Your 90-Day Enterprise Transformation Plan
It is the first Monday of a new quarter, and a newly appointed head of learning has a mandate, a budget line, and a date circled on the wall: 2 Aug 2026, when national market-surveillance authorities begin enforcing the EU AI Act's Article 4 AI-literacy duty. The CEO wants the catalog rebuilt at AI speed. The CHRO wants proof the workforce is becoming AI-literate. The CFO wants a number. And somewhere in a plant, a field technician will one day follow a procedure a model drafted, so a compliance officer will eventually ask who verified it. Ninety days is not enough to transform an enterprise. It is exactly enough to build the spine that makes the transformation defensible: one verified pipeline, one measured build, one governance gate, one literacy program that survives whichever way the law settles. This final lesson is that ninety days, laid out as a concrete 30/60/90 start, and it closes the whole program on the rule everything has been built around.
What Ninety Days Is and Is Not For
The most expensive mistake a transformation leader can make in the first ninety days is to try to boil the ocean: rebuild the whole catalog, deploy an AI tutor to every learner, and stand up a full governance function all at once. That plan looks ambitious in a board deck and produces, ninety days later, nineteen half-finished pilots that each work and none of which add up to an operating model. The second most expensive mistake is the opposite: to spend ninety days writing strategy documents and evaluating vendors while shipping nothing, so that when the enforcement date arrives the function has a beautiful roadmap and zero evidence.
The right frame is narrow and deep. Ninety days is enough time to build one complete, defensible thread through the whole pipeline, from a verified source of truth to a measured behavior outcome, on one real, high-value, tractable use case, with the governance and literacy scaffolding that thread requires. That single thread becomes the reference implementation the rest of the enterprise copies. It proves the operating model is real, it produces the artifacts a regulator and a CFO ask for, and it does all of this before the 2 Aug 2026 date rather than scrambling after it. You are not transforming the enterprise in ninety days. You are building the proof that the transformation is possible and defensible, which is the thing that unlocks the multi-year investment.
Ninety days does not rebuild the catalog. It builds one verified, measured, governed thread that the rest of the enterprise can copy, and the proof that the operating model is real.
Days 1 to 30: Ground the Work and Pick the Thread
The first thirty days are about foundations and one sharp choice. You do three things: establish the human-owned gates as non-negotiable from day one, pick the single use case you will drive end to end, and stand up the source of truth it will be grounded on. Everything later depends on getting this month right, because a thread built on the wrong use case or an ungrounded source is a thread you will have to rebuild.
Establish the gates before the speed. On day one, write down the four bright-line rules the function will not cross, and socialize them with compliance, legal, and accessibility so they are shared commitments, not L&D preferences. AI does not certify a learner as competent. AI does not author a regulated or safety claim that ships unverified. An AI-generated experience that fails WCAG 2.2 AA does not ship. An AI-generated scenario about people is bias-checked before it ships. Naming these first matters, because it is far easier to build speed inside a boundary than to install a boundary after the team has learned to move fast without one.
Pick the thread on the impact-over-risk logic. Choose one use case that is genuinely high value and tractable: a regulated or safety refresh, an onboarding curriculum, or a high-volume compliance module where the source of truth exists and the behavior outcome is measurable. Avoid the temptation to start with the most exciting case, a live AI tutor in the flow of work, because that is the case with the least verification headroom and the highest failure blast radius. The right first thread is one where grounding is possible, an SME can sign off, accessibility is checkable, and a Level 3 behavior measure is realistic.
Stand up the source of truth. The thread will be grounded, so days 1 to 30 assemble and verify the material it grounds on: the current approved policies, SOPs, and SME content, with versions confirmed. This is unglamorous and load-bearing. A grounded pipeline is only as trustworthy as the corpus behind it, and a corpus with two versions of the lockout procedure in it will produce a confident wrong module no matter how good the model is. By day 30 you have the gates written, the thread chosen, and a verified source of truth ready to draft from.
Days 31 to 60: Build the Verified, Measured Thread
The middle thirty days build the reference implementation, and they are where verify-by-design and measure-by-default stop being theory and become a running pipeline on real content. You draft, you gate, you instrument, and you produce the artifacts.
Draft grounded, with provenance captured. Generate the module from the verified source, with every load-bearing claim carrying a citation to the SOP version it came from, captured at the moment of generation. This is the move that makes the later verification a fast confirmation rather than a slow investigation. At the same time, generate the objectives and, alongside them, draft the Level 2 and Level 3 measures, so measurement is designed in before the content is finished, not bolted on after launch.
