For Nonprofit & Health Org Leaders

Someone on your team already pasted something into ChatGPT they shouldn't have. You just don't know which one yet.

I build the policy that stops the next mistake, and the automation that makes AI actually worth the risk. One person, both tracks, so nothing gets lost between the policy and the actual work.

30-MINUTE CALL · NO OBLIGATION · YOU LEAVE WITH A WRITTEN RISK SNAPSHOT
GOVERNANCE+ AUTOMATION
ChatGPT (unmanaged) Staff-owned tools No data policy No audit trail Board has no visibility REVIEW 01Use-case policy 02Data handling rules 03Automation build 04Audit logging 05Board reporting
Sound Familiar?

It's 4:50 on a Friday. Your board chair forwards an email asking what your AI policy is. You don't have one. Neither does anyone you know running an org your size.

Meanwhile, your program coordinator has been using ChatGPT to draft grant reports for months. Nobody told her not to. There was nothing to tell her.

That's not a hypothetical. That's Tuesday, at most organizations your size, right now.

Program discipline built across 16+ years in regulated environments
Bank of America Comcast CareFirst BlueCross BlueShield Endava
The Reality Right Now

You're stuck between two problems, and you can usually only find help for one.

Shadow use, no policy

Your staff are already pasting client names, grant language, and internal notes into ChatGPT. Nobody told them not to, because there was nothing written down to tell them.

No accountability trail

If your board asked right now how AI is being used, and by whom, could you actually answer? Most leaders can't, and it shows the moment someone audits.

Manual work nobody can automate

You already know which report or intake process should be automated. You just don't have anyone on staff who can actually build it.

Two vendors, one budget

A compliance consultant won't touch your Zapier account. A developer won't sit through a funder audit. Most organizations your size can't afford both, so nothing happens.

Where I Fit

Two tracks, one person, nothing lost between the policy and the build.

"I spent sixteen years being the person large, regulated companies called when something had to work and couldn't fail. Then I built an AI product myself, alone, from scratch. You don't have to choose between someone who understands compliance and someone who can actually build the thing. I've been both, for a long time."
Track A · Governance & Compliance
  • Usage policy and data rules that actually make sense, so nobody's guessing what's off-limits
  • Approval workflows and audit trails, already in place before anyone has to ask for one
  • Board and funder reporting you can hand over without dreading the question
  • Staff training people actually sit through, because it's short and it's clear
Track B · Implementation & Automation
  • Real automation in Zapier or Make that gets the manual work off someone's desk
  • AI tools set up correctly the first time, not duct-taped together
  • Your systems actually talking to each other, instead of everyone re-entering the same data
  • Documentation clear enough that your team can run it after I'm gone

One honest boundary: this isn't custom software engineering or LLM fine-tuning. It's real configuration, automation, and integration work using tools built for this, documented clearly enough that your team can maintain it without me.

The Engagement

A four-phase framework that runs both tracks together, not sequentially.

PHASE 01

Assess

Map where AI is already being used across your teams, and where the manual work is worth automating, so you know exactly what you're dealing with before we design anything.

PHASE 02

Design

Write the usage policy and data-handling rules, and architect the automation that will run inside them, together, not in sequence.

PHASE 03

Build & Roll Out

Configure and ship the actual workflow, and train staff on what's approved and why, so the policy and the tool arrive at the same time.

PHASE 04

Govern & Handoff

Stand up the reporting cadence your board needs, and document the build so your team can maintain it without me.

Who This Is For

You're too small for an enterprise AI vendor, and too regulated to just wing it.

Nonprofits & grant-funded programs

You answer to funders and a board. You need AI use that's defensible in an audit, not just convenient.

Healthcare & human services orgs

HIPAA and client confidentiality aren't optional. Any AI workflow has to be built with that as the starting constraint.

Small mission-driven teams

Under roughly 50 staff, no dedicated IT or compliance function, and no appetite to hire two separate vendors to solve this.

Leadership stuck between "do something" and "do it safely"

You know AI is already in use on your team. You just need someone to make it defensible and actually useful, at the same time.

Who's Behind This

Sherimane Johnson, sixteen years building the governance structures large organizations run on.

Before AI was the topic, the job was the same: take an ambiguous, high-stakes problem and build something out of it that actually holds up. I did that in enterprise change management at Bank of America, in release governance at Endava, and now in compliance coordination inside a HIPAA-regulated nonprofit. The tools changed. The job didn't.

Sherimane Johnson, founder of Johnson AI Ops
Sherimane Johnson
Founder, Johnson AI Ops
16+
Years in Regulated Enterprise Program Leadership
4
Sectors: Financial Services · Healthcare Payer · Telecom · Nonprofit
1:1
Direct Engagement · No Bench, No Handoff
Certified AI Consultant (2024) · Prompt Engineering Certificate, Vanderbilt University · MPA, Strayer University · PMI/PMBOK-Aligned Program Experience
Start Here

Find out what's really happening with AI on your team, before your board asks and you don't have an answer.

In 30 minutes, we'll walk through how your team is currently using AI and where the real exposure is. You'll leave with a short written summary. No pitch, no obligation.

Book Your Free AI Readiness Audit

Get the AI Governance Checklist

Tell us a bit about your organization and we'll send it right over.