Categories
Compliance and AI

Compliance and AI: Jay Rosen on Emerging AI Threats in Corporate Compliance and Cybersecurity

What is the role of Artificial Intelligence in compliance? What about Machine Learning? Are you using ChatGPT?

These questions are but three of the many questions we will explore in this exciting new podcast series, Compliance and AI. Hosted by Tom Fox, the award-winning Voice of Compliance, in this podcast Jay Rosen joins me to discuss AI and fraud risk management.

Jay Rosen delves into the escalating influence of AI in corporate fraud, with historical and modern examples. A recent case from Hong Kong highlights how deepfake technology can be used to deceive employees. The speaker outlines three main AI threats: real-time deepfakes, AI-enabled evasion tactics, and manipulation of AI models.

It outlines strategies for corporations to mitigate these risks, including training on deepfake detection, ensuring secure data access, and implementing dual authorization processes. The goal is to prepare compliance departments for the AI-driven era of corporate crime.

Key Highlights:

  • Introduction to AI and Corporate Fraud
  • The Rise of AI in Cybersecurity and Fraud
  • Emerging AI Risks and Compliance Challenges
  • Key Areas of AI-Enabled Fraud
  • Deep Fake Technology and Corporate Impersonation
  • Mitigating AI Risks in Corporate Environments
  • Strategies for Handling Deepfakes and Model Manipulation

Resources:

Jay Rosen on LinkedIn

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
Uncovering Hidden Risks

Ep 15 – Secure Access in the Era of AI

Jef Kazimer, Microsoft’s Principal Product Manager, and Bailey Bercik, Senior Product Manager, join Erica Toelle and guest host Lisa Huang-North on this week’s episode of Uncovering Hidden Risks. Today’s episode will focus on security in the era of cloud and AI, with insights from Microsoft Security’s product team. It will encompass AI-driven security measures, data protection, identity management, and compliance in the cloud while providing valuable insights for professionals navigating the evolving landscape of cloud security and AI’s influence on it. Together, they discuss the importance of basic security hygiene, the implications of sophisticated AI-based attacks, and the necessity of adopting a defense-in-depth strategy to protect against emerging threats.

In This Episode You Will Learn:

  • The use of generative AI in attack vectors like phishing and social engineering
  • Principles of zero trust and how they apply to AI systems
  • Challenges and opportunities for securing identity and access in 2024

Some Questions We Ask:

  • How can organizations leverage Microsoft’s Zero Trust framework to protect their data?
  • What are the best practices when implementing passwordless authentication?
  • Are the principles of Zero Trust still relevant to this new wave of threats?

Resources:

View Lisa Huang-North on LinkedIn

View Jef Kazimer on LinkedIn

View Bailey Bercik on LinkedIn 

View Erica Toelle on LinkedIn     

Connect with the Compliance Podcast Network at:

LinkedIn: https://www.linkedin.com/company/compliance-podcast-network/
Facebook: https://www.facebook.com/compliancepodcastnetwork/
YouTube: https://www.youtube.com/@CompliancePodcastNetwork
Twitter: https://twitter.com/tfoxlaw
Instagram: https://www.instagram.com/voiceofcompliance/
Website: https://compliancepodcastnetwork.net/

Categories
TechLaw10

TechLaw10: Eric Sinrod & Jonathan Armstrong on the Technology Law aspects of AI

In this edition of TechLaw10, Jonathan Armstrong, Director—L-EV8, talks to Professor/Attorney Eric Sinrod from his home in California. They look at the technology law aspects of AI.

Jonathan talks about:

  • The conflicts between AI and GDPR.
  • The investigation and regulatory action against Clearview AI.
  • Italian DPA’s activity against the use of AI with food delivery apps.

Eric looks at:

  • The impact of US privacy law.
  • Issues presented by AI with
    – contracts
    – torts – who should bear liability when something goes wrong?
    – discrimination & bias

Discover L-EV8 as a new training business with Jonathan Armstrong

You can listen to earlier TechLaw10 audio podcasts with Eric and Jonathan at www.techlaw10.com.

You can find out more about Eric here at  Duane Morris LLP and more about Jonathan here at L-EV8 

Connect with the Compliance Podcast Network at:

LinkedIn: https://www.linkedin.com/company/compliance-podcast-network/

Facebook: https://www.facebook.com/compliancepodcastnetwork/

YouTube: https://www.youtube.com/@CompliancePodcastNetwork

Twitter: https://twitter.com/tfoxlaw

Instagram: https://www.instagram.com/voiceofcompliance/

Website: https://compliancepodcastnetwork.net/

Categories
Compliance and AI

Compliance and AI: Karen Moore on The American Privacy Rights Act and AI

What is the role of Artificial Intelligence in compliance? What about Machine Learning? Are you using ChatGPT? These are but three of the many questions we will explore in this exciting new podcast series, Compliance and AI. Hosted by Tom Fox, the award-winning Voice of Compliance, this podcast, Karen Moore joins me to discuss the proposed American Privacy Rights Act (APRA) and its intersection with artificial intelligence.

