Companies are at increased risk of violating Europe’s tough privacy laws because boards have little awareness of the different types of AI or their inherent risks. While many organizations are more familiar with predictive and conversational AI tools, such as chatbots that carry little or no discernible risk, they have not grasped that generative AI—and especially agentic AI—are different animals.
ICO
GDPR 10 years on: Data compliance now front of mind
Europe’s landmark privacy legislation, GDPR, was officially adopted ten years ago and has been in force since May 2018. It has forced organizations to change the way they think about personal information and has put privacy risk firmly on the board’s agenda, especially since the sanctions available under the regime are potentially ruinous
ICO lists five steps to help companies protect themselves from AI cyber threats
Companies have long prioritized cybersecurity as a key risk to their operations, but AI’s ability to increase the number, speed, severity, and types of attacks has prompted the U.K.’s regulator to set out five practical steps that organizations can take to strengthen their resilience against AI-powered threats and cyberattacks.
U.K. set to make ‘senior managers’ more accountable for corporate crime
The risk of criminal liability is set to increase for companies doing business in the United Kingdom after new legislation takes effect in June.
Lloyds IT glitch: Key lessons for compliance
IT outages seem to be increasingly prevalent in the financial services sector, despite a firmer focus on technical resilience by regulators both in the United Kingdom (U.K.) and the European Union (EU). A recent tech glitch that hit a major U.K. bank should compel compliance teams in the sector to review their IT security and incident reporting at the very least, say experts.


