AI Data Protection Policy

Controls and guidance for protecting personal, confidential, and regulated data when teams interact with AI systems.

Purpose

Establish responsibilities and technical/operational controls for handling sensitive data with AI tools.

Key Controls

  • Data classification and mapping
  • Automated redaction before external AI
  • Logging and audit trails
  • Access and approval workflows for high-risk prompts
See related Acceptable Use policy Download template