Artificial Intelligence (AI) