How to select the right AI supplier for your business

Business owner seated at a desk reviewing a printed contract document with a pen in hand
TL;DR

Owner-managed businesses evaluating AI suppliers typically focus on features and miss the governance questions that create the real exposure. Three supplier shapes exist: point solutions for bounded workflows, general platforms for multi-use cases, and bespoke builds for genuinely unique or regulated requirements. The right call depends on your data sensitivity, technical capability, and growth trajectory. Five due diligence questions cover data location, security certifications, model training opt-outs, exit terms, and sector references.

Key takeaways

- The right AI supplier shape depends on your use cases and data sensitivity: point solutions for bounded, low-sensitivity workflows; general platforms when you expect multiple use cases over 12 to 24 months; bespoke builds only where use cases are genuinely unique or heavily regulated. - Under UK GDPR, you remain the data controller regardless of which supplier processes your data. Enforcement risk stays with you, not the vendor. - IBM's 2023 data breach research found that third-party supplier breaches cost an average of $4.76m and take 12.5% longer to contain than internal incidents. Supplier security is a financial exposure, not a compliance box. - Lock-in is a measurable commercial risk. Egress fees and proprietary data formats can produce five-figure migration costs if you switch AI platforms. Ask for open export formats in the contract before signing. - Five pre-signature questions separate workable deals from expensive ones: data location, security certifications, model training opt-outs, exit terms, and reference customers in your sector. Run them before the demo, not after.

The demo looked good. The AI handled the use case cleanly, the pricing seemed reasonable, and the salesperson answered every capability question confidently. The questions that got skipped came up later, when the contract was already running: where the data would live, who the data processor would be, what the exit terms looked like.

That pattern is common. Owner-managed businesses tend to evaluate AI suppliers on features first and get to governance questions late, or not at all. The result is contracts harder to exit than expected, data sitting in jurisdictions the owner never agreed to, and accountability gaps that stay with the business owner rather than the vendor.

This guide covers the three distinct shapes of AI supplier decision, when each makes sense, and the questions that separate a workable deal from an expensive one.

What choice are you actually facing?

Three categories of AI supplier sit in front of many owner-managed businesses at some point: a narrow point solution for one bounded job, a general platform such as Azure OpenAI or Google Vertex that you build multiple workflows on, or a bespoke build tailored to your specific processes and compliance needs. Which shape fits depends on your use cases, your data sensitivity, and how quickly those uses are likely to grow.

The governance implications vary significantly across these three shapes. Point solutions typically ship with standard UK GDPR terms, a data processing agreement you may or may not read carefully, and a privacy policy that has already opted you into something you might prefer not to be opted into. Platforms require you to configure data handling explicitly: which regions data transits through, whether your inputs are used to improve the model, and which teams inside the vendor organisation can access your requests. Bespoke builds shift responsibility further. You are the architect, so decisions about data residency, access controls, and audit logs sit with you from day one.

The British Chambers of Commerce and Cisco found in 2023 that 48% of UK owner-managed businesses cited lack of understanding as their primary barrier to AI adoption. That figure reflects a features gap. The governance gap is less visible and typically more expensive when it materialises.

When is a point solution the right call?

A narrow AI tool makes sense when you have a clearly defined, bounded workflow, data sensitivity is low to medium (anonymised support logs, marketing content, publicly available information), and you want to be operational in weeks rather than months. Typical SaaS AI tools in this tier run from £20 to £100 per user per month, implementation risk is low, and cancellation is straightforward if the tool does not deliver.

What makes point solutions attractive is also what makes them risky at scale. Proliferation is the main hazard: three tools become six, each with its own data processing agreement, its own retention policy, and its own sub-processors operating in regions you have not audited. The ICO is explicit that as the data controller, you remain accountable for what your processors do with personal data, regardless of how many there are or how small each integration appears.

Before adding a point solution to your stack, read the data processing agreement rather than just the privacy policy, confirm where data is stored and whether your inputs are used for model training, and log the decision in your data protection register if you are keeping one. Many point solutions offer opt-outs on training data; it is rarely the default setting.

When is a general platform the right call?

