AI Security & Governance Workbook & Toolkit by Kai London
The companion volume for the work itself. Where the Main Manual sets out the method, this one hands you the artefacts — registers, assessment templates, checklists, workflows and clause language — so a programme starts on Monday instead of after three months of document design.
Available on Amazon.
What is inside
Registers and inventories
AI system, model and agent registers with the fields that make them useful rather than decorative.
Assessment templates
Use-case intake, risk classification and impact assessment forms with worked guidance on scoring.
Control checklists
Reviewable checklists by lifecycle stage, for design review, pre-deployment and periodic reassessment.
Workflows and RACI
Approval paths, escalation routes and who does what, drawn so a new team can follow them.
Contract and procurement clauses
Model clause language for AI suppliers covering security, data use, transparency and incident notification.
Dashboards and reporting
Metric definitions and report layouts for the AI risk committee and the board.
Who it is for: AI governance practitioners and programme managers, risk and compliance teams, procurement and legal counterparts, and consultants standing up client programmes. Best used alongside the Main Manual. The clause language is a starting point for your own legal review, not legal advice.
A method nobody can operate is a philosophy. The artefacts are what make it a programme.
About the author
Professor Kai London — CISSP, CISM.
An internationally recognised cybersecurity executive, board advisor and Founder & CEO of Quantum AI Systems Security LLC, writing at the convergence of AI, governance and operational resilience. Honorary Professor and Researcher at UCL.