QuestionQ99

AI Risk Management

A retail organization deploys an AI-driven recommendation system that uses customers’ purchase history. Which of the following is the BEST method for the organization to protect privacy and comply with regulatory standards?

Explanation

An AI privacy governance committee establishes accountable, ongoing oversight of customer-data practices, privacy controls, and regulatory obligations across the AI system lifecycle. Maintaining a requirements register supports this work, but governance is what drives implementation, monitoring, and accountability. NIST’s AI Risk Management Framework treats governance as a continuous, cross-cutting function and includes managing legal and regulatory requirements involving AI.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!