A general platform becomes the right call when you expect multiple AI use cases across the business in the next 12 to 24 months and have the technical capability to build on APIs, either in-house or through a development partner. Azure OpenAI, Google Vertex and the OpenAI API give you reusable building blocks, more control over data routing and model versions, and the ability to standardise governance across a single vendor relationship.

The trade-off is depth of dependency. The Competition and Markets Authority’s review of AI foundation models flagged the risk of envelopment strategies, where AI capabilities get bundled into existing productivity suites and exit becomes materially costlier over time. Ofcom’s cloud market study found businesses reporting five-figure bills to move workloads out of one provider to another. The same switching economics apply to AI workflows built heavily into a single platform’s stack.

Bespoke builds sit at the far end of this spectrum. They make sense when use cases are genuinely unique, when off-the-shelf tools cannot meet domain or data residency requirements, or when the regulated nature of the decisions involved (credit scoring, clinical triage, recruitment screening) demands explainability and audit trails that commercial tools cannot provide. The investment threshold is typically a six-figure benefit case, which rules out many owner-managed businesses unless the use case is genuinely high-value and the regulation demands it.

What does getting it wrong actually cost?

Getting the supplier choice wrong costs more than the licence fee you end up writing off. IBM’s 2023 Cost of a Data Breach report found that third-party supplier breaches cost an average of $4.76m and take 12.5% longer to identify and contain than internal breaches. The ICO’s enforcement record confirms that you cannot outsource accountability: the data controller stays liable regardless of which processor caused the breach.

On regulatory exposure, the FCA expects regulated firms to maintain full accountability for any outsourced technology under its operational resilience rules, and that includes AI. For IFAs, lenders, or brokers using AI for credit scoring or compliance monitoring, the expectation covers testing, governance, validation, and documentation, whether the model is built in-house or supplied by a third party.

The Experian enforcement notice in 2020 resulted in a £20m fine centred on data governance failures in a third-party data environment. The British Airways breach in 2017 and 2018, which involved third-party vulnerabilities and inadequate controls, drew an initial proposed fine of £183m (ultimately reduced to £20m) plus compensation claims. In both cases, the contractual relationship with the supplier did not insulate the data controller from enforcement.

Lock-in adds a separate financial dimension. The CMA’s review of AI foundation models found that dependence on a small number of providers reduces buyer bargaining power and makes switching expensive, particularly when AI workflows are embedded in productivity tools the business already depends on for everything else.

What should you ask before you sign anything?

Before signing any AI supplier contract, ask five questions: where your data is stored and whether it crosses UK or EEA borders; what security certifications they hold; whether you can opt out of model training; what the data export format and egress cost looks like if you leave; and whether they can name a reference customer in your sector who will take a call.

On data location: the ICO requires Transfer Risk Assessments for personal data moving outside the UK or EEA. A supplier who cannot tell you where your data is processed fails the first test.

On certifications: the NCSC recommends preferring suppliers who hold ISO 27001 or Cyber Essentials Plus and can provide penetration test summaries on request. Asserting security and evidencing it are different things.

On model training: OpenAI, Microsoft, and Google have all introduced opt-out controls following regulatory pressure, but these are not uniformly applied across product tiers. Free and lower-paid tiers frequently include training use by default; enterprise tiers generally do not. Get the confirmation in writing, specific to the product tier and version you are actually buying.

On exit terms: the CMA’s review found that egress fees and proprietary data formats are the main switching barriers in AI and cloud platforms. Ask for data export in open formats (JSON, CSV) as a contract term, not an afterthought.

On references: a supplier without UK or EU customers in your sector cannot demonstrate domain-appropriate compliance. Logos on a case studies page without contact names available are not references.

If you are about to shortlist AI suppliers, run these questions before the demo, not after. The features will be compelling. The accountability questions are where the real cost lives.

