Using Artificial Intelligence to Support Compliance with the General Data Protection Regulation
John KC Kingston

TL;DR
This paper explores how artificial intelligence can assist organizations in complying with GDPR by supporting checklists, risk assessments, profiling regulations, and breach reporting, emphasizing rule-based methods for explanation requirements.
Contribution
It analyzes four key GDPR compliance areas where AI, especially rule-based systems, can provide support, highlighting the potential and limitations of AI approaches.
Findings
AI can support GDPR compliance activities
Rule-based approaches are preferable for explanation requirements
AI technologies can assist in risk assessment and breach reporting
Abstract
The General Data Protection Regulation (GDPR) is a European Union regulation that will replace the existing Data Protection Directive on 25 May 2018. The most significant change is a huge increase in the maximum fine that can be levied for breaches of the regulation. Yet fewer than half of UK companies are fully aware of GDPR - and a number of those who were preparing for it stopped doing so when the Brexit vote was announced. A last-minute rush to become compliant is therefore expected, and numerous companies are starting to offer advice, checklists and consultancy on how to comply with GDPR. In such an environment, artificial intelligence technologies ought to be able to assist by providing best advice; asking all and only the relevant questions; monitoring activities; and carrying out assessments. The paper considers four areas of GDPR compliance where rule based technologies and/or…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
