The National Cyber Security Centre has warned about the use of “shadow AI” by employees, citing a study in which nearly three quarters of respondents had reported using AI that was not approved by their employer.
It is vital that organisations have clear AI policies, setting out what systems are approved, the approved uses of those systems, and the types of data which can be used. As with any policy, it is also essential to provide training and an ongoing programme of awareness to ensure that employees understand the consequences of using non-approved AI, such as personal data breaches, increased risk of cyber attack and compromising company confidential information.
If you would like assistance creating or updating your AI policy, please contact the team by emailing hello@hellodpo.com