AI Data Protection Policy
Controls and guidance for protecting personal, confidential, and regulated data when teams interact with AI systems.
Purpose
Establish responsibilities and technical/operational controls for handling sensitive data with AI tools.
Key Controls
- Data classification and mapping
- Automated redaction before external AI
- Logging and audit trails
- Access and approval workflows for high-risk prompts