Moore has expressed cautious optimism towards the act, paying particular attention to how the Act impacts artificial intelligence and automated decision-making processes. Drawing on the act’s provisions, Moore emphasizes the importance of the preemption clause, which indicates a shift towards federal regulations superseding state laws. She also underscores the potential challenges and complexities that lie ahead for companies, especially large data holders or high-impact social media companies, in adhering to the APRA’s requirements, such as conducting design evaluations, transparency obligations, and data minimization. This perspective is shaped by her extensive background in the field and her intricate understanding of the Act’s impact on data processing and AI algorithms.

Key Highlights:

  • Introduction to the American Privacy Rights Act Discussion
  • Exploring the Preemption Clause and AI Implications
  • Automated Decision-Making and Its Complexities
  • The Impact on High-Impact Social Media and Large Data Holders
  • Data Minimization Requirements and AI Challenges

Resources:

Karen Moore on LinkedIn

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
Compliance Tip of the Day

Compliance Tip of the Day: Data – Driven Solutions for Fraud Risk

Welcome to “Compliance Tip of the Day,” the podcast where we bring you daily insights and practical advice on navigating the ever-evolving landscape of compliance and regulatory requirements.

Whether you’re a seasoned compliance professional or just starting your journey, our aim is to provide you with bite-sized, actionable tips to help you stay on top of your compliance game.

Join us as we explore the latest industry trends, share best practices, and demystify complex compliance issues to keep your organization on the right side of the law.

Tune in daily for your dose of compliance wisdom, and let’s make compliance a little less daunting, one tip at a time.

In today’s episode, we discuss how the use of AI and machine learning has revolutionized data analysis and investigation in fraud risk prevention.

Ethico ROI Calculator and a free White Paper on the ROI of Compliance, click here.

Categories
Everything Compliance

Everything Compliance: Episode 134, The AI Edition

Welcome to the only roundtable podcast in compliance as we celebrate our second century of shows.

In this episode, we have a quintet of commentators; Jonathan Armstrong, Jonathan Marks, Matt Kelly, Jay Rosen, and special guest Karen Moore, all hosted by Tom Fox.

1. Matt Kelly discusses the role of the Board of Directors in AI. He rants about Kristi Noem killing her dog and that APRA should be ARPA.

2. Host Tom Fox shouts out to the revival of the Rock Opera Tommy on Broadway and to Pete Townshend

3. Jonathan Marks reviews AI and internal controls. He shouts out to Maureen Stanko and the So Much to Give Inclusive Cafe for starting a restaurant that utilizes people with autism as employees.

4. Jay Rosen considers compliance issues for AI. He shouts out to his favorite time of the sports year, with the NBA and NHL playoffs, MLB in full swing and the start of the WNBA.

5. Karen Moore considers the AI implications from the American Privacy Rights Act. She shouts out to Travis Clayton for being the first Rugby Union player to be signed to the NFL and to the Buffalo Bills for doing so.

6. Jonathan Armstrong reviews the EU AI Act. He shouts out to Kate Middleton for the grace and dignity which she has shown throughout her cancer diagnosis.

The members of the Everything Compliance are:

Jay Rosen– Jay can be reached at Jay.r.rosen@gmail.com

Karen Woody – Is one of the top academic experts on the SEC. Woody can be reached at kwoody@wlu.edu

Matt Kelly – Founder and CEO of Radical Compliance. Kelly can be reached at mkelly@radicalcompliance.com

Jonathan Armstrong – is our UK colleague, and is an experienced data privacy/data protection lawyer in London. He can be reached at windyridgehouse@gmail.com.

Jonathan Marks can be reached at jtmarks@gmail.com.

Special Guest Karen Moore can be reached at Kmoore51@fordham.edu

The host, producer, and ranter (and sometimes panelist) of Everything Compliance is Tom Fox, the Voice of Compliance. He can be reached at tfox@tfoxlaw.com. Everything Compliance is a part of the Compliance Podcast Network.

Categories
Great Women in Compliance

Great Women in Compliance: Jess Nall on Defending Tech Innovators

Welcome to the Great Women in Compliance Podcast. In this episode, Hemma visits with Jess Nall, a partner at Baker McKenzie.

Jess is a leader of Baker McKenzie’s AI and Cyber practice and
leads the Firm’s government defense practice in the US heart of technological innovation, the San Francisco Bay Area. For more than twenty years, Jess has defended technology innovators in high-profile federal and state government enforcement and investigations involving AI, cyber-security, algorithmic price-fixing, economic espionage, and trade sanctions.

With two decades of tech law experience under her belt and playing a pivotal role in various global technology enforcement cases, Jess has a grounded understanding of the complexities surrounding AI compliance and enforcement. She highlights the rapidly evolving global regulation and the increasing pressure it places on compliance professionals.

Jess advocates for a proactive approach to comprehension and readiness for the enforcement and governance aspects of AI, encouraging clients to have robust good faith narratives that illustrate their compliance efforts. This perspective is formed not only from her substantial professional experience but also her deep understanding of the potential risks and malpractices related to the use of AI technology.

