✨ AI Summary
This role is responsible for establishing and maintaining the enterprise AI Governance Framework, defining policies, standards, and controls for AI usage, including Agentic AI, Generative AI, Machine Learning, Advanced Analytics, and Intelligent Automation. The Officer will chair the AI Governance Committee, define AI approval and risk assessment processes, and ensure AI initiatives align with regulatory requirements, ethical AI principles, security policies, and business objectives. The role also encompasses developing and operating the enterprise data governance framework, establishing data ownership, defining enterprise standards for data quality, metadata management, master data management, data lineage, data retention, and data classification. Additionally, the Officer will act as Data Protection Officer (where required), lead compliance with UAE PDPL, DIFC Data Protection Law, GDPR, and other regional privacy regulations, and define and maintain enterprise privacy frameworks. Key responsibilities include conducting Data Protection Impact Assessments (DPIAs), Privacy Risk Assessments, and establishing Privacy by Design practices. The role also involves defining model governance standards, establishing model risk management processes, classifying AI systems by risk, and developing controls for model validation, performance monitoring, drift detection, explainability, and human-in-the-loop oversight. The Officer will monitor evolving AI, privacy, and data regulations globally, translate regulatory requirements into governance controls, and coordinate regulatory responses. Furthermore, the role requires defining governance requirements for AI vendors and data processors, reviewing contracts, and assessing external AI platforms for risk. Finally, the Officer will develop enterprise-wide training programs on Responsible AI, data governance, data protection, and information handling, fostering a culture of responsible innovation.
Enterprise AI GovernanceEstablish an
Requirements
Education
Bachelor's Degree in Computer Science, Information Systems, Data Science, Cybersecurity, Law, or related field.
Experience
10+ years of experience in data governance, privacy, risk, information management, or technology governance.
Description
Enterprise AI GovernanceEstablish and maintain the enterprise AI Governance Framework.Define policies, standards, controls, and operating procedures for AI usage.Create governance models for:Agentic AIGenerative AIMachine LearningAdvanced AnalyticsIntelligent AutomationChair the AI Governance Committee.Define AI approval and risk assessment processes.Ensure AI initiatives align with:Regulatory requirementsEthical AI principlesSecurity policiesBusiness objectivesImplement AI lifecycle governance across development, deployment, monitoring, and retirement.Develop controls for:ExplainabilityFairnessBias managementHuman oversightModel monitoringPrompt governanceAuditability2. Data Governance & Information ManagementDevelop and operate the enterprise data governance framework.Establish data ownership and stewardship models.Define enterprise standards for:Data qualityMetadata managementMaster data managementData lineageData retentionData classificationLead enterprise data cataloguing and inventory programmes.Implement data governance tooling and controls.Develop governance measures for structured and unstructured data.Drive data quality improvement initiatives across business functions.Establish governance for enterprise data platforms, analytics environments, GenAI platforms, and data lakes.3. Privacy & Data ProtectionAct as Data Protection Officer (where required by regulation).Lead compliance with:UAE PDPLDIFC Data Protection LawGDPROther applicable regional privacy regulationsDefine and maintain enterprise privacy frameworks.Conduct and oversee:Data Protection Impact Assessments (DPIAs)Privacy Risk AssessmentsThird-party Privacy ReviewsEstablish Privacy by Design practices across business and technology initiatives.Manage:Data Subject Rights RequestsConsent management processesCross-border transfer assessmentsBreach response governance4. AI Risk & Model GovernanceDefine model governance standards.Establish model risk management processes.Classify AI systems based on risk and criticality.Develop controls for:Model validationPerformance monitoringDrift detectionExplainabilityHuman-in-the-loop oversightMaintain an enterprise AI model inventory.Conduct periodic AI risk assessments.Ensure regulatory readiness for emerging AI regulations.5. Regulatory Compliance & AuditMonitor evolving AI, privacy, and data regulations globally.Translate regulatory requirements into governance controls.Coordinate regulatory responses and examinations.Support Internal Audit, Risk, Compliance, and External Audit activities.Maintain evidence repositories for governance and compliance activities.Lead remediation of governance and privacy findings.6. Vendor, Third-Party & Cloud GovernanceDefine governance requirements for AI vendors and data processors.Review:SaaS contractsAI solution providersData sharing arrangementsThird-party processing agreementsAssess external AI platforms for privacy, security, compliance, and ethical risk.Establish governance controls for third-party LLMs and foundation model providers.7. Governance Awareness & CultureDevelop enterprise-wide training programmes on:Responsible AIData governanceData protectionInformation handlingBuild a culture of responsible innovation.Conduct executive awareness sessions and governance workshops.Develop reporting dashboards and governance KPIs.