Secure AI

Copilot that can’t see what it shouldn’t.

Microsoft 365 Copilot reads everything the person using it can already read. That is the whole point of it, and it is the problem. We audit and lock down your Microsoft 365 first, deploy Copilot on top of a tenant that is actually ready for it, build agents around how your team works, and check the permissions again every quarter.

Talk to us 029 2111 1202

Your tenantyour data stays in it and never trains public models

Four weeksfrom kickoff to trained and live

Audit firstbefore Copilot sees a single file

Start here

What can Microsoft Copilot see?

Everything the person using it can already reach. Not one file more, not one file less. Ask it a question and it searches across the documents, emails, Teams messages and SharePoint sites that account has permission to open, then hands back an answer in seconds.

That is what makes it useful, and it is what makes it dangerous in a business that has never audited its permissions.

Nothing was ever stopping a curious member of staff from opening the salary spreadsheet that got saved in the wrong SharePoint site three years ago. What was stopping them was that they had no idea it was there. Historic oversharing has always been invisible, because finding it meant knowing where to look.

Copilot removes that. It turns everything an account can technically reach into something that account can find by asking a question in plain English.

So the first question is not what Copilot can do for your business. It is what your accounts can currently see.

Copilot doesn’t create the problem. It makes the problem instantly visible and instantly searchable.

Before we switch anything on

What do you find when you audit a tenant?

We audit every business before we touch anything, and this is a representative sample of what turns up. None of it is unusual and none of it means anybody did anything wrong.

  • External share links set to never expire

    Somebody needed to send a file to an outside party for a one off job three years ago, created a link, and that link is still live today. Still shareable. Still pointing at the file.

  • Accounts belonging to people who left

    Never disabled, in some cases still holding access to everything they could see on their last day. Give one of those a Copilot licence and a forgotten login becomes considerably more powerful than it ever was.

  • Far too many global admins

    Accounts holding the keys to the whole tenant, handed out over the years to people who needed it once and never had it taken back.

  • Sensitive folders shared with everybody

    The HR folder shared a bit too widely. The spreadsheet of logins. The contract sitting behind a link anyone can use. Plus, often, no consistent licensing, no disk encryption, security defaults switched off, and in plenty of cases no multi-factor authentication at all.

Worth saying plainly

This is the normal state of a business that has grown organically and never had anyone go back and tidy up. It has stayed invisible because nothing was forcing anyone to look at it. Switching on a tool that surfaces everything an account can reach, before fixing what those accounts can reach, does not add productivity. It adds a very efficient way of handing out your own data.

How it works

Five stages, and the one everybody skips

Stages one to four take about four weeks end to end. Stage five is the one that decides whether you still get value out of this in a year.

Secure

Permissions audited, identity hardened, multi-factor authentication on everywhere, accounts belonging to people who left closed off. This happens before Copilot sees a single file.

Structure

Your information organised so that Copilot can actually read it. That means finding what is still sitting on desktops, local servers and personal OneDrives, because Copilot cannot see any of it there.

Deploy

Copilot licences assigned and enabled across Word, Excel, Outlook, Teams, PowerPoint and Copilot Chat, with the tenant level controls set deliberately rather than left as they came.

Build

Custom agents built around the way your team actually works, designed in a kickoff workshop rather than picked off a list of templates.

Sustain

Quarterly permissions drift reviews, adoption check ins, usage reporting, agent tweaks and first line support. This is the stage almost every rollout skips, and it is why almost every rollout dies.

Why stage five exists

Permissions drift. New SharePoint sites appear, new people join, new sharing patterns form, and the tidy tenant you paid for stops being tidy. Agents go stale as your services and templates change. Adoption tails off. A Copilot rollout with nobody checking on it is a licence nobody uses by month three, which is the single most common way businesses waste money on this.

Why there is no price on this page

Why can’t you just quote us for Copilot?

Because the licence is the small part and the rest depends entirely on what your business looks like underneath. No two setups we have walked into have been the same, and the work is all in the difference.

