Microsoft Copilot for Engineering Firms: Why the Mid-Tier Gets It Wrong (and the Top Tier Already Figured It Out)

TL;DR The top tier didn’t win at Copilot by buying more licences. Firms like Arup, Aurecon and GHD publicly run AI strategy and governance functions. They did the unglamorous data-hygiene work before switching anything on. Copilot inherits your permissions; it doesn’t fix them. If your SharePoint access has been messy since 2018, AI will faithfully surface that mess to[…]

What “AI ready” actually means. An action plan for engineering consultancies.

A practical, six-part action plan for getting your SharePoint AI-safe. TL;DR AI can read everything your users have access to. If your permissions are messy, AI’s answers will be too. Six things need to be in order: project site architecture, document libraries, retention, sensitivity labels, Entra ID groups, and an oversharing scan. You have two real choices: DIY[…]

Agentic AI is here – what it means for governance, data exposure, and intranet permissions

TL;DR Agentic AI is AI that acts, not just answers – it reads, writes, and takes steps on your behalf. Every weak permission, orphaned site, and overshared library becomes a new attack surface. The risk isn’t the AI. It’s the permissions you already have, now queried at machine speed. A single user with ‘Everyone except[…]