Skip to content
ISOMETRIC PARTNERS

Private AI Deployment & Sandboxed Infrastructure

Private AI inside the security boundary you choose

Your pricing formulas, operating methods, strategic plans and client records are part of what makes your business valuable. You should be able to use AI on them without sending them to an outside model provider.

We design, deploy and govern AI systems in your facility or your own cloud account: offline on local hardware, physically air-gapped where connections are prohibited, or in an isolated private cloud. You keep the model and the setup that runs it.

Protect what your business cannot afford to expose

Every outside service that processes your information adds a relationship to govern and another place it can be exposed. A private deployment keeps processing where you already control access.

  • Competitive knowledge. Keep proprietary methods, research and commercial strategy out of external model services.
  • Client obligations. Handle confidential client records in line with your client agreements, confidentiality commitments and data-handling requirements.
  • An approved alternative. Give staff a sanctioned tool instead of personal AI accounts, backed by access, retention and oversight controls.
  • Answers for reviewers. Show clients, security teams and compliance reviewers where information is processed, who can reach it, and how those restrictions are tested.

Choose the boundary your information requires

These are three different arrangements with different protections. We agree which one applies, and test it, before anything goes into use.

Offline

Offline, on-premises AI

Models run on dedicated workstations, servers or a local cluster at your site. Documents, company knowledge, model responses and logs stay on site. Outbound internet access and external telemetry are blocked and tested, and inference does not depend on an outside API.

On site and offline, but still on a network you run. Not the same as an air gap.

Physically disconnected

Air-gapped installations

For environments that prohibit external connectivity, we scope a physically disconnected installation. Models, updates and files come in through controlled import procedures, including rules for removable media.

A firewall or isolated network segment alone is not an air gap. Maintenance must respect the same boundary.

Your cloud account

Isolated private cloud

If your business permits cloud infrastructure, we deploy in your account with restricted network paths, sandboxed workloads and controlled administrator access.

Not air-gapped and not on your premises. Your cloud provider's access and data-location terms still apply.

Controls you can check

The agreed scope can include any of the following. Included controls are documented at handover, with the isolation and performance test results.

  • Identity and permissions. Single sign-on and role-based access through your identity provider, preserving record permissions between teams and confidential client matters.
  • Isolation. Dedicated compute, workload sandboxing and network segmentation with default-deny rules. Being on the internal network does not by itself grant access.
  • Data handling. Encryption, controlled physical and removable-media access, and retention settings for prompts, documents, logs, backups and training data.
  • Audit records. Tamper-evident records of access and administrative changes, with contents and retention set to meet both confidentiality and recordkeeping needs.
  • Operations. Validated model imports, controlled offline updates, and incident-response runbooks with named owners.

What isolation does not do. It reduces exposure; it does not make leaks impossible. People, physical access, software vulnerabilities and imported files still need controls. A private deployment is not a compliance certification, and it does not make you compliant automatically. Sector-specific obligations are reviewed with your legal and security teams.

What you own and keep

You receive a working system, not access to a hosted endpoint.

  • Complete model weights. The full open-source or open-weight model weights, plus any custom adapters we create.
  • Deployed model copies and inference setup. The copies running in your environment and the configuration needed to serve them.
  • Your custom work. The custom code and workflows built for you, with architecture, configuration, performance and isolation test results, and maintenance runbooks.
  • Optional fine-tuning. A complete open model can be deployed as it is. If fine-tuning is worthwhile, training data and resulting artifacts stay inside the same boundary.
  • Independent operation. Retain, back up, run or move the deployment without Isometric. No ongoing Isometric subscription or support contract is required to keep using it.

You own your deployed copies and custom work, not the original authors' intellectual property. Model and software licenses still apply; we select models whose licenses permit your intended use. Other products keep their own licenses and charges.

How the work is scoped and priced

Each project receives a custom quote based on capacity, isolation requirements and support needs. Prices exclude travel costs.

New private AI builds

Scoped under Custom AI & Automation, with its inclusions:

  • Strategy session and workflow assessment for the agreed scope
  • Hardware sizing, installation, isolation and connections to approved internal systems
  • Governance policy and enforcement controls
  • One-time team and leadership coaching and workshop
  • Three months of ongoing support after final project delivery

Quoted or charged separately

  • Hardware, cloud hosting, training compute and usage charges, identified in the proposal
  • Customization of a private AI system you already run
  • Support for an existing system, or continued support after the included three months

You do not have to run a pilot or buy a workflow assessment first. Past strategy or assessment payments are credited once, within three months of your first engagement.

We build in your environment. Isometric does not host your proprietary or customer datasets. The investment is in protecting business knowledge and honoring client obligations, not a promise of lower software bills.

Questions buyers ask

Can our AI run without an internet connection?

Yes. With a complete model and inference software installed on dedicated local hardware, inference can run without an outside API. We block and test outbound connections and external telemetry for offline deployments. Model imports, updates and support follow agreed procedures; an air-gapped installation is physically disconnected from external networks.

Our AI vendor already promises not to train on our data. Isn't that enough?

A no-training commitment covers one use of your data. Processing, retention, support access and subprocessors need their own review. We read the actual terms with you rather than assume every hosted service handles data the same way. Sometimes a hosted service with the right terms is enough; a private deployment is for information that should not leave your boundary at all.

Is offline on-premises the same as air-gapped?

No. Offline on-premises means the system runs on dedicated hardware at your site with outbound connections blocked and tested. Air-gapped means the installation is physically disconnected, and models, updates and files enter only through controlled import procedures.

Is a private-cloud deployment air-gapped?

No. It runs in your cloud account with restricted network paths and sandboxed workloads, but it is neither air-gapped nor on your premises. Your cloud provider's access and data-location terms still apply.

Will a private deployment make us compliant?

Not by itself. Private deployment is not a compliance certification. It can support your client and compliance reviews with evidence of where information is processed and who can reach it. Sector-specific obligations are reviewed with your legal and security teams.

Does isolation guarantee nothing can leak?

No. Isolation reduces exposure. People, physical access, software vulnerabilities and imported files still need controls, which is why access, media handling and incident response are part of the scope.

What exactly do we receive at handover?

The complete open-source or open-weight model weights, your deployed model copies, any custom adapters, the inference configuration, your custom code and workflows, and the architecture, test results and maintenance runbooks. You can hand the system to your IT or security team, or arrange ongoing care under agreed access restrictions.

Do we need to fine-tune a model?

No. A complete open model can be deployed privately as it is. Fine-tuning is optional; when it is used, training data and model artifacts stay inside the same security boundary.

Are there limits on what we own?

Yes. Ownership of deployed model copies does not transfer the original authors' intellectual property. Their model and software licenses still apply; we select models whose licenses permit your intended use.

What support is included?

New builds under Custom AI & Automation include three months of ongoing support after final project delivery. After that you can run the system yourselves, negotiate continued support, or choose a full-service partnership. For air-gapped systems, support follows the same boundary as everything else.

What costs are separate from the build?

Hardware, cloud hosting, training compute and usage charges are identified separately in the proposal. Customization or support for a private AI system you already run is quoted separately.

Do we have to start with a pilot or a workflow assessment?

No. You can commission the build directly; strategy and assessment for the agreed scope are included in Custom AI & Automation. If you have already paid for a strategy session or assessment, that payment is credited once, within three months of your first engagement.

Will Isometric hold our data?

No. We build in your facility or your cloud account. Isometric does not host your proprietary or customer datasets, and any support access is agreed and restricted in advance.

Talk through your boundary before you commit

Book a free 30-minute call. Describe the kind of information involved, not the records themselves; please do not send customer data, credentials or financial documents.