Your files are in Microsoft 365. Some of them. The rest are in a folder structure somebody built in 2019, on a NAS in the corner that everyone forgot about, in a Dropbox nobody ever cancelled, and on a director’s desktop under a name only they understand.

Sitting on top of that is a set of permissions nobody designed. They accumulated. A site set up for a project that finished years ago. A folder shared with everybody because it was quicker that day. Access granted to somebody who needed it once, and never taken back. Half of it was configured by people who have since left.

Ask most business owners who set their sharing permissions up and the honest answer is that they have no idea. That is not a criticism. It is what happens to every business that grows while it is busy.

All of that decides how much work there is. Whether your information is somewhere Copilot can actually read, how much needs moving before it is, how far the permissions have drifted, how much has to be locked down before anything gets switched on, and what your team would genuinely use once it is. Any number we gave you before looking at that would be a guess, and you would find out it was a guess halfway through.

So we look first. A readiness assessment tells you what is actually there, what would be exposed the day Copilot went live, and what has to change before it does. You get that written down, and then you get a price for the work, and then you decide.

Once we understand your setup, we can tell you what it takes to secure it, deploy on it, and train your team on it. Not before.

What we can tell you before we look

Microsoft charges per assigned user for the Copilot licence and we pass that through at cost. Our side is a one off piece of work to get you ready and deploy, and then a monthly amount to keep it that way, both agreed in full before you commit to anything. Nothing turns up on the invoice at the end that was not agreed at the start.

Our honest view

Should you buy Copilot for everyone?

Probably not, and we sell this. Most small businesses we work with would not get their money’s worth out of a Copilot seat for every member of staff today.

Not because the product is bad. Because most of the people who would be licensed have not changed the way they work enough to use it. You license thirty seats, three people use it properly, and the rest open it once and forget it exists.

A licence nobody uses is just commission in somebody’s pocket.

So pick the two or three roles where it would genuinely change how the work gets done. Usually that is whoever writes the most documents, whoever is drowning in email, and whoever spends their week hunting for things other people have saved. Do those properly, train them, and let them show everybody else. Expand when it is working, not before.

If an IT provider is keen to move you onto Copilot across the board, ask them two questions. How will they make sure the licences you are paying for are actually used, and what does “used” look like after ninety days? And why not start with a handful of people instead?

AI is genuinely useful. We use it every day. It is still not true that the answer for a fifteen person firm is a seat for everybody and a hope for the best.

Talk to us

Find out what your accounts can currently see

Tell us what you are running and roughly how many people you have. We will tell you whether your tenant is ready for Copilot, what would need fixing first, and what the whole thing would cost including Microsoft’s licensing.

What you actually get

Agents built around how your team works

Copilot out of the box is a good assistant with no idea what your business does. Agents are the part that fixes that. They are designed with you in a kickoff workshop rather than picked off a list, but these are the ones businesses your size ask for most.

File Finder

Plain English questions that return the right document. "Find the latest version of our employee handbook." It sits on top of SharePoint and only ever surfaces what that person already has access to.

Proposal or quote builder

A first draft of the document your team writes most often, in your own template and tone, from a few inputs. Usually the single biggest time saver in a small business.

Onboarding assistant

Answers the questions every new starter asks in their first month, from your own policies, instead of derailing whoever sits nearest every fifteen minutes.

Process helper

"How do we do X?" answered from your own written processes rather than from Google. Useful anywhere there are documented procedures nobody can find when they need them.

Your data

Does Copilot train on our company information?

No. Your data stays inside your own Microsoft tenant and it is not used to train public AI models. That is the difference between a business Copilot licence and somebody on your team using a free consumer account in a browser tab.

Which brings us to the thing most business owners have not thought about. If you asked whether anybody in your team uses ChatGPT and the answer was "I don’t think so", we would gently disagree. Somebody does. Possibly several somebodies, on personal accounts, pasting in client emails to summarise and documents to polish.

We don’t think those people are being reckless. They have found something genuinely useful and nobody has given them a sanctioned way to use it, so they have brought their own.

You will not train people out of using tools that make their day easier. You can give them a tool that does the same job, on your terms, in a place you control, along with written guidance on what AI should and should not be doing in your business. That guidance is part of this, not an afterthought.

