Managed AI security

Your people are already using AI. You cannot see which tools.

Or what they are feeding into them. Not the assistant you rolled out — the personal accounts, the browser extensions, the coding tools, and the agents someone wired into your file storage because it was quicker than raising a ticket.

Discovery costs nothing30-day monitor-only trialMonth-to-month to 500 users

Most organisations discover the scale of it only after something goes wrong. An assistant connected to a mailbox and a document store can move tens of thousands of files in an afternoon, and it looks like ordinary authorised traffic the whole way.

We deliver AI usage discovery, governance and control as a month-to-month service, built on Check Point. We show you what is actually running, then help you decide what to do about it.

Start by finding out. The discovery costs nothing.

1. Discover — free

A lightweight script runs through your existing management tooling at login. No agent, no endpoint install, no change control battle. It returns an inventory of the AI applications in use across the devices it touches.

2. Trial — free

30 days with the agent deployed to a scoped group, often 25 to 30 people to start. Monitor only. Nothing is blocked and nothing changes for your users.

3. Review — free

We walk you through what your people are actually using, which accounts are personal rather than corporate, and where data is going. If it is not compelling, we stop there.

4. Onboard, then live

Policy build, user scoping, exception tuning and handover. Then governance enforced — blocking, redaction and justification prompts where you want them.

The discovery alone usually changes the conversation. It is the cheapest security assessment you will run this year, because it costs nothing and commits you to nothing.

What it actually does

Discovery

Every AI application in use, by person and by team. Corporate and personal accounts shown separately, so you can see who signed in with a work address and who did not. It classifies what people are using AI for, not just which tool they opened.

Governance

Allow, block, log, or require a justification before use. Policy layers like a firewall rulebase, so you can be permissive where it is harmless and strict where it is not.

Data protection

Prompts are inspected for intent rather than pattern-matched, so something commercially sensitive is caught even without an obvious identifier. Redaction happenson the device, before the prompt leaves — sensitive content never reaches the model.

Agent and tool control

Where staff have connected AI agents to your systems, you can permit reading while blocking create and delete on a per-tool basis. This is the control that matters most, and the one almost nobody has.

Coverage is Windows, macOS and Chrome, deployed through the management tooling you already run. Other operating systems are not currently supported.

Two platform packages

 EssentialsEnterprise
Per user / monthFrom $9.95From $19.95
Shadow AI discovery — every application in useYesYes
Corporate versus personal account detectionYesYes
Usage reporting by person, team and use caseYesYes
Access policy — allow, block, logYesYes
Justification prompts before useYesYes
Prompt inspection and on-device redaction—Yes
Intent-based data loss prevention—Yes
AI agent discovery and posture—Yes
Per-tool and per-operation agent controls—Yes
Connected-platform visibility for enterprise AI accounts—Yes
Executive and compliance reporting—Yes

Rates shown apply up to 100 users. Larger deployments pay less per user.

Three ways to run it

The platform price covers licensing, your tenancy and full console access. What changes between these is how much of the running you hand to us.

 Co-managedManagedFully managed
Added to the platform priceIncludedFrom $2.95 /user/moFrom $5.95 /user/mo
Full console accessYesYesYes
Monthly usage and exposure reportYesYesYes
Platform kept current, tenancy managedYesYesYes
Policy changesYouUsUs
Review of new AI applications appearingYouUsUs
Detection triage and investigationYouUsUs
Quarterly executive briefing—YesYes
Agent and MCP posture review——Yes
User coaching — we write and send the comms——Yes
Incident handling when something is found——Yes
Board-ready reporting pack——Yes
Named engineer——Yes

Co-managed suits organisations with their own IT or security team who want the visibility and will act on it themselves. Ad-hoc help is available hourly in 15-minute increments, with no retainer and no minimum.Managed suits organisations who want the platform run for them but will make their own decisions about people and policy. Fully managed suits organisations with no internal security function, or with a board asking questions they need answered properly.

You can move between them at any time, in either direction, from one billing period to the next. Support is business hours with after-hours escalation.

Pricing at scale

Per-user rates step down as the deployment grows, and the band rate applies to every user rather than only those above the threshold. Your band is set from your licensed user count at the start of each billing period, so growth is picked up automatically.

Ask for the full rate card and we will send the bands and a firm quote for your user count. From 501 users, band pricing is offered on a 12-month term; below that the service is month-to-month with no minimum term.

Onboarding

Getting the policy right at the start is what separates a platform that protects you from one that annoys your staff. Onboarding covers user scoping, policy build, exception tuning through the first weeks, integration with your management tooling, and handover.

It is a one-off charge set by deployment size, from $995, andcharged only if you proceed after the trial. If you decide not to continue, there is nothing to pay. Ask for a quote and we will confirm the figure for your deployment before you commit.

Why organisations start this now

  • You cannot govern what you cannot see. Every AI policy written today is being written blind. The discovery takes that away in a fortnight.
  • Blocking on its own does not work. Restrict everything except the sanctioned tool and people route around it, onto personal devices and personal accounts where you have no visibility at all.
  • The agents are the real exposure. A chatbot with your data is a data question. An agent with credentials to your file store, your code repository or your ticketing system is an access question, and it is the one most organisations have not asked yet.
  • Your staff are not the problem. Almost all of this is people trying to do their jobs faster. The answer is guardrails and coaching, not discipline.
  • Someone will ask. Your board, your insurer, your largest customer or your auditor. Having an answer is materially easier than assembling one afterwards.

We use it ourselves. This is deployed across our own business, not demonstrated from a slide. You keep full console access from day one — you see everything we see, and you decide how much of the running you hand over.

All prices AUD, exclusive of GST, per user per month unless stated. Usage is calculated daily and invoiced monthly in arrears. Platform capability and the division of features between packages is determined by the vendor and may change. Underlying licensing is exposed to AUD/USD movement, so published rates may be revised where vendor pricing or exchange rates move materially. A written quotation prevails over this page and is valid for 30 days.

Start by finding out what is actually running.

A short conversation is usually enough to work out whether we can help, and what it would cost.