The scenario your risk partner cares about
A senior accountant asks Copilot to “draft a quarterly update email with revenue highlights for Client A.” The model pulls numbers from a shared folder that also contains Client B's forecast. The draft cc line autocompletes incorrectly. One click from send — and you have a confidentiality incident, not a productivity win.
Why firm policy PDFs don't scale
Every firm updated its AI acceptable use policy in 2025. Associates still move fast during close week. The gap is enforcement at the moment of action — send, export, post, approve — not another training video.
- Tax workpapers with SSNs and EINs in Excel Online
- Client portal uploads triggered from AI-generated checklists
- AP bots approving vendor payments from ticket summaries
- ChatGPT Enterprise browsing client-specific plugins
Controls firms with 80–400 staff actually adopt
Engagement-scoped access
AI reads and acts only within the client engagement the user is assigned to this week — not firm-wide search.
External client email approval
Particularly for attachments containing financial statements, tax docs, or payroll summaries.
Invoice and payment thresholds
AI cannot approve or post AP/AR actions above partner-delegated limits.
Export and download logging
Every attempt to bulk-export workpapers is logged with user, client, and outcome.
What to tell peer review and SOC auditors
- We log AI action attempts — not just chat history
- Client-facing sends require human approval
- Segregation of duties applies to AI-initiated approvals
- We can produce a trail for a specific client and date range