Written by a practitioner for your CISO, VP of Engineering, or General Counsel. You are sending confidential security policies and penetration test findings. Here is exactly what touches it and how it is protected.
I use AI for semantic indexing, cross-referencing, and first-draft citation synthesis. It does not decide what is true: I review each answer against its cited source before returning it to you. Processing uses enterprise commercial API agreements with Zero Data Retention (ZDR) and contractual exclusion from model training.
If your customer NDA or risk requirements prohibit third-party cloud AI, I can provide a fully local, air-gapped configuration. Open-weight models run locally on dedicated encrypted hardware with physical network disconnection during processing.
I never ask you to upload sensitive files into an untrusted web form. Every engagement begins with an executed Mutual Non-Disclosure Agreement (MNDA).
You are engaging an individual security consultant using disclosed tooling under a professional services agreement, not buying access to a multi-tenant software platform.
Enterprise procurement risk teams classify this engagement under their External Legal & Technical Advisory vendor category, covered under Mutual NDA and Professional Indemnity, rather than an infrastructure sub-processor.
I can execute your mutual NDA or send a bilateral agreement before any documents move.