The question is not whether AI is already in your business. It is whether you can see it.

How we secure the rest of it

Questions

The things people ask first

What can Microsoft Copilot see in our business?

Everything the person using it can already reach, and nothing they cannot. It searches the documents, emails, Teams messages and SharePoint sites that account has permission to open. That means Copilot inherits whatever your permissions currently are, including the ones nobody has looked at for years. It does not grant new access, it makes existing access searchable.

How much does Microsoft 365 Copilot cost per user?

Microsoft 365 Business Premium with Copilot is £24.60 per user per month, excluding VAT. That is the bundled plan, so it covers Microsoft 365 Business Premium as well as Copilot rather than sitting on top of a plan you are already paying for. Copilot is also sold as a separate add-on licence on top of an existing plan, which is the route worth looking at if you are only licensing two or three people to begin with.

What we charge sits on top of the licence and depends on the state of your Microsoft 365 permissions, which is why the readiness assessment comes before the quote rather than after. Correct as at September 2026. Microsoft has moved these prices before and will again, so check the current figure with us before you budget on it.

Should we buy Copilot bundled into our plan, or as an add-on?

Both routes exist and they commit you differently. Microsoft sells Copilot bundled into a Microsoft 365 plan, and it sells it as a separate add-on licence that sits on top of the plan you already have. The bundle usually looks better on the quote. It also ties that person to Copilot for the term, so if two of your five people use it and three do not, you carry the other three until renewal. The add-on costs a little more per user and leaves you able to stop.

For a first rollout we normally suggest the add-on for exactly that reason, then moving people onto a bundle at renewal once you know who is using it. We quote the current price when you buy rather than publishing it here. Microsoft changed both the names and the prices of these licences during 2026, and a stale number on a page like this one is worse than no number at all.

Is Microsoft Copilot safe for a small business?

The product is. Whether it is safe in your business depends entirely on the state of your Microsoft 365 permissions, because Copilot can reach whatever your accounts can reach. In practice that means never expiring share links, accounts belonging to people who have left, sensitive folders shared too widely and missing multi-factor authentication. Fix those first and Copilot is safe. Switch it on before you fix them and you have made every one of those problems searchable.

Do we need to buy Copilot for everyone?

No, and we would usually advise against it. Most businesses get better value from licensing the two or three roles where it genuinely changes the work, training them properly, and expanding once it is clearly working. Licensing everybody on day one is the most common way businesses waste money on this, because a licence nobody uses is still a licence you are paying for.

How long does a Copilot rollout take?

About four weeks from kickoff to a trained team. Week one is the readiness assessment and you get a written report at the end of it. Week two is the cleanup, permissions and identity work. Week three is the deployment and the agents. Week four is training and handover. After that it moves to quarterly reviews.

Does Copilot train on our company data?

No. Your information stays inside your own Microsoft tenant and is not used to train public AI models. That is one of the differences between a business licence and a member of staff using a free consumer account on their own login.

Our staff are already using ChatGPT. What should we do about it?

Start by asking them, without making it accusatory. Who is using it, what for, and what would help. People find these tools because they are useful, and banning them tends to move the usage somewhere you cannot see rather than stopping it. Then decide what your sanctioned tool is, put written guidance behind it covering acceptable use and what has to be checked by a human, and give people something that does the same job inside an environment you control.

What is the difference between Essential and Secure AI?

Essential turns Copilot on cleanly: licensing, tenant configuration, one training session and a quick start guide. Secure AI adds the readiness assessment, the permissions audit and cleanup, the identity and multi-factor work, data structuring, custom agents, longer recorded training, an adoption playbook and the quarterly ongoing care. Essential suits a business whose tenant is genuinely already tidy. In our experience that is not many, which is why Secure AI is what we recommend.

Next step

Start with what your accounts can see

Before any licence gets bought. Tell us how many people you have and what you are running, and we will tell you what would need fixing before Copilot is safe to switch on, and what the whole thing costs.

IT support and cyber security across Wales and beyond

Based in Cardiff, working across Wales and the West.