Key Highlights:

  • AI Regulations: Impact on Businesses and Compliance
  • Navigating Risks in AI Compliance and Enforcement
  • Deceptive AI Marketing Practices in Industry
  • Fostering Collaboration for AI Compliance Success
  • Enhancing Regulatory Compliance with AI Analytics
  • Enhancing Legal Access with AI Translation

Resources:
Join the Great Women in Compliance community on LinkedIn here.

AI Strategy: The Whole Brain Approach Will Win in forbes.com

Categories
Compliance Into the Weeds

Compliance into the Weeds: What Are Boards Doing About AI (Hint: Not Much)

The award winning, Compliance into the Weeds is the only weekly podcast which takes a deep dive into a compliance related topic, literally going into the weeds to more fully explore a subject.

Looking for some hard-hitting insights on compliance? Look no further than Compliance into the Weeds! In this episode, Tom and Matt look into corporate reports on their Boards’ oversight of AI.

As the world ventures deeper into the age of artificial intelligence (AI), the issue of corporate governance over AI is emerging as a crucial point of discussion. Tech giants such as Google are facing demands for more board-level attention to AI risk management due to concerns about the lack of transparency and oversight.

Tom highlights this lack of detailed consideration of AI at the board level, raising doubts about whether boards are suitably prepared for AI’s rapid development and potential enforcement risks. His concerns are rooted in limited mentions of AI in proxy statements of S&P 500 companies, suggesting current practices might not be sufficient for the future.

Meanwhile, Matt emphasizes the need for boards to start considering staffing, expertise, and risk management related to AI without necessarily forming dedicated AI committees at present. Kelly’s concerns stem from the lack of detail in proxy statements about what boards are currently doing with AI, especially in tech-heavy companies like Google, indicating the need for potential formation of dedicated committees or sub-specializations in the future.

 Key Highlights:

  • AI Risk Management: Tech vs. Non-Tech Perspectives
  • Enhancing Corporate Governance Through AI Oversight
  • Technology Risk Oversight in Evolving Companies
  • AI Oversight for Corporate Boards: Future Risks

Resources:

Matt on Radical Compliance

 Tom 

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
Innovation in Compliance

Innovation in Compliance – Matt Kunkel and Nick Kathmann on Dynamic GRC Systems with AI-driven Controls

Innovation comes in many forms, and compliance professionals must be ready for and embrace it. Today, I visited with Matt Kunkel, CEO of LogicGate, and Nick Kathmann, CISO at LogicGate, to consider how a dynamic GRC can help drive efficiency, compliance, and profitability.

With a background in business analysis and self-taught coding, Kunkel identified a need for a more comprehensive and user-friendly approach to governance, risk, and compliance (GRC) solutions, leading to the creation of Logic Gate. The platform was designed to meet businesses’ evolving needs without requiring constant developer intervention, utilizing a flexible data model and advanced graph database technology for superior efficiency.

Kathmann, with over 20 years of experience in security and compliance, stresses the importance of industry expertise in delivering effective solutions, focusing on ensuring the platform meets the highest security standards and adapts to changing business requirements seamlessly. Kunkel and Kathmann’s perspectives highlight the crucial role of innovative technology in simplifying GRC processes and addressing the complex regulatory, risk, and compliance needs of organizations.

Key Highlights:

  • Adaptive Logic Gate Platform for GRC
  • Harnessing Data for Strategic Compliance Oversight
  • Real-time Risk Optimization for Business Growth
  • Cyber Risk Alignment Between CISO and CEO
  • Executive Level Engagement for Cybersecurity Strategy
  • Tailoring Risk Communication to Stakeholder Priorities
  • Dynamic GRC Systems with AI-driven Controls

Resources:

Matt Kunkel on LinkedIn 

Nick Kathmann on LinkedIn 

LogicGate

Tom Fox

Instagram

Facebook

YouTube

Twitter

LinkedIn

Categories
TechLaw10

TechLaw10: Eric Sinrod & Jonathan Armstrong on the Technology Law Aspects of AI

In this edition of TechLaw10, Jonathan Armstrong talks to Attorney and Professor Eric Sinrod from his home in California. They discuss the technology law aspects of AI.

  • Jonathan talks about some of the conflicts between AI and GDPR.
  • Jonathan talks about the investigation and regulatory action against Clearview AI
  • The Italian DPA’s activity against the use of AI with food delivery apps. Eric looks at the impact of US privacy law. He also looks at the issues presented by AI with contracts and torts—who should bear liability when something goes wrong? and discrimination & bias

You can listen to earlier TechLaw10 audio podcasts with Eric and Jonathan at www.techlaw10.com.

Connect with the Compliance Podcast Network at:

LinkedIn: https://www.linkedin.com/company/compliance-podcast-network/
Facebook: https://www.facebook.com/compliancepodcastnetwork/
YouTube: https://www.youtube.com/@CompliancePodcastNetwork
Twitter: https://twitter.com/tfoxlaw
Instagram: https://www.instagram.com/voiceofcompliance/
Website: https://compliancepodcastnetwork.net/