What Companies Should Do Now with the New EU AI Act
Carlos Landazabal Angeli
Global Compliance & AI, Data Privacy Leader | Tech Law | Chief Compliance Officer | Legal Expert in AI & Privacy GDPR, UK GDPR, CCPA, HIPAA, AI Act Risk Governance | Speaker & Advisor | Professor Tech Law & Compliance
The introduction of the EU AI Act is a significant regulatory shift for companies using artificial intelligence (AI). This legislation aims to ensure that AI technologies are safe, transparent, and ethical. To comply, organizations must begin building or adapting their AI governance structures now. Here’s a step-by-step guide on what companies should do to prepare.
1. Source the Right People and Build a Multidisciplinary Team
The first step is to appoint the right people to oversee AI compliance. This responsibility doesn’t belong to one department—it requires collaboration across multiple functions. AI governance must be supervised by a multidisciplinary team, including:
It’s also essential to secure C-suite buy-in. Leadership needs to recognize the strategic importance of AI governance, ensuring enough resources and collaboration between departments to align on compliance.
2. Assess the Risk Associated with Your AI Systems
Companies must assess the risks associated with their AI systems. The EU AI Act categorizes AI technologies based on risk levels:
The first question to ask during this assessment is: What type of data is involved? If personal data is involved, both GDPR and the AI Act will apply.
3. Create Policies and Procedures Around Ethics and Transparency
Once you have assessed the risk, the next step is to create policies that align with ethical standards and transparency. These policies should reflect principles like fairness, safety, and privacy protection. Ensure that the company has clear procedures for ethical AI usage.
Training is crucial—train your entire organization on responsible AI usage. Every team member, from engineers to executives, should understand the ethical implications and compliance obligations around AI.
领英推荐
4. Determine Your Role in the AI Life Cycle
To comply with the EU AI Act, companies must understand their role in the AI life cycle. Are you an:
Determining your role will clarify both your obligations under the AI Act and your responsibilities under GDPR. For instance, an AI provider may have different compliance obligations compared to an operator or importer.
5. Copyright and Trade Secrets: Protect and Respect Intellectual Property
?
Lastly would like to comment what areas should be reviewed when building your AI Governance:
·?????? Policies and Ethical Guidelines: Develop policies that reflect your organization’s values, ethical principles, and guidelines for responsible AI usage. These should include provisions around fairness, accountability, and human oversight.
?
En la vía.
5 个月Excellent article Carlos. Thank you for keeping us informed about the scope and applications of AI.