Client story · IT services
Secure enterprise AI deployment: How OnX governs Claude for all employees
Before asking a single client to trust AI with real work, OnX ran the deployment across our own business. We’ve turned our experience into a blueprint for mid-market organizations to compete at scale in an AI-driven world.
.png?width=876&height=582&name=image%20(9).png)
Industry
IT services
Deployed
Anthropic Claude for Enterprise, under one governed control plane
Timeline
From pilot to company-wide roll-out within four months
Key outcomes
Payback on the full AI program investment
CFO-Verified
Closed-won revenue
Salesforce-Anchored
Major security incidents attributable to AI
Security-Validated
Incident containment with agentic SOC
Security-Validated
The CFO’s test
“Our ROI numbers go through multiple rounds of verification, not because we doubt them, but because we know AI ROI claims across the industry often don't survive scrutiny. Every figure we report is cross-checked against actual results in the P&L. That's not a marketing claim. It's a financial discipline. Our AI spend is accountable to real, provable returns."
Perry Armstrong
Chief Financial Officer, OnX
.png?width=608&height=532&name=Right%20(12).png)
The situation
Fast is easy. Governed is hard. Companies need both.
Mid-market organizations face particular risk from AI pilots that scale activity without organizational readiness. That gap closes when governance comes before rollout.
With a cloud-native environment that requires complete infrastructure and data protection, OnX took a rigorous approach to securing and governing AI agents at scale before rolling out Anthropic Claude for Enterprise to all employees.
The approach
Governance first, then scale
We became our own first client. Before we deployed anything, we worked through four questions:
- Data exposure. How do you connect AI to real systems without exposing sensitive data?
- Proof of value. How do you prove ROI when most initiatives cannot quantify value for the CFO?
- Fragmented readiness. How do you move fast when every team is figuring out AI on their own?
- Workforce trust. How do you get a workforce to trust and adopt AI at scale?
Each answer had to hold up in production, not on paper. Our CEO-sponsored, company-wide Anthropic Claude for Enterprise rollout started with a small pilot of employees in March 2026 and within four months scaled company-wide, relying on the same discipline we sell to clients: resilience, incident response, and disaster recovery automation.
Over the course of those four months, six workstreams carried the rollout, each covering a different focus and each shipping with its own controls rather than inheriting them later:
AI governance at the token level
Security policy, metered spend, and usage analytics cover every user, skill, and token. The CISO has one view of it all.
Private deployment and data boundary
Data classification decides where every workload runs. The highest-value, most sensitive work stays on infrastructure controlled by OnX Managed Operations. Models see only what we choose to send them, and regulated content stays out of uncontrolled environments.
Cloud tenancy control
Mandated security and operational controls include encryption key management, audit trails, and data lineage governance. Every agent action leaves a record we can produce.
Skill Forge
This is our collection of reusable skills, each with its own governance. One person proves a way of working; the whole company runs it the next day. So far, we have 95 skills with 850+ downloads. As models get faster and cheaper, the controls around these skills stay constant.
Forge Feed
Here we compile all ROI tracking — from individual projects and chats to documented Salesforce opportunities.
Human-in-the-loop
OnX maintains checkpoints and auditable decision trails on every agent workflow.
The CTO view
“The only honest way to recommend this was to prove it on ourselves first. We deployed AI company-wide across our own operation, worked out where the risks were, and built the controls to match. What clients get now is not a theory. It is a path we have already walked end to end.”
Marc Sooley
Chief Technology Officer, OnX
The outcome
This is how the mid-market wins with AI
1.2M
Malicious artifacts blocked by the SOC tool chain protecting the deployment
SOC Tooling Records
100%
Employee AI access running through one governed control plane: every user, skill, and token
Platform Config
100%
Production agents passing security review before deployment — median time four days
Intake Gate Records
Now we have a proven framework for giving clients an AI control plane that identifies, authenticates, and authorizes every agentic interaction in real time.
You don’t have to be a technology company to achieve similar results. In fact, our earliest and largest wins came from finance reporting, proposal response, and employee support. These are workflows that every mid-market organization runs. What’s more, it’s not just technologists contributing to Skill Forge. OnX has active builders across various departments, including sellers, finance analysts, marketing, and operations staff.
Put the OnX blueprint to work
We have packaged our own experience and resources into OnX Forge AI, including advisory services to identify the work worth doing, a governed control plane for your CISO, skills and agents that power real workflows, and the team that runs them in production after go-live. While Anthropic underpins our internal work, each client’s agents will run on whatever model fits their environment.

Figures reflect OnX internal systems of record as of the reporting period. Results described are specific to the OnX environment and are not a guarantee of outcomes in any other organization.