AI-Powered IT Operations
This site is a deterministic simulation of AI-enabled workflows. It is not connected to a live LLM, ServiceNow, Jira, Intune, a former employer or any production environment. All users, incidents, devices and metrics are synthetic.
The aim is to remove operational friction without adding another tool to the workflow.
The project is built around practical outcomes. These include fewer avoidable tickets, faster engineer preparation, better handovers, earlier problem detection, proactive endpoint review and less administrative work during major incidents.
Why it exists
To demonstrate practical AI use in IT Operations and EUC. The aim is to reduce repetitive work, improve preparation and surface useful operational signals rather than add a generic chatbot.
What production would add
Live platform integrations, identity and RBAC enforcement, audited tool permissions, approved enterprise knowledge, telemetry connectors, human approval workflows and production security controls.
End-User AI Self-Service
Deskside / EUC Engineer Copilot
| Ticket | User / Site | Issue | SLA | Status |
|---|
Deskside Visit Preparation
Operations Handover Assistant
| Type | Reference | Current state |
|---|---|---|
| P1 | INC004391 | Intermittent iManage access affecting Hong Kong users. The application team is investigating. |
| SLA | INC004377 | Executive laptop issue. 42 minutes remaining. |
| Vendor | INC004355 | Printer fault. MPS vendor due tomorrow at 09.00. |
| Change | CHG001281 | Microsoft 365 client update from 22.00 to 23.30 SGT. |
| Change | CHG001287 | Tokyo switch firmware from 23.00 to 00.30 JST. |
| Trend | VPN | Ticket volume 42% above 30-day baseline. |
Ticket Trend & Problem Detection
VPN / Remote Access incidents increased 71%
84 tickets this month vs 49 prior month. 67% of the affected synthetic endpoints share the same recent Windows update window. This is correlation and not proof of root cause.
84 ticketsCorrelation detectedTeams microphone KB may be incomplete
31 incidents reference βmicrophone not detected.β Of 18 interactions using KB002, 6 still escalated. A repeated successful analyst step is to confirm the Windows default input device after docking or undocking. This step is not explicit in the current article.
KB reviewPattern from resolutionsPrinter tickets concentrated at one floor
22 printer incidents came from Singapore Level 18, compared with 4 to 7 on comparable floors. Recommend checking shared-device health and vendor maintenance history.
Site concentrationIT validates the evidence and decides what happens next. No problem record, change, KB edit or vendor action is created automatically.
EUC Device Health & Refresh Advisor
| Device | Site | Age | Tickets / 90d | Battery | Risk |
|---|
Major Incident Assistant
How This Fits Into Existing ITSM
The AI service can run behind the scenes. End users, engineers and managers should normally interact with it through their existing ServiceNow, Jira or workplace experience.
End User
Use the organisation's existing self-service portal. Approved knowledge, guided troubleshooting and escalation appear in the same channel employees already know.
ServiceNow employee or virtual agent experience, or the Jira Service Management portal and virtual service agent.
Deskside and EUC Engineer
Show the diagnostic brief in the current incident or request. The engineer should not copy the ticket number into a second website or switch between separate tools.
ServiceNow workspace component or Jira Forge issue panel using current ticket context.
IT Operations Manager
Surface handover, trend and device insights in the operational workspace or dashboard. Links should open the relevant records in the source system.
Existing ITSM workspace, dashboard or reporting experience with approved integrations.
| Capability | Portfolio POC | Production implementation |
|---|---|---|
| End user support | Standalone simulation | Embedded in the existing employee support portal |
| Engineer copilot | Standalone simulation | Panel or component inside the current incident view |
| Ticket context | Synthetic incidents | Current ITSM record retrieved within the user's permissions |
| Endpoint context | Synthetic device data | Approved Intune, CMDB or endpoint data exposed through controlled integration |
| Knowledge | Synthetic KB articles | Approved enterprise knowledge available to that role |
| Write back | Simulated only | Explicit permitted actions such as adding a draft summary or work note after human review |
| Authentication | None because all data is synthetic | Enterprise SSO, RBAC and platform permissions |
- Use UI Builder or workspace components to present assistance in the agent experience.
