top of page
Untitled design (4) (1).png

FOR STATE AND LOCAL GOVERNMENT AND HIGHER EDUCATION

Before someone asks you to explain your AI posture, know where you stand.

Most public sector and higher ed organizations are already running AI nobody approved, in unvetted vendor products and everyday staff workflows. The exposure is real, and it's not just a compliance issue. Regimes like FERPA, CJIS, HIPAA, and CMMC are only the start — the rest is data leakage, security gaps, and eroded public trust.

20 minutes with Paul Ashe, Securance's founder and president — 30 years spent finding what's broken in enterprise IT security, not what looks broken on paper. No pitch — just a working conversation, followed by a free AI usage analysis of your organization.

The gap no one is owning

No one owns the decision.

Ask "who decides whether staff can use a new AI tool?" and the honest answer in most organizations is "it depends." Committees can draft policy, but nobody can approve, restrict, or revoke the use of a tool. The most common AI governance gap isn't a missing policy — it's a missing owner.

AI is already in your stack.

Microsoft 365, your ERP, your permitting system, your student information system — all added AI features in the last 18 months, most enabled by default, none run through procurement. Vendors aren't required to warn you. Contracts signed before 2023 almost never anticipated it.

Well-meaning staff create real exposure.

A caseworker pastes resident records into a consumer AI tool; a registrar does the same with student data. FERPA or state privacy law almost certainly applies — and almost certainly isn't satisfied. The same holds for CJIS, HIPAA, GLBA, PCI, and CMMC. The intent is good; the exposure is the same.

The public moment is coming.

Your council, board, faculty senate, or an accreditor will eventually ask you to explain your AI posture. Organizations that worked it out in advance answer from strength. The rest answer reactively, after something has gone wrong.

AI GOVERNANCE BENCHMARK

Where do public sector and higher ed peers actually stand? Average score: 11.8 / 100.

We assessed eight organizations against The Securance 11. Every one landed "at risk" or "early," and five of the 11 domains scored a flat zero across all assessed organizations. Wherever you land, the benchmark gives you a baseline — so you know where your peers stand.

SECURANCE 11

The AI governance standard for government and higher education

Sector-agnostic AI frameworks like the NIST AI Risk Management Framework and ISO/IEC 42001 tell you what to govern. They don't tell a city manager or a provost what to do Monday morning, and they don't deal directly with FERPA, CJIS, FOIA, CMMC, sponsored research, faculty governance, or the political accountability that comes with serving the public.

The Securance 11 covers the 11 governance domains that matter for government and higher ed — and turns them into a single 90-day action sequence, built for leaders who are already stretched thin. It draws directly on the work our advisory team does with public sector and higher ed clients.

image (19).png

Get the full Securance 11 playbook — free.

All 11 domains, each with its 90-day action sequence — the full framework PDF. No form, no gate.

1fd20543-b6c5-4ed7-b418-3b905db70e29.png

01

GOVERNANCE AND OWNERSHIP

0b911883-3b26-4ae7-93c8-6b46593c134d.png

02

ACCEPTABLE USE AND WORKFORCE POLICY

c43e685e-96e2-4aab-902b-0b19bdef42d3.png

03

DATA PROTECTION AND INFORMATION GOVERNANCE

e108ad77-d562-4008-ba26-a06462b4e5ed.png

04

EMBEDDED AI IN VENDOR PRODUCTS

5d524716-301e-4a04-b1b3-c6e6c005283e.png

05

RISK AND COMPLIANCE POSTURE

5039f53f-4c60-4181-9298-8033a5fb75ed.png

06

BUILD VS. BUY VS.  EMBED

253fd91e-1744-4a94-bde9-29c6dbaab707.png

07

SECURITY IMPLICATIONS

e6fb2bf7-ef37-44b6-b510-7e65c3c16f13.png

08

INTELLECTUAL PROPERTY

49ec78c9-9555-4547-a478-ca6569dd0504.png

09

WORKFORCE AND CHANGE MANAGEMENT

c97476a0-7657-4e9e-9a05-e14dddfcb0a1.png

10

MEASUREMENT AND VALUE REALIZATION

31ead54f-0252-4caa-9101-d75798311473.png

11

ETHICS AND EXTERNAL POSITIONING

11 GOVERNANCE DOMAINS

Talk it through with Paul

20 minutes, one-on-one, built around your organization — not a demo. Bring your hardest AI governance question; after the call, we'll send you a free AI usage analysis — where AI is already running in your environment and the domains where you're most exposed.

SELF - ASSESSMENT

Know your score in 6 minutes

Take the Securance 11 Index and get your readiness score across all 11 governance domains — no form, no sales call.

bottom of page