I will do your ai governance and eu ai act readiness assessment


About this gig
Most companies believe the EU AI Act's high-risk deadline passed on 2 August 2026. It didn't. It moved to 2 December 2027. But the transparency obligations did take effect, and this still catches your existing systems.
Knowing which rules apply to you, and when, is now the hard part. I make it clear.
You get:
- An inventory of every AI system you build or deploy
- Risk classification for each against the Act's categories
- A gap assessment against the obligations that actually apply to you
- A prioritised remediation plan you can hand to your team
Higher tiers add ISO 42001 Annex A mapping, a populated technical documentation pack, and a full AI policy set.
My background:
Senior AI and data strategy work across banking and insurance, CISA certified, with hands-on delivery of AI systems inside regulated environments. You get documentation written to survive audit scrutiny, not a template to fill in yourself.
I prepare you for certification and regulatory review. I am not a certification body, and this is not legal advice.
Message me before ordering with a short description of your AI systems and I'll confirm scope and the right tier.
Get to know Leonard K.
Agentic AI and AI Governance Consultant
- FromKenya
- Member sinceApr 2026
Languages
English, Spanish
FAQ
Didn't the EU delay the AI Act? Why do I need this now?
Partly, and the detail matters. High-risk obligations moved to December 2027 for standalone systems and August 2028 for embedded ones. But the Article 50 transparency rules took effect in August 2026 and are live today, the AI literacy duty has applied since August 2025.
Do I fall under the Act if my company isn't in the EU?
Possibly. The Act reaches AI systems placed on the EU market or whose outputs are used in the EU, regardless of where the provider is based. The Basic package answers this for your specific systems.
Is this legal advice?
No. I'm a governance and risk practitioner, not a lawyer. I assess your systems against the framework, identify gaps, and produce the documentation regulators and enterprise buyers expect. For a formal legal opinion, use counsel.
Can you certify us to ISO 42001?
No, and be wary of anyone who says they can. Certification comes from an accredited body. I get you ready for that audit and map your controls to Annex A so the process is far shorter.
Our AI is just an OpenAI or Anthropic API call. Are we still in scope?
Very often, yes. Deploying a third-party model in a regulated decision still carries obligations. Building on someone else's model does not transfer the responsibility.
What do you need from me to start?
A short description of each AI system, what decisions it influences, who it affects, and any existing documentation or policies. Architecture notes and model cards help. I'll ask follow-ups if anything is unclear.
Can you help after the assessment?
Yes. Most clients move on to remediation or ongoing governance support. Message me for a custom offer or the monthly retainer.

