Board-level AI governance, built by someone who has carried the accountability.
Axiom Verity is Andrew Moore's AI governance advisory practice — grounded in 25+ years of board-reported technology risk and cyber leadership at Royal London, HSBC, and Barclays, and proven in practice through Axiom Puzzleworks, a production AI system built with deterministic controls and traceable human oversight.
What you'll find here
- Board-level AI governance briefings, written in plain language for executives and control owners.
- Practical AIMS, EU AI Act, and security guidance grounded in 25+ years of regulated technology risk leadership.
- A working proof of governed AI in production, not just policy documents — see it at Axiom Puzzleworks.

Founder & Managing Director, Axiom Puzzleworks.
25+ years of board-reported technology, cyber, and cryptography risk at Royal London, HSBC, and Barclays — then founded Axiom Puzzleworks to build and ship a governed AI system himself, not just advise on one.
- ACA
- CISSP
- CISA
- CRISC
- CGEIT
- CCSP
- ISO/IEC 42001
Governance that has to survive audit, not just a slide deck.
Most AI governance guidance is written by people who have never carried the accountability for it. Axiom Verity is built on real board risk reporting, real cryptographic infrastructure at scale, and a real production AI system with deterministic controls — not theory.
- Translate board-level accountability — SM&CR, SS1/21, SS2/21 — into AI governance you can evidence at audit.
- Show governed AI running in production at Axiom Puzzleworks, not just describe it in a policy document.
- Publish clear governance, compliance, and security reference material before anything commercial.
Five reference pillars, each narrow and content-led.
Start wherever matches the conversation you're already having — governance, compliance, and security are written to stand alone.
Governance
Explain how organisations operationalise AI governance through roles, policy, evidence, and controls.
Compliance
Map the EU AI Act, ISO/IEC 42001, and NIST AI RMF into practical executive and audit views.
Security
Capture LLM threats, output validation, and human-in-the-loop safeguards in a technical view.
Thought Experiment
An evolving public investigation into building a UK-regulated retail bank with minimum viable human oversight and AI Agents performing all other functions.
Resources
A curated, opinionated library of the regulation, standards, thought leadership, and learning material practitioners keep close at hand.