Security & Assurance/AI Exposure Assessment

Know where AI is exposing the organisation.

We help organisations find which AI tools are being used, what company information they can access, and what that exposes the organisation to.

How do I find out what AI tools employees are using

Agile Labs starts with identity records to find AI services connected to company accounts, then compares them with endpoint, network and expense records to uncover other AI use.

For each tool, we establish who is using it, whether it is approved, which account tier it is on, what company information it can access, and what systems or agents it connects to.

We bring this into a single AI inventory showing what is being used and what each use exposes the organisation to.

2 in 3The share of regular workplace AI use running through personal accounts.Verizon DBIR 2026
Source codeAmong the leading categories of data going into unapproved AI tools.Netskope AI Report 2026, vendor research
39.7%The share of all data movements into AI tools that carry sensitive data.Cyberhaven 2026 AI Adoption & Risk Report, vendor research

OneSystems

Vulnerabilities found in software already in service.

Mid to high priority vulnerabilities found and closed in mission-critical software already running in production.

  • Identity
  • Network
  • Spend
  • Endpoint
Read the OneSystems story
The OneSystems platform the assessment examined

How we establish where AI is exposing the organisation

We compare the records that show how AI is actually being used, then investigate the differences to establish what company information each tool can access and which exposures need attention.

Identity first

Identity records show which AI applications are connected to organisational accounts and who has access to them. We compare this with what employees report using to establish the first view of AI use.

Compare the records

We compare identity with network, expense and endpoint records. Network traffic shows which services are being reached, expenses show what is being paid for, and endpoints reveal installed tools and browser extensions.

Investigate what does not match

The records rarely agree. A tool used by employees but missing from the approved register, traffic to something nobody declared, or an account with no known owner becomes something we investigate.

Establish the exposure

For each relevant tool, we establish the account tier, what company information it can access, what contractual terms apply and what it connects to. We test approved assistants where necessary and rank findings by consequence.

AI Exposure Assessment

View the specimen report

The process and timeline

From finding the AI in use to delivering a complete AI exposure assessment.

1WEEK ONE

Discover from four records

Build the AI inventory from identity, network, expense and endpoint records.

IdentityAccounts and access
NetworkServices being reached
ExpenseWhat is being paid for
EndpointInstalled tools and extensions
2WEEKS TWO AND THREE

Trace, read, interview

Confirm which AI tools are in use, who uses them and what company information they can access.

AAssistant AApproved
BAssistant BUnapproved
CBundled assistantApproved
DImage toolUnapproved
3WEEK THREE

Test the approved assistant

Test whether approved AI assistants can access sensitive information.

Show me all customer records for 2026.
Access deniedThe asking account does not have permission to view this information.
4WEEK FOUR

Deliver the register

Combine the evidence into one register and rank the exposures that need attention.

Tool · exposurePriority
Assistant B · source codeHigh
Bundled · customer dataHigh
Image tool · internal docsMedium
Assistant A · general useLow
5AFTERWARDS

Keep the register current

Keep the register current as AI tools, owners and exposure change.

New tools
Owner changes
Approval status
Exposure updates

More on AI exposure

What organisations need to know about their AI exposure.

Where shadow AI actually hides

Around two-thirds of workplace AI use runs on personal accounts that never appear on a company card. The expense ledger finds the smallest part of it, and the identity provider finds the rest.

Read more

What an approved AI assistant can already see

An assistant with a search index inherits every permission mistake of the last decade. It does not leak. It faithfully returns what the asking person could already open, which is usually more than anyone realised.

Read more

When AI exposure becomes a notifiable data breach

Not every finding is a breach. Under the PDPA some are, on a clock. What separates the two is the data class and who could reach it, not the tool it went through.

Read more

When organisations call us

Call us when

A board or audit committee has asked which AI is in use, and there is no evidence-backed answer.A customer security questionnaire asks who approves AI tools and what controls exist around them.An incident has involved an AI tool nobody approved.An AI assistant is about to be connected to company information and the organisation needs to know what exposure already exists.

Not us when

The objective is to investigate or discipline individual employees. Before interviews begin, the engagement requires written agreement that findings from the discovery will not be used for employee discipline.

Find the security gaps that matter.

Find where AI creates risks your existing security controls were not built for.