Continue reading on DataGuidance with:
Free Member
Limited ArticlesCreate an account to continue accessing select articles, resources, and guidance notes.
Already have an account? Log in
03 June 2024
Estonia: Information System Authority publishes guidance on risks and controls for AI and ML
On May 27, 2024, the Estonian Information System Authority, together with Cybernetica AS, published a guidance on risks and controls for artificial intelligence (AI) and machine learning (ML) systems.
The guidance analyses the legal aspects of AI and ML and the risks associated with AI technologies. Additionally, the guidance provides control measures companies can utilize to mitigate and decrease such risks stemming from the use of AI applications.
Examples of control measures provided include:
- information security organization controls (including defining tasks and obligations related to AI systems and communicating to all employees, establishing secure use guidelines);
- personnel controls (including instruction and training);
- compliance management controls;
- AI-specific controls (improvement of the quality and safety of AI systems and controls for technological attacks against AI systems); and
- controls for societal risks.