Enterprise AI Governance Program
The enterprise AI-governance program for a regulated utility, built in partnership with my manager — a usage policy, an exception process, and a vendor-intake review for how each tool handles company data.
AI Governance Policy Security Regulated
Why
Generative AI in a regulated utility needs guardrails before it needs scale.
What we built
Partnered with my manager to stand up the program:
- A clear usage policy defining approved tools and how new ones get evaluated.
- An exception process that routes non-standard tools through security and information-governance review.
- An AI questionnaire added to vendor intake, so every new contract is evaluated for how the vendor uses company data.
Why it matters
Cross-functional governance work across legal, security, and procurement — not just an internal-tool policy. It’s what lets the AI portfolio grow safely.