Solutions AYJIS EU AI Act Industries Vision Pricing Company Request Assessment
Solutions

Deploy AI securely. Govern it responsibly. Prove it.

OneCompliant™ helps regulated European organisations — from mid-market to enterprise — adopt AI with confidence: governing how AI is used, protecting the data that flows through it, and producing the EU AI Act evidence regulators, customers, and boards now demand.

Request Assessment EU AI Act readiness
What We Solve

Every engagement starts with a business problem — not a product.

Whether you are rolling out enterprise AI, answering a regulator, or briefing the board, OneCompliant maps the challenge to a defined, outcome-driven solution.

The OneCompliant Platform

Assess · Govern · Enforce · Demonstrate.

Every solution is delivered through one integrated platform — a defined, repeatable sequence that moves your organisation from AI risk exposure to governed, audit-ready AI operations.

OASAT — Assessment Layer

Understand your AI risk before it becomes a liability.

The OneCompliant AI Security Assessment and Testing (OASAT) is a structured, fixed-price evaluation of your organisation's AI risk posture. It identifies where AI is being used, what data is at risk, what governance controls are missing, and how exposed you are under EU AI Act, NIST AI RMF, and NIS2 requirements.

It is the fastest way to replace uncertainty with a clear picture: a quantified view of your AI risk, and a prioritised governance roadmap that defines exactly what to do next — and in what order.

AI Usage Mapping

Identify all AI tools, models, and workflows in use across the organisation — including shadow AI.

Risk & Maturity Scoring

Score AI governance maturity against NIST AI RMF and EU AI Act requirements.

Regulatory Gap Analysis

Map current controls against EU AI Act, ISO 42001, NIS2, and GDPR obligations.

Governance Roadmap

Prioritised remediation plan with defined phases, resource requirements, and governance outcomes.

View Sample Assessment Book Assessment

Assessment Outputs

Risk
AI risk score by domain and business unit
Gap
Regulatory gap analysis vs EU AI Act & NIST
Map
Complete AI usage map including shadow AI
Plan
Prioritised governance roadmap with phases

"The assessment finds the risk you can't currently see, and turns it into a roadmap your board can act on."

OASF — Governance Framework

The policy engine that governs your AI ecosystem.

The OneCompliant AI Security Framework (OASF) is a structured governance and control framework for regulated enterprise AI adoption. It defines the policy domains, control categories, and authorisation boundaries that AYJIS enforces at runtime — aligned directly to EU AI Act, NIST AI RMF, and ISO 42001.

Unlike a framework document that sits on a shelf, OASF defines the rules in a form that is operational — the same rules AYJIS then enforces at runtime. Governance you can actually run, and prove.

Control Domain Architecture

Structured domains covering data governance, model governance, access controls, audit requirements, and operational AI security.

EU AI Act Alignment

Direct mapping of OASF controls to EU AI Act articles — providing the governance evidence regulators require.

NIST AI RMF Operationalisation

OASF operationalises the Govern, Map, Measure, and Manage functions of the NIST AI RMF into practical enterprise controls.

Runtime Policy Engine

OASF control definitions drive AYJIS enforcement — the framework becomes the policy engine, not just a document.

Explore the FrameworkCompliance Mappings

Framework Domains

Data Governance

Data classification, handling rules, and PII protection for AI interactions

Model Governance

Approved model registry, provider controls, and model selection policies

Access & Identity

Identity-bound AI access, role-aware permissions, and authorisation boundaries

Audit & Reporting

Event logging, governance reporting, and regulatory evidence generation

Operational AI Security

Prompt injection defence, adversarial monitoring, and AI incident response

OASAP — Awareness Programme

Enterprise AI security awareness that employees actually retain.

The OneCompliant AI Security Awareness Programme (OASAP) delivers custom AI security awareness training — built for the specific risk profile of your organisation, your industry, and your workforce. Not generic compliance videos. Operational awareness that changes behaviour.

OASAP is a custom production of 5 awareness videos tailored to your organisation. Available in multiple languages. Unlimited internal playback. Delivered within your existing learning management system.

5 Custom Awareness Videos

Tailored to your organisation, your industry, and your AI risk profile. Employees, IT teams, management, and executive audiences.

Multi-Language Delivery

Available in English and additional languages — critical for multinational regulated enterprises.

SAFE AI — 4 Steps Framework

A memorable, practical framework employees can apply immediately: Remove, Review, Fit, Verify.

Assessment Add-on

Optional pre/post assessment and compliance quiz — priced by employee headcount for NIS2 and EU AI Act evidence.

Request OASAP Briefing

Proven in a Regulated Enterprise

Reference Deployment

Leading European Telecom

OASAP awareness programme adopted organisation-wide in multiple languages. Published on the operator's official learning management platform.

Pricing

A fixed-fee programme — five custom awareness videos, with optional assessment add-ons priced by workforce size for EU AI Act and NIS2 evidence.

See full OASAP pricing
AYJIS — Runtime Enforcement

The governed gateway where AI governance becomes operational reality.

AYJIS is the runtime AI governance and enforcement layer — the governed enterprise AI gateway where every prompt, model interaction, and data flow is inspected, controlled, routed, and logged in real time. It turns your OASF governance framework from a policy document into an enforced operational control.

AYJIS converts the governance architecture defined by OASF into enforceable, auditable runtime controls — and feeds live usage data back into your governance reporting, so oversight stays current instead of going stale the day the policy is signed. OASAT discovers and assesses your AI exposure; AYJIS governs the approved AI interactions at runtime — one closed loop: Discover → Assess → Govern → Enforce → Evidence.

AYJIS Gateway

The governed entry point — sanctioned AI access for every employee

AYJIS Audit

Full interaction logging — every event reconstructable for the regulator

AYJIS Policy

OASF rules enforced at the point of every governed AI interaction

AYJIS Routing

Intelligent model selection — best approved model per task

AYJIS Guard

PII, source code, and regulated data inspected and redacted before send

AYJIS Risk

Governance scoring and live reporting for the CISO and board

Explore AYJIS in full

The Closed Loop

OASATIdentifies risk → creates the governance roadmap
OASFDefines the rules → drives the policy engine
AYJISEnforces at runtime → generates audit evidence
Live audit data feeds back into governance reporting
Solution Architecture

How an AI interaction flows through AYJIS.

Every prompt passes through six enforcement layers. The routing engine evaluates every registered AI model against the governance policy — selecting the best approved endpoint and blocking all others. Employees never choose their model. AYJIS does.

Enterprise employee AYJIS Gateway Identity binding · SSO · Access control AYJIS Guard PII detection · Redaction · Classification AYJIS Policy OASF enforcement · Block · Allow · Review Blocked Violation logged AYJIS Risk Board dashboard AYJIS Routing Evaluates all registered models against policy MODEL EVALUATION ChatGPT (Public) ✗ Denied Gemini (Consumer) ✗ Denied Enterprise Model ✓ Approved Azure OpenAI ✗ Not registered On-premise LLM ✗ Wrong context selected Policy-approved endpoint AYJIS Audit Every interaction · User · Data class · Policy · Model evaluated · Outcome · Timestamp

Ready to start?

Begin with an OASAT Assessment — a structured evaluation of your AI risk posture and governance gaps. Fixed price. Delivered in weeks. Leads directly to an actionable governance roadmap.

Request Assessment View AYJIS Download the Briefing (PDF)