AI Governance, Risk & Compliance

Oyinjadesola

I evaluate high-risk AI systems against real regulatory and management frameworks — EU AI Act, NIST AI RMF, and ISO/IEC 42001 — and turn that analysis into practical, executive-ready governance decisions. Founder of Nexus Risk & AI Advisory.

AI is moving faster than most companies can govern it

Teams are shipping AI features and vendor models into production without knowing their real risk exposure — until a regulator, auditor, or customer complaint finds it first.

Unclear risk

Most teams can't say whether their AI use case is high-risk under the EU AI Act, or what that would require.

No paper trail

Vendor AI tools get adopted without a risk register, a documented review, or an accountable owner.

Wasted spend

AI tools get bought and left half-used — nobody has audited where they actually save time or money.

What I do about it

Framework-based AI governance reviews and efficiency audits that turn ambiguity into an evidence-backed decision.

AI Governance & Risk Review

Classify a system's risk level, run it against EU AI Act / NIST AI RMF / ISO 42001, and produce the risk register and decision memo a committee can act on.

AI Efficiency Audit

Find out where AI tools are actually saving time and money in your workflows — and where spend isn't earning its keep.

Fractional AI Governance Advisory

Ongoing, part-time governance support for teams that need the function but aren't ready for a full-time hire.

How I work

The same process behind every case study on this site.

1

Scope & classify

Define the AI use case and classify its risk level before anything else.

2

Assess against frameworks

Run the system against EU AI Act, NIST AI RMF, and ISO/IEC 42001 requirements.

3

Document the evidence

Risk register, vendor review, human oversight procedure — the artifacts a real review needs.

4

Deliver the decision

An executive-ready recommendation: approve, conditionally approve, delay, or reject.

Who this is for

Why work with me

Framework-based rigor

Every review is mapped to EU AI Act, NIST AI RMF, and ISO/IEC 42001 — not vibes.

Executive-ready documentation

Risk registers and decision memos written for a governance committee, not a textbook.

Practical, not theoretical

Grounded in end-to-end case studies, not just policy summaries.

Case Studies

Client testimonials coming soon — until then, here's the work itself.

AI Governance Review: Automated Loan Underwriting

Led a high-risk AI governance assessment of an automated small-business loan underwriting system, covering fairness, explainability, human oversight, vendor risk, and production-readiness.

EU AI Act NIST AI RMF ISO/IEC 42001 Vendor Risk
View Case Study →
More projects coming soon

FAQ

Is this real client work?

The Automated Loan Underwriting case study is an applied training exercise completed as part of an AI GRC practitioner program, using a simulated organization to demonstrate a full high-risk AI governance review end to end. Real client engagements are handled confidentially through Nexus Risk & AI Advisory.

What frameworks do you work with?

Primarily the EU AI Act, NIST AI Risk Management Framework, and ISO/IEC 42001, applied to the specific regulatory context of the client's industry.

Do you take on full-time roles, contract work, or both?

Both — I'm open to full-time AI governance/risk roles as well as fractional advisory and audit engagements through Nexus Risk & AI Advisory.

How do I get in touch?

Book a free discovery call, or email me directly — both linked below.

Ready to talk AI governance?

Book a free discovery call, or reach out directly — I read every message.