Goal: Walk away with a clear plan for AI implementation.
- VERIFY THE SECURITY FOUNDATION
- M365 account monitoring (MDR): Is integration active and logging?
- Current AI Security Policy: Is it documented and available?
- Emergency Action Plan: Is it documented and available?
- DEFINE USE CASE
- What problem are we trying to solve?
- What does success look like?
- Do we already have a tool that can do this?
- What is the simplest implementation?
- What data set will the AI use?
- Who should be involved in oversight?
- Are the right guardrails in place?
- Will the time savings outweigh the cost and risk?
- CONTROL ACCOUNTS, DATA & ACCESS
- What account will be used?
- Is this for one user or company-wide use?
- Is it a paid business account-not personal or free?
- Can public LLM training be disabled to keep information proprietary?
- Have company data and users been properly classified?
- Has least-privilege access been assigned?
- ASSIGN OWNERSHIP & LIFECYCLE
- Who owns the AI implementation?
- When will it be deployed?
- Who will review it periodically?
- What is the shutdown procedure when things go sideways?
Need more information?
Contact:
Harbor Digital Systems
info@harbordigitalsystems.com
www.harbordigitalsystems.com
207-517-0147

