindexed data sprawl audit
- Agent tool scope assessment
Token Telemetry & Cost Leakage Analyser
Unmanaged Azure OpenAI API endpoints, token sprawl, and cost-attribution gaps across your AI service estate. Identifies which workloads are consuming tokens without governance controls, surfaces model deprecation exposure, and produces a FinOps-ready cost optimisation report.
- Unmanaged API endpoint detection
- Token consumption attribution
- Cost leakage by workload
- Model deprecation exposure
- FinOps optimisation recommendations
Zero Trust & Private Networking Evaluator
Assessment of your current Zero Trust posture and private endpoint coverage across all AI and data services. Scored against NCSC CAF and Azure Landing Zone baselines. Network segmentation gaps, public endpoint exposure on AI services, and Entra ID governance gaps surfaced and prioritised.
- Private endpoint coverage by service
- Public network access on AI services
- Network segmentation gaps
- Entra ID conditional access posture
- NCSC CAF alignment scoring
AI Governance & Deterministic Controls Scorer
Evaluation of your AI governance posture against ISO 42001 and the AI TRiSM framework. Scores your existing Azure Policy compliance, guardrail coverage, and model risk controls. Identifies the gap between your current AI governance estate and what ISO 42001 certification or FCA Consumer Duty compliance requires.
- ISO 42001 gap assessment
- AI TRiSM pillar scoring
- Azure Policy AI compliance audit
- FCA Consumer Duty explainability check
- Guardrail & model risk evaluation
How it works
Scope it. Grant access. Get the report.
Scope the engagement
Agreed as part of your enterprise engagement — no self-serve sign-up.
Grant read-only Azure Lighthouse access
15 minutes. No credentials leave your tenant. No agents installed.
Automated scan runs
Completes within hours. Zero disruption to running workloads.
Scored report delivered
Executive scorecard with prioritised findings and remediation costs. Updated monthly on re-scan.
Apps are the entry point, not the destination.
Each scan surfaces findings that Talastron Kinetic AI is designed to remediate. When you're ready to act on the scorecard, the diagnostic and the platform are already scoped.