Run the gates for real. The SME signs off each regulated claim against the current approved source, and the sign-off is logged in a tamper-evident record. The media clears an accessibility gate to WCAG 2.2 AA, per language if the thread is multilingual, producing a VPAT or ACR (a Voluntary Product Accessibility Template or Accessibility Conformance Report, the document stating how a product meets accessibility standards). Any scenario about people is bias-checked before release. The assessment items are validated so each one measures its objective at the right cognitive level, and the invalid-but-plausible items are retired rather than shipped. This is the first time the whole gated pipeline runs, and running it once on real content teaches the function more than any strategy deck.
Instrument the measurement. Wire the course to emit the data the evaluation plan named, with xAPI statements (Experience API records of actor-verb-object learning events, stable at v1.0.3 since 2016) capturing behavior beyond the LMS, so that a Level 3 behavior measure can run at, say, ninety days post-launch. By day 60 the thread has shipped: a verified, accessible, measured build with a sign-off log, a conformance report, a validated item bank, and a behavior measure already running. That is the reference implementation the enterprise copies.
Days 61 to 90: Govern, Measure, and Set the Standard
The final thirty days turn one thread into a repeatable standard and connect it to the enterprise obligations that outlast the quarter. The thread proved the model works; now you make it the default and wire in the governance and literacy scaffolding.
Turn the thread into a written standard. Codify what the thread did into the one standard every AI-built course must clear: grounded from an approved source, provenance captured, SME sign-off logged, WCAG 2.2 AA conformance with a VPAT, bias-checked scenarios, validated items, and a measurement plan shipped with the course. The standard is the mechanism by which the reference implementation scales without breaking verification, because it makes the gates a property of every build rather than a heroic effort on one.
Connect to Article 4 and the AI management system. Position the literacy work so it survives whichever way the law settles. As it stands, the EU AI Act's Article 4 duty has been in application since 2 February 2025, with enforcement beginning 2 Aug 2026, and it binds deployers to ensure staff have a sufficient level of AI literacy scaled to role. The Digital Omnibus (Commission proposal 19 November 2025, endorsed by the European Parliament 16 June 2026, not yet published in the Official Journal) would soften the direct employer duty into an obligation to promote and encourage literacy, while the separate duty to train staff for human oversight of high-risk AI systems stays. The through-line survives either outcome: the workforce still has to be made AI-literate and the high-risk-oversight training obligation is not going away, so a role-scaled literacy program is defensible whichever text lands. Connect it to ISO/IEC 42001 (the AI management systems standard, December 2023) so L&D plugs into the organization's AI governance as an engine, not a passenger.
Measure and report the dual story. Close the ninety days by reporting both halves of the value, because leadership only trusts the function that tells both. The speed-and-scale half: the build-time reduction the thread demonstrated. The rigor half: the sign-off log proving zero unverified regulated claims, the conformance report, the validated item bank, and the behavior measure now running. That dual story, speed plus a verified fact plus a valid assessment plus an accessible experience plus evidence it changed behavior, is what unlocks the multi-year investment, because it is the story a CEO, a CFO, a CHRO, and a regulator all accept at once.
The 90-Day Plan in One Table
Here is the whole start as a single map. Read the human-owned gate column down the page: the accountability is present in every phase, never deferred to the end.
| Window | The work | The artifact produced | The human-owned gate |
|---|---|---|---|
| Days 1 to 30 | Write the bright-line rules; pick the high-value tractable thread; stand up and verify the source of truth | The four rules, the chosen use case, a verified source corpus with versions confirmed | The four bright-line rules are shared commitments with compliance and accessibility |
| Days 31 to 60 | Draft grounded with provenance; design measurement in; run every gate on real content; instrument xAPI | A verified, accessible, measured build; sign-off log; VPAT; validated item bank; behavior measure running | SME sign-off logged, accessibility conformance confirmed, items validated, scenarios bias-checked |
| Days 61 to 90 | Codify the standard; connect Article 4 and ISO 42001; report the dual story | The one written standard; the role-scaled literacy program design; the dual-value report | The standard makes the gates a property of every future build, not a one-time effort |
Notice what the plan is not. It is not a list of tools to buy, and it is not a promise to rebuild the catalog by Friday. Every row produces an artifact a regulator, an auditor, or a CFO can hold, and every row keeps a human at the gate. That is the whole discipline of the program, compressed into a first quarter: capture the speed, but never let a build reach a learner without a verified fact, a valid assessment, an accessible experience, and a human who owns the decision.
A Before and After: Two First Quarters
Two heads of learning start the same job on the same Monday with the same mandate and the same 2 Aug 2026 date on the wall.
Before (the ocean-boiler). The first spends ninety days launching everything at once: a writing assistant for two teams, an avatar-video pilot, a grounded chatbot experiment, an item-generation trial, and a vendor evaluation for an AI-native LXP. On day 90 the board deck has nineteen pilots and impressive activity. Then the CFO asks the operating-model question and the CHRO asks for the Article 4 evidence, and the answers are thin: no pilot ran the full gated pipeline, none produced a sign-off log or a conformance report, and none has a behavior measure, because measurement was going to come later. The function is busy and undefensible. When the enforcement date arrives, it has activity and no proof, which is the exact position the whole program exists to prevent, now scaled to an enterprise.
After (the thread-builder). The second spends ninety days driving one regulated safety refresh end to end. Days 1 to 30: the four rules are written and shared, the refresh is chosen because its source exists and its behavior is measurable, and the SOP corpus is verified. Days 31 to 60: the module is drafted grounded with provenance captured, the SME sign-off runs as a logged gate, the nine-language video clears accessibility per language with a VPAT, the items are validated, and the Level 3 behavior measure is instrumented and running. Days 61 to 90: the thread becomes the written standard, the literacy program is designed to survive either legal outcome and connected to ISO 42001, and the dual-value report shows build time cut and every gate cleared. On day 90 this head of learning cannot claim the catalog is rebuilt, but can claim something far more valuable: here is one complete build a regulator, an auditor, and a CFO all accept, here is the standard that makes the next hundred builds look the same, and here is the literacy program that is defensible whichever way the law settles. That is what unlocks the multi-year investment, and it is the difference between activity and a transformation with a spine.
Same mandate, same date, same tools. One function has nineteen experiments and no proof. The other has one thread, one standard, and a defensible start. The thread-builder did less and transformed more, because a single defensible thread is worth more than nineteen undefensible pilots, and the enterprise copies a proof, not an activity report.
Where the Whole Program Lands
This is the final lesson of the program, so it is worth saying plainly what the whole arc was for. You began by learning to read an AI module skeptically and to see the four jobs hiding inside the word AI. You learned to draft grounded, to validate an assessment item, to build media accessible by construction, and to keep a SME sign-off log. You learned to design end-to-end pipelines, to own an Article 4 literacy program, and to run an enterprise operating model. Every level added a capability, and every capability pointed at the same center. The center is a single rule, and it does not change no matter how good the tooling gets or how large the enterprise grows.
AI assists, the human verifies, the human owns the decision, and "the AI wrote it" is never a defense to a compliance officer, an accessibility auditor, or a CFO. That is the iron rule, and everything you have learned is a way of building a world in which it holds at scale. Verify-by-design is how you make verification fast enough to survive. Measure-by-default is how you prove the work mattered. The 90-day plan is how you start. The governance standard is how it lasts. The literacy program is how the organization meets its duty. But under all of it is the same sentence, and the value of the AI-literate learning professional, in a market where producing a course is nearly free, is precisely the ownership of the decisions the machine will never own.
So begin. Pick the thread this quarter. Write the four rules on day one, ground the work, run the gates, instrument the measure, codify the standard, and report the dual story. Do not wait for the perfect tool or the settled regulation, because the tooling will keep improving and the law will keep moving, and neither changes the work. The work is to capture the speed and own the accountability, on one thread, then a hundred, then a function, then an enterprise. That is the transformation. It starts on a Monday, with one verified build, and a human standing at every gate.
Key Takeaways
- Ninety days is not enough to transform an enterprise, but it is exactly enough to build one verified, measured, governed thread the rest of the organization can copy, and the proof that the operating model is real before the 2 Aug 2026 enforcement date.
- The two expensive failures are boiling the ocean (nineteen half-finished pilots that add up to nothing) and writing strategy while shipping nothing; the right frame is narrow and deep, one complete defensible thread.
- Days 1 to 30: write the four bright-line rules as shared commitments with compliance and accessibility, pick a high-value tractable thread on impact-over-risk logic, and stand up a verified source of truth with versions confirmed.
- Days 31 to 60: draft grounded with provenance captured at generation, design the Level 2 and Level 3 measures in, run every gate on real content, and instrument xAPI, producing a sign-off log, a VPAT, a validated item bank, and a running behavior measure.
- Days 61 to 90: codify the thread into the one written standard every AI-built course must clear, connect the literacy work to Article 4 and ISO/IEC 42001 so it survives either legal outcome, and report the dual story of speed and rigor.
- The literacy program is built to survive whichever way the law settles: the Digital Omnibus may soften the direct employer duty to promote literacy, but the high-risk-oversight training duty stays and the workforce still has to be made AI-literate.
- In the worked example, the thread-builder did less and transformed more than the ocean-boiler, because a single defensible thread that a regulator, an auditor, and a CFO all accept is worth more than nineteen undefensible pilots.
- The whole program lands on one rule that never changes with the tooling or the scale: AI assists, the human verifies, the human owns the decision, and "the AI wrote it" is never a defense. Begin the thread this quarter, with one verified build and a human at every gate.
Skill.re