{"id":31373,"date":"2026-03-16T14:58:17","date_gmt":"2026-03-16T13:58:17","guid":{"rendered":"https:\/\/it.andersen.com\/?p=31373"},"modified":"2026-03-16T15:04:10","modified_gmt":"2026-03-16T14:04:10","slug":"the-impact-of-ai-on-corporate-governance","status":"publish","type":"post","link":"https:\/\/it.andersen.com\/en\/the-impact-of-ai-on-corporate-governance\/","title":{"rendered":"The impact of AI on corporate governance"},"content":{"rendered":"<p>In this edition of the <strong>Compliance &amp; Risk Management<\/strong> Newsletter, professionals from Andersen&#8217;s <strong>231\/Privacy<\/strong> Service Line have explored <strong>the impact of AI on corporate governance<\/strong>, highlighting the growing importance for companies to adopt appropriate technical and organisational measures to mitigate the risks associated with the use of AI, thereby improving their <strong>governance<\/strong> and <strong>resilience<\/strong>.<\/p>\n<h2>Corporate criminal liability in case of offences related to the use of AI-based systems<\/h2>\n<p><strong>Corporate liability<\/strong> may arise where the use of AI-based systems becomes an instrument for committing predicate offences: for example, cybercrimes (unauthorized access, unlawful data processing), market manipulation, or breaches of workplace health and safety regulations where improperly configured algorithms affect production processes.<\/p>\n<p>The adoption of automated solutions does not mitigate <strong>organizational fault<\/strong>; on the contrary, it requires stronger safeguards. Companies must be able to demonstrate that they have assessed <strong>AI-related risks<\/strong>, defined clear responsibilities within AI <strong>governance<\/strong>, and implemented <strong>controls<\/strong> over datasets, output quality, and the traceability of algorithmic decisions. In this context, the 231 Model should be updated by integrating: mapping of AI-driven processes, technical and legal validation protocols, and dedicated reporting flows to the Supervisory Body (OdV). <strong>Staff training<\/strong> on the responsible use of AI tools is equally crucial.<\/p>\n<h2>GDPR and AI ACT: an integrated approach to protect personal data<\/h2>\n<p>In the European digital landscape, the protection of personal data now requires an increasingly integrated approach. The interaction between the <strong>GDPR<\/strong> and the <strong>AI Act<\/strong> is crucial for the <strong>responsible<\/strong> <strong>and ethical<\/strong> development of artificial intelligence, as it aims to ensure that technology, in particular systems based on artificial intelligence (AI), is developed in a way that respects people&#8217;s fundamental rights. Integrated management of these two regulations therefore makes it possible to address the critical issues associated with automated systems: from the necessity of <strong>explainability of decisions<\/strong> to the prevention of bias, from proper impact assessment to the definition of roles and responsibilities among developers, suppliers and users.<\/p>\n<p>In operational terms, this means strengthening <strong>governance<\/strong> by carrying out specific <strong>risk assessments<\/strong>, defining clear and transparent internal <strong>procedures<\/strong> and <strong>training<\/strong> staff in data protection, cybersecurity and AI.<\/p>\n<h2>The classification of AI systems based on risk: high-risk AI systems.<\/h2>\n<p>The European regulation on artificial intelligence (<strong>AI Act<\/strong>) identifies high-risk AI systems in view of their potential impact on the health, safety and fundamental rights of individuals. These systems are not prohibited, but their placing on the market is subject to strict <strong>compliance requirements<\/strong>. High-risk AI systems include toys, lifts, radio equipment, pressure equipment, recreational craft equipment, cableway installations, medical devices, in vitro diagnostic medical devices, motor vehicles and aircraft, as well as systems intended to be used as safety components of critical digital infrastructure and installations for the supply of water, gas, heating and electricity. These systems must be designed and developed in such a way that they can be used under the constant <strong>supervision <\/strong>of natural persons. In addition, periodic controls are required to verify that they meet high standards of<strong> safety<\/strong>, in line with the objectives of the European digital strategy to make AI both innovative and reliable.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>In this edition of the Compliance &amp; Risk Management Newsletter, professionals from Andersen&#8217;s 231\/Privacy Service Line have explored the impact of AI on corporate governance, highlighting the growing importance for companies to adopt appropriate technical and organisational measures to mitigate the risks associated with the use of AI, thereby improving their governance and resilience. Corporate [&hellip;]<\/p>\n","protected":false},"author":146,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[50],"tags":[],"acf":[],"_links":{"self":[{"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/posts\/31373"}],"collection":[{"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/users\/146"}],"replies":[{"embeddable":true,"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/comments?post=31373"}],"version-history":[{"count":3,"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/posts\/31373\/revisions"}],"predecessor-version":[{"id":31376,"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/posts\/31373\/revisions\/31376"}],"wp:attachment":[{"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/media?parent=31373"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/categories?post=31373"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/it.andersen.com\/en\/wp-json\/wp\/v2\/tags?post=31373"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}