- Read only the incident and related data permitted for the user or service identity.
- Use approved APIs and ACL controls for permitted record access and write back.
- Keep final ownership, privileged actions and sensitive decisions with authorised staff.
- Use a Forge issue context for a compact collapsible brief or an issue panel when richer content is needed.
- Use Jira APIs only for the issue data and actions allowed by the configured scopes and user permissions.
- Offer controlled actions such as opening approved knowledge or adding a reviewed summary.
- Keep high impact decisions and privileged actions with authorised staff.
Credentials, API tokens and enterprise secrets belong in a secure server-side integration layer. They must never be embedded in this public site's JavaScript.
Enterprise AI Control Model
| β Retrieve approved KB | Only content authorised for the current role. |
| β Summarise permitted data | Tickets, endpoint signals, alerts, changes and approved notes. |
| β Guide safe self-service | Standard-user actions that require no elevation. |
| β Classify and enrich | Categories, summaries, attempted steps and suggested routing. |
| β Draft operational output | Handover, problem draft, refresh recommendation, MI update. |
| β Escalate uncertainty | Low-confidence or sensitive cases go to people. |
| β Expand its own permissions | Prompt text cannot override RBAC or policy. |
| β Retrieve secrets | No passwords, recovery keys, tokens or admin credentials. |
| β Browse unrelated records | Role, user and case boundaries remain enforced. |
| β Execute privileged change | No access, policy, endpoint, firewall or backend changes. |
| β Invent unsupported fixes | No KB match or an ambiguous match leads to human hand-off. |
| β Make final high-impact decisions | Problem creation, device refresh, major incident comms and remediation require approval. |
| Scenario | Assistant action | Human boundary |
|---|---|---|
| End user has Teams microphone issue | β Guide approved KB steps | Escalate if unresolved. |
| User asks for BitLocker recovery key | β Create controlled hand-off | Authorised support performs identity verification and recovery process. |
| Recurring VPN incidents detected | β Draft problem candidate | Problem Manager validates evidence and decides whether to open problem record. |
| Device scores as refresh candidate | β Recommend review | EUC/asset owner approves refresh based on policy, budget and business need. |
| Major incident update ready | β Draft stakeholder message | Incident Manager validates and sends. |
How This Maps to Enterprise Platforms
| Prototype capability | Typical ServiceNow mapping | Typical Jira / Atlassian mapping | Typical Microsoft / EUC mapping |
|---|---|---|---|
| Engineer in-ticket assistance | Workspace or UI Builder component | Forge issue context or issue panel | Endpoint context supplied through approved integrations |
| End-user conversational self-service | Virtual Agent / Now Assist | Virtual Service Agent / Rovo | Copilot / Teams front-end as applicable |
| Approved knowledge grounding | Knowledge Management | JSM + Confluence knowledge base | SharePoint / approved enterprise knowledge |
| Ticket enrichment and routing | ITSM incident workflows / AI features | JSM request/issue workflows + Rovo | Graph / Power Platform integration where appropriate |
| Endpoint context | CMDB / Discovery / integrations | Assets / integrations | Intune / Defender / endpoint analytics |
| Operations handover / incident drafting | ITSM + Major Incident Management | JSM incident management | Teams / Copilot / monitoring integrations |
| Role and data boundaries | ACLs, roles, AI governance controls | Permissions, app/agent configuration | Entra ID, RBAC, Intune scope controls |
- Understanding of AI-enabled ITSM and EUC workflow design, including where assistance should sit inside existing tools.
- Ability to define useful data inputs and operational outputs.
- Awareness of access controls, auditability and human decision boundaries.
- Focus on measurable service outcomes rather than chatbot novelty.
- It is not an official ServiceNow, Jira or Microsoft product.
- It is not connected to a production environment.
- It contains no real employer or customer data.
- The current version does not call a live LLM. Responses and outputs are deterministic simulations of the intended operating model.