Free board-level diagnostic
A concise executive view of technology governance risk. Answers stay in your browser and the score is directional rather than an audit opinion.
Current self-assessment score
0/100
Early-stage controls
0 of 10 questions answered. This is a self-assessment, not certification or independent assurance.
Business-critical systems and their owners/dependencies are documented.
Critical services have tested recovery arrangements and realistic workarounds.
Material cyber risks are assessed, owned and periodically reviewed.
Critical data flows, ownership, retention and access are understood.
Material AI use is inventoried and governed proportionately to consequence.
Unsupported, fragile and key-person-dependent technology is identified.
Critical vendor concentration, exit and service-dependency risks are reviewed.
Major technology changes have testing, rollback and acceptance criteria.
Critical technology knowledge and skills are not concentrated in one person without mitigation.
Major technology spend is connected to measurable business outcomes and reviewed after implementation.