Home Governance About Us Call (647) 581-3182
ISO/IEC 42001 / NIST AI RMF Aligned

Acceptable Use of AI Policy

Document IIS-GOV-AI-001  •  Version 1.0  •  Effective 01 May 2026

Back to Governance
Download .docx
Document Reference
IIS-GOV-AI-001
Version
1.0
Effective Date
01 May 2026
Classification
PUBLIC
Jurisdiction
Ontario / Canada (primary), Global (secondary)
Approving Authority
CEO & Executive Leadership

1. Purpose & Statement

Integrated IT Support Inc. (the “Company”) embraces artificial intelligence (AI) as a means of delivering faster, more reliable, and more affordable services to its clients. The Company is equally committed to ensuring that AI systems it builds, deploys, or uses internally are developed and operated in a manner that is lawful, ethical, transparent, secure, and consistent with respect for human rights and client interests.

This Policy sets out the standards that govern the Company's use of AI, in alignment with leading frameworks including ISO/IEC 42001:2023 (AI Management System), the NIST AI Risk Management Framework (AI RMF 1.0), the Government of Canada Directive on Automated Decision-Making, the OECD AI Principles, and the principles of the EU AI Act.

2. Scope

This Policy applies to all use of AI by the Company and its personnel, whether for internal productivity, service delivery to clients, embedded product features, or experimental and research purposes. It applies to:

3. Definitions

4. Governance & Accountability

5. Permitted Uses

Subject to the controls below, the Company permits the use of approved AI tools for:

6. Prohibited Uses

Personnel must NOT, under any circumstances, do any of the following without explicit prior written authorisation from the GRC Office or a duly authorised executive:

7. Data Handling in AI Systems

8. Transparency & Disclosure

9. Bias, Fairness & Human Oversight

10. Security of AI Systems

AI systems are subject to the Company's Information Security Policy (IIS-GOV-SEC-001). The Company specifically addresses AI-specific risks including:

11. Vendor Due Diligence

Before adding any AI service to the Approved list, the GRC Office reviews:

12. Intellectual Property & Output Ownership

13. Training & Awareness

All personnel using AI in the course of their work must complete the Company's AI Acceptable Use training upon joining and at least annually. Targeted training is provided to client-facing technical roles on responsible-AI engineering, prompt-injection defence, and privacy-by-design.

14. Monitoring, Audit & Improvement

15. Reporting Concerns

Any person — internal or external — may report a concern about the Company's use of AI through the Company's grievance mechanism (ahmad.wasee@iisupp.net or iisupp.net/ethics-grievance). The Company will investigate concerns in good faith and apply its non-retaliation guarantee.

Approval and Authority

This document has been reviewed and approved by the Executive Leadership of Integrated IT Support Inc. and is issued under the authority of the Office of the Chief Executive Officer. The document is subject to periodic review and may be amended by the Approving Authority. Material amendments are communicated to all employees and key suppliers within thirty (30) days of issuance.

Signed for and on behalf of Integrated IT Support Inc.

Ahmad

Ahmad — Chief Executive Officer

Integrated IT Support Inc.

Date: 11 May 2026

Approved electronically by Ahmad, Chief Executive Officer, on 11 May 2026. This electronic signature is applied with the authority of the named signatory and is valid under the Personal Information Protection and Electronic Documents Act (PIPEDA) and the Ontario Electronic Commerce Act, 2000.