Sources

- Information Commissioner's Office (2024). AI and data protection guidance. Explains controller and processor obligations when deploying third-party AI, including DPIA requirements and international transfer rules for UK businesses. https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/artificial-intelligence/ - National Cyber Security Centre (2023). Principles for the security of machine learning. Sets out buyer expectations on secure AI system development, penetration testing, and supplier due diligence for organisations procuring AI tools. https://www.ncsc.gov.uk/guidance/principles-for-the-security-of-machine-learning - Competition and Markets Authority (2023). AI foundation models: initial review. Identifies envelopment strategies and switching-cost risks for businesses choosing AI platforms, with implications for long-term supplier bargaining power. https://www.gov.uk/government/publications/ai-foundation-models-initial-review - Financial Conduct Authority (2021). Algorithmic trading compliance review. Sets expectations for governance, validation, monitoring, and accountability for AI models used by regulated firms, whether built in-house or supplied by a third party. https://www.fca.org.uk/publication/multi-firm-reviews/algorithmic-trading-compliance-in-supervisory-review.pdf - British Chambers of Commerce and Cisco (2023). UK SME AI adoption survey. Found that 48% of UK businesses cite lack of understanding and 33% cite implementation costs as barriers to AI adoption, underscoring the need for structured supplier evaluation. https://www.britishchambers.org.uk/news/2023/11/new-bcc-research-reveals-only-one-in-four-firms-have-adopted-ai - IBM Security (2023). Cost of a Data Breach Report 2023. Found that third-party supplier breaches cost an average of $4.76m and take 12.5% longer to identify and contain than breaches originating internally. https://www.ibm.com/reports/data-breach - IDC (2023). Worldwide AI spending forecast. Estimated AI market at $154bn in 2023, forecast to exceed $300bn by 2027, indicating a rapidly maturing but still volatile vendor landscape for buyers. https://www.idc.com/getdoc.jsp?containerId=US51861023 - EU AI Act (2024). Regulation (EU) 2024/1689 on artificial intelligence. Applies to UK firms deploying AI into EU markets; high-risk AI systems face fines up to €35m or 7% of global annual turnover for serious breaches. https://artificialintelligenceact.eu/the-act/ - Ofcom (2023). Cloud services market study. Highlights egress fees and proprietary inter-operability as barriers to switching cloud and AI platforms, with businesses reporting five-figure migration costs. https://www.ofcom.org.uk/research-and-data/telecoms-research/cloud-services-market-study

Frequently asked questions

Do I need to do a Data Protection Impact Assessment before buying an AI tool?

A DPIA is mandatory under UK GDPR for high-risk processing, which includes large-scale profiling, automated decisions with significant effects on individuals, and systematic monitoring. For a point solution handling anonymised marketing data, a DPIA is unlikely to be required. For AI used in hiring, credit decisions, or health-related processing, it almost certainly is. The ICO's AI and data protection risk toolkit helps you assess which category your use case falls into.

What is the difference between a data controller and a data processor in the context of AI suppliers?

Under UK GDPR, you are the data controller if you determine the purposes and means of processing personal data. Your AI supplier is typically a processor, acting on your instructions. The accountability stays with you as the controller. If the supplier causes a breach or fails to meet GDPR obligations, enforcement action comes to you first. Your contract must document this relationship explicitly, including instructions, retention limits, and sub-processor approvals.

How do I know if an AI vendor's security is actually good rather than just claimed?

Ask for evidence rather than assertions. ISO 27001 certification and Cyber Essentials Plus are independently verified; ask to see the certificate and its expiry date. For penetration testing, request a summary of the most recent test, when it was conducted, and what was remediated. The NCSC recommends suppliers publish their security commitments clearly. If a vendor cannot or will not provide this level of detail before you sign, treat that as material information about how they will operate under pressure.

This post is general information and education only, not legal, regulatory, financial, or other professional advice. Regulations evolve, fee benchmarks shift, and every situation is different, so please take qualified professional advice before acting on anything you read here. See the Terms of Use for the full position.

Ready to talk it through?

Book a free 30 minute conversation. No pitch, no pressure, just a useful chat about where AI fits in your business.

Book a conversation

Related reading

If any of this sounds familiar, let's talk.

The next step is a conversation. No pitch, no pressure. Just an honest discussion about where you are and whether I can help.

Book a conversation