DataGrail的动态

DataGrail转发了

查看Daniel Barber的档案

Co-founder & CEO @ DataGrail | Transforming how brands manage data privacy

10 AI law requirements are already being enforced across the U.S. The surprising part is the unreported enforcement actions in 2024 in TX, CA and CO: At the California Lawyers Association Annual Privacy Summit, regulators shared the top AI compliance themes they’re enforcing. ??/ ???? ?????????????????? Companies must document all AI products and features, including inputs, outputs, and third-party data sources. ??/ ???????????? Pre-use and training data notices are required before deploying AI models. ??/ ?????????? ???????????????????????? AI systems must undergo bias audits, with some requiring third-party validation. ??/ ?????????????? Affirmative consent is required for sensitive data processing, including parental consent for minors. ??/ ??????-?????? ???????????? Users must have the ability to opt out of AI-based profiling and automated employment decisions. ??/ ???????????????????? ???????? Restrictions on data retention, purpose limitation, and duty of care to prevent misuse. ??/ ???????? ?????????????????????? Companies must assess potential harm, differentiating between "significant" and "consequential" AI decisions. ??/ ???? ???????? ???????????? A mechanism to shut down AI in cases of catastrophic harm is becoming a requirement. ??/ ???????????????????? ?????????????????? AI governance reports must be submitted to regulators or made public on company websites. ????/ ?????????????????? & ???????????????????????????? Clear AI governance responsibilities across developers, deployers, and service providers. Regulators in California, Colorado, and Texas all reported 50+ enforcement actions in 2024—many weren’t publicly disclosed. AI governance is no longer optional. Who’s responsible in your org—Legal, Privacy, or Security? #AIGovernance #Privacy #DataGovernance

  • 该图片无替代文字
W Mark Warren MBA

VP Employee Benefits @ USI Insurance | Driving Employee Well-being

5 天前

Daniel Barber Thank you for sharing. One thing not codified but, IMO, REQUIRED is an AI Policy in your Employee Handbook. I just attended a Cybersecurity summit and several companies didn't have this in their 2025 Handbook.

回复
Scott M.

Small Business and Startup Attorney | Fractional Counsel | Risk Management | Technology and Law | Fintechs | Privacy, Cybersecurity and AI | CIPP/US | US Army Veteran

5 天前

As more states enact their own AI requirements, since I doubt the feds will enact one any time soon, I'd expect that list to expand and become much more prescriptive over time. And companies' risk profiles in that space will increase proportionally. Just my .02.

回复
Megan Niedermeyer

Operator | Chief Legal Officer | Board Advisor

5 天前

This is a great roundup Daniel Barber ??

查看更多评论

要查看或添加评论,请登录