Copenhagen, Denmark

Turning AI governance from compliance checkbox into competitive advantage.

Senior Program & Transition Manager with deep expertise in AI governance, regulatory compliance, and digital transformation across pharma, public sector, and critical infrastructure.

Get in touch
Steven Seidenfaden Wensley

The bridge between regulation
and real-world execution.

Steven Seidenfaden Wensley - professional portrait

Your AI governance deadline is August 2026. Your compliance framework wasn't built for it. I fix that. With experience spanning pharma GxP environments, public sector digitalization, and IT infrastructure transitions, I bring an operator's perspective to governance — not a consultant's slide deck.

Advisory Board member at a Swiss AI startup. Challenging conventional thinking on AI regulation, compliance, and the uncomfortable gap between policy and practice.

15+
Years in programme management
NIS2
Cybersecurity directive
ISO 27001
Information security
GxP
Pharma compliance

Where governance meets delivery.

AI Governance

Building governance frameworks that actually work in practice — not just on paper. From policy design to operational implementation across the EU AI Act landscape.

Regulatory Compliance

NIS2, ISO 27001, GxP — navigating the intersection of cybersecurity directives and industry-specific regulation. Practical compliance for complex organisations.

Digital Transformation

Leading large-scale IT transitions and organisational change. Turning strategy into execution with programme management discipline and stakeholder alignment.

IT Infrastructure

Deep operational knowledge of infrastructure environments — from data centres to cloud migration, with a security-first mindset rooted in regulated industries.

How I can help.

01

AI Governance Programme Setup

Design and implement AI governance frameworks aligned with EU AI Act, NIS2, and your industry requirements. I establish risk classification systems, build accountability structures, and create documentation that satisfies regulators while keeping your teams productive. From policy design through operational rollout — including training, monitoring, and continuous improvement cycles. The August 2026 deadline is closer than you think.

02

Compliance Readiness Assessment

Comprehensive gap analysis and actionable roadmap for NIS2, ISO 27001, and GxP compliance — with realistic timelines and priorities. I evaluate your current security posture, map regulatory requirements to existing controls, and identify the critical gaps that need immediate attention. Deliverables include a prioritised remediation plan, resource estimates, and a clear path to certification or compliance sign-off.

03

Data Centre Migration & Cloud Transition

End-to-end planning and execution of data centre migrations, consolidations, and cloud transitions. With hands-on experience leading large-scale infrastructure moves in regulated environments, I manage the full lifecycle: discovery and dependency mapping, risk assessment, migration wave planning, execution oversight, and post-migration validation. Whether you're moving to hyperscale cloud, colocation, or a hybrid model — I ensure zero-surprise cutovers and regulatory compliance throughout.

04

Transition & Programme Management

Interim programme leadership for complex IT transitions, organisational change, and infrastructure modernisation. I step into high-pressure environments, align stakeholders across business and technology, establish governance structures, and drive delivery with discipline. Experienced in managing multi-million-euro programmes with cross-functional teams, vendor coordination, and executive reporting.

05

Advisory & Board Roles

Strategic advisory on AI governance, digital transformation, and technology risk for boards and leadership teams. I bring an operator's perspective to the boardroom — practical insights grounded in hands-on programme delivery, not theoretical frameworks. Currently serving as Advisory Board member for a Swiss AI startup. Available for non-executive director roles, advisory board positions, and strategic consulting engagements.

06

Cybersecurity Strategy & NIS2 Implementation

Develop and execute cybersecurity strategies tailored for organisations affected by NIS2 and sector-specific regulation. I help you build incident response capabilities, supply chain security frameworks, and business continuity plans that meet directive requirements. From risk register development to board-level reporting structures — practical cybersecurity governance for critical and important entities.

Steven Seidenfaden Wensley

Let's talk.

Whether you need a governance framework, a compliance roadmap, or an experienced programme manager — I'm here to help.