Service
Digital Sovereignty Assessment
Understand your organization's technological dependencies before they become strategic risks.
// Digital sovereignty is not nostalgia. It is operational control.
Most organizations depend on cloud platforms, AI tools, SaaS providers, data processors and infrastructure vendors they do not fully control. A Digital Sovereignty Assessment gives leadership a clear view of these dependencies, the risks they create, and the practical steps needed to reduce them.
[01] Target Clients
Built for organizations with real exposure and accountability
Swiss SMEsPublic institutionsGovernment-related organizationsRegulated industriesHealthcareFinanceCritical infrastructureSoftware and IT providers
[02] Problem
Do you know where your digital dependencies really are?
Digital sovereignty is not ideology. It is about operational resilience, legal exposure, data control, vendor dependence, AI governance and strategic flexibility.
RSK-01Cloud dependency
Critical workloads often rely on providers with limited fallback options, leaving leadership exposed when cost, policy, or service conditions change.
RSK-02AI data exposure
Teams adopt AI assistants quickly, but governance and controls lag behind, creating unmanaged exposure for sensitive data and strategic knowledge.
RSK-03Vendor lock-in
Contracts, architecture, and operating models can silently reduce your exit options and make future strategic pivots expensive.
RSK-04Data jurisdiction risk
Data handling and processing locations are not always transparent, increasing legal and compliance exposure for regulated organizations.
RSK-05Infrastructure fragility
Dependencies are frequently concentrated in too few systems or providers, weakening resilience during outages, incidents, or geopolitical disruption.
RSK-06Procurement blind spots
Sovereignty criteria are often missing in procurement decisions, so short-term buying choices create long-term strategic dependency.
[03] Framework
The 6 Layers of Digital Sovereignty
Layer 1
Infrastructure Sovereignty
Hosting, networks, availability, resilience, operational control.
Layer 2
Cloud and Platform Sovereignty
Cloud providers, SaaS platforms, hyperscaler dependency, exit options.
Layer 3
Data Sovereignty
Data residency, access control, processing locations, contractual exposure.
Layer 4
AI Sovereignty
Use of external AI models, sensitive data exposure, model/vendor dependence, governance.
Layer 5
Application and Software Sovereignty
Critical applications, open-source vs proprietary dependencies, maintainability, vendor concentration.
Layer 6
Governance and Procurement
Policies, roles, procurement criteria, risk ownership, documentation, decision processes.
[04] Deliverables
What you receive
- Executive sovereignty report
- Dependency and vendor risk map
- AI usage and exposure overview
- Data jurisdiction assessment
- Sovereignty maturity score
- Risk heatmap
- Practical roadmap with prioritized recommendations
- Optional board or leadership workshop
[05] Packages
Assessment packages
Sovereignty Snapshot
For SMEs or leadership teams that need a first structured overview.
- +90-minute discovery workshop
- +Guided questionnaire
- +High-level dependency review
- +Short executive summary
- +Initial risk score
Indicative: from CHF 2,500
Enquiry-based scope. Final engagement is aligned to context and complexity.
// Recommended
Digital Sovereignty Assessment
Main recommended package.
- +Stakeholder interviews
- +Infrastructure and cloud dependency review
- +AI tool and data exposure assessment
- +Vendor and SaaS dependency analysis
- +Sovereignty maturity score
- +Executive report
- +Prioritized roadmap
Indicative: from CHF 7,500
Enquiry-based scope. Final engagement is aligned to context and complexity.
Sovereignty Strategy Program
For organizations that want support beyond assessment.
- +Full assessment
- +Strategic roadmap
- +Architecture and vendor guidance
- +Procurement support
- +Leadership workshop
- +Implementation advisory
Indicative: custom scope
Enquiry-based scope. Final engagement is aligned to context and complexity.
[06] Why Thierry
Why work with Thierry Gilgen?
- AI systems architect
- Infrastructure and technology strategist
- Author of “Panopticon 2.0 - Governing in an Age of Total Surveillance”
- Experienced across enterprise IT, AI systems, cloud, governance, and digital sovereignty
- Switzerland-based advisor with a practical, non-ideological approach
Start with a structured view of your dependencies
A short assessment can already reveal where your organization is exposed, where sovereignty matters most, and which actions create the highest strategic value.