All services
Sovereign LLM Deployment
Phase 03 — Enterprise AI Solutions

AI for businesses whose data isn't allowed to leave the building

AI inside your own AWS environment — your keys, your data, no traffic to the public internet, no retention with the model provider. Built for finance, healthcare and the public sector.

Features

What makes it sovereign

Data never leaves your AWS network

AI calls run over a private connection inside your AWS account. Your data never touches the public internet — it all stays on the private network in eu-central-1.

Encrypted with your own keys

Every prompt, every response is encrypted with keys you control. We can't decrypt your data. Neither can AWS.

Zero retention with the model provider

Full control over logging and storage. Anthropic and AWS retain nothing. Your prompts disappear once the response is delivered.

Process

From kickoff to sovereign deployment

1

Threat model & sovereignty review

We work with your security team to define what 'sovereign' means for your industry and your regulators.

2

Hardened AI deployment

Private connections, customer-managed keys, network policies, full logging control — provisioned in your AWS account.

3

Compliance evidence pack

Architecture diagrams, encryption inventory, data flow diagrams and an evidence pack ready for BaFin, BSI or your sectoral regulator.

4

Monthly sovereignty retainer

Quarterly key rotation, monthly evidence refresh, and rapid response when regulation changes.

Sovereign AI isn't a luxury — in regulated industries it's mandatory

Banks, insurers, hospitals, public-sector bodies — your regulators don't let you simply ship customer data to OpenAI. You have to prove where your data sits, who can decrypt it, what happens to the prompts. We build the AI layer so you have a clear answer to every one of those questions — and we deliver the evidence pack regulators and auditors actually accept.

100 %
data inside your AWS account
0
retention with the provider
DE
region eu-central-1
Use Cases

Who needs sovereign AI

Three real situations where standard AI doesn't work.

🏦
Private bank · 350 employees

Wants an internal AI assistant for advisors. BaFin requires data flow diagrams and encryption evidence before go-live.

Sovereign deployment live in 8 weeks, evidence pack delivered to BaFin, go-live approved — advisors use the assistant productively.
🏥
Hospital network · 4 sites

AI-supported discharge summary generation with patient data. DPO only allows processing if the data demonstrably never leaves the HIS.

AI layer in the in-house AWS account, customer-managed keys, full logging. DPO sign-off received within 6 weeks.
🔒
Federal authority · 1,200 employees

Internal case work to be AI-assisted. BSI Grundschutz-conforming architecture mandatory; SaaS solutions ruled out.

BSI-conforming architecture in eu-central-1, full documentation, evidence pack accepted. Pilot with 80 case workers running successfully.
Technology

Four pillars of a truly sovereign AI deployment

We separate the marketing from the reality. These four properties separate a genuinely sovereign setup from a 'we host in the EU' promise.

network

Private network

AI calls travel a private connection — never the public internet. Your VPC stays isolated, traffic routed inside AWS in your chosen region.

keys

Your own encryption keys

You control the encryption keys for prompts, responses and logs. We can't decrypt anything. Neither can AWS. Revoke a key and the AI is offline immediately.

noStorage

Zero retention with the provider

Model providers (Anthropic, OpenAI etc.) retain nothing. Logs sit only in your AWS account, in your region, on your retention schedule.

evidence

Audit-ready evidence pack

Architecture diagram, encryption inventory, data flow map, logging policy. All in one PDF you can put in front of BaFin, BSI or your auditor.

Pricing
On request Individual quote

scoped to complexity

  • Data never leaves your AWS network
  • Encrypted with your own keys
  • Zero data retention with the model provider
Same phase

Related services

Enterprise
Pricing
On request
scoped to complexity

AI Foundation on AWS

A governed AI environment on your own AWS account: Bedrock with access to Claude and OpenAI (ChatGPT) models, Guardrails, audit logs and cost controls — set up in 4 weeks.

  • AWS Bedrock + Guardrails in Frankfurt
  • Access to Claude and OpenAI models
  • Cost controls and full audit trail
Learn more
Pricing
On request
scoped to complexity

AI Assistant for Your Business

A digital team member that knows all your company documents and gives your staff the right answers instantly — around the clock.

  • Knows your entire company knowledge
  • Built into your daily tools
  • Gets smarter over time
Learn more
Enterprise
Pricing
On request
scoped to complexity

Agent Factory

A management platform for AI agents: deploy new agents independently, assign tasks, monitor results — no external vendor required.

  • Deploy new agents at the push of a button
  • Assign tasks & monitor results
  • Own AWS account, enterprise-grade security
Learn more
Governance
Pricing
On request
scoped to complexity

EU AI Act Compliance Package

Risk classification, AI register, DPIAs and governance committee setup — your documentation and processes ready for the regulator.

  • Risk classification per EU AI Act
  • AI register and DPIA templates
  • Vendor risk assessment for AI tools
Learn more
Pricing
On request
scoped to complexity

AI Cost & FinOps

Stop paying for what you don't need. Audit your AI spend, implement caching, set budgets, and assign costs back to teams.

  • Audit existing Bedrock & API spend
  • Prompt caching and model right-sizing
  • Per-team chargeback dashboards
Learn more
Pricing
On request
scoped to complexity

AI Security & Red-Team Audit

We test your AI systems the way an attacker would: prompt injection, data leakage, agent abuse and MCP server hardening — with a fix list you can act on.

  • Prompt injection & data leakage tests
  • MCP server and agent hardening
  • Prioritised remediation report
Learn more
No sales pitch. No pressure. Just a conversation.

Let's talk.

30 minutes, no obligation, no cost. We'll honestly tell you if and how we can help.