Epistemic Musings on Applied AI

Pragmatic AI in National Security, Intelligence & Enforcement.

Contuitus is a rare old Latin noun which means to have an attentive look, to gaze, to contemplate.

This website is just that, taking a contemplative and attentive look into Applied AI. These are pragmatic and epistemic musings born from a journey of continuous learning to explore the unknown. No shiny brochures, no sales pitch. Looking past the hyperbole and noise to the structure underneath, and how we can use it appropriately in Defence, National Security, Intelligence & Enforcement to achieve decision advantage, pragmatically.

Latest writing

Recent musings

Latest22 min read

Obsolete the Day You Sign It: Australia Needs a Continuous ATO, and It Already Has the Missing Piece

Australia has already written down continued authorisation. The Protective Security Policy Framework carries a section headed "Continued Authorisation" which states that authorisation to operate "is generally ongoing once the system is operational", with the system owner monitoring so that the risks of operating the system stay inside the entity's tolerances (Department of Home Affairs, 2026, s 13.3.1.1). The familiar complaint, that we still run annual certificates while the Americans moved on, does not survive the text.

AIContinuous AuthorisationSecurityGovernanceSovereign AI
Read article
10 min read1 like

Doing More With Less Is a Trap: Why Cheaper AI Will Not Save Government

Your agency's AI bill will keep climbing even as the price per token falls, because "do more with less" is the wrong promise and cheaper inference does not bank a saving. It buys more inference, more sprawl, and a bigger bill (Jevons, 1865). The assurance we wrap around it measures the wrong thing and then gets gamed until the dashboard is green and the risk is not managed (Strathern, 1997). And because every platform your agency already owns now ships its own model, government AI is fragmenting to mirror the shape of the org chart, one captive feature at a time (Conway, 1968). The public value never turns up, because none of this compresses the thing that actually matters: the time it takes to turn raw information into a decision a person can defend and a citizen can contest.

AIFinOpsSystems ThinkingGovernanceSovereign AI
17 min read2 likes

The Undeclared Dependency: Every Technical Supply Chain Has a Strait of Hormuz

AI cannot secure a supply chain that has never been written down: detection coverage has a ceiling set by what you have actually declared, and no model can flag an edge it was never shown. Australia's fuel stocks, your cloud builds, and the defence industrial base are all exposed through the same weakness, dependencies nobody wrote down, and the unglamorous act of declaring the graph and then verifying it continuously is the actual security control. The clever model you point at the problem comes a distant second.

Critical InfrastructureSupply ChainAINational SecurityArchitecture
11 min read1 like

Exempt by Design: The AI Governance Gap in the National Intelligence Community

It is fair to assume the agencies wielding AI on the most consequential decisions carry the tightest rules governing it; in Australia, for the national intelligence community, that assumption is exactly backwards. The mandatory framework for government AI, the Digital Transformation Agency's policy now at v2.0 with a mandatory use-case register, exempts the Defence portfolio and the national intelligence community (Digital Transformation Agency, 2025). The National AI Plan shelved the proposed mandatory high-risk guardrails and stood up an AI Safety Institute instead (Department of Industry, Science and Resources, 2025). What is left for the community is point-in-time authorisation under the Protective Security Policy Framework and an oversight office that has appointed a single Chief AI Officer (Inspector-General of Intelligence and Security, 2025).

AIGovernanceNational SecuritySovereign AIOversight