Remove legal privacy-policy
article thumbnail

CISOs are not just the keepers of our data – they must be its custodians

CIO

Changes to social expectations surrounding privacy have led to individuals wanting transparency and security from the entities that collect and process our data. Often, compliance frameworks delineate the legal and ethical boundaries governing organizations’ management of this sensitive data.

Data 293
article thumbnail

What is GRC? The rising importance of governance, risk, and compliance

CIO

It sets the tone and the strategy; it defines the policies and the procedures and what the expectations are,” explains Lisa McKee, director of governance, risk, compliance, and privacy at American Security and Privacy, as well as a member of the Emerging Trends Working Group with the governance association ISACA.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Trending Sources

article thumbnail

6 best practices to develop a corporate use policy for generative AI

CIO

Here are ways to get a better grasp of what these systems are capable of, and utilize them to construct an effective corporate use policy for your organization. With this in mind, here are six best practices to develop a corporate use policy for generative AI. For example, will this cover all forms of AI or just generative AI?

article thumbnail

The complex patchwork of US AI regulation has already arrived

CIO

This year, lawmakers in the state are considering Senate Bill 2 , which would require organizations deploying AI for consequential “high-risk” decisions to develop risk management policies. These laws often emphasize the ethical use and transparency of AI systems, especially concerning data privacy,” he says.

article thumbnail

Social media giants urged to tackle data-scraping privacy risks

TechCrunch

A joint statement signed by regulators at a dozen international privacy watchdogs, including the U.K.’s ’s ICO, Canada’s OPC and Hong Kong’s OPCPD, has urged mainstream social media platforms to protect users’ public posts from scraping — warning they face a legal responsibility to do so in most markets.

Media 220
article thumbnail

Implementing Digital Sovereignty in the Journey to Cloud

CIO

Digital sovereignty starts with data sovereignty, which forms the legal basis for organisations to ensure regulatory compliance. In Europe, organisations are driven by the need for continuous compliance, regulations, and legal obligations. In META, organisations are driven by the introduction of internal/corporate policies.

Cloud 245
article thumbnail

20 issues shaping generative AI strategies today

CIO

1 question now is to allow or not allow,” says Mir Kashifuddin, data risk and privacy leader with the professional services firm PwC US. Acceptable use policies Carmichael says executives have another big question in front of them when it comes to tools like ChatGPT. What should I be mindful of?’