Pittsburgh, PA
TEQ Hub
(by Kristen Petrina)
Artificial Intelligence (AI) is advancing at unprecedented speeds. AI relies on vast amounts of datasets for processing and model training, creating the challenge of balancing the benefits of AI, while protecting data privacy. As a result of improper data processing and usage, organizations are facing harsh penalties including AI usage prohibition, algorithm disgorgement, and multibillion dollar fines. When considering how to introduce AI into any organization, one of the first questions to consider is, “How can AI be utilized to drive innovation without violating privacy and misusing collected data?”
AI governance analysis should be under a privacy lens, as personal data is at the core of many opportunities that come with AI development. Privacy risks may result in societal and ethical impacts on individuals which speaks to the heart of responsible AI usage. Incorporating responsible AI practices is user specific to each organization and it is possible to protect privacy and drive innovation. In order to achieve both goals, organizations should consider data protection preventative measures before implementing AI into its processes.
- Data privacy should be addressed at the onset of AI implementation. Organizations should conduct risk assessments and consider data enablement through AI from the beginning before it becomes an issue. Generative AI in particular is self-learning, the more data fed into the model, the harder it will be to unwind or remove data if improperly used.
- AI and data privacy governance teams must work together from the beginning to address any risks that may arise. Organizations may consider forming an ethical AI committee engaging diversified team members to reduce potential bias in the development and design.
- Contemplate data inputs by asking questions such as what the existing and potential future data sources may be, what data will be collected, what are in the datasets, how to categorize the types of data, will the data modeling receive personal or sensitive data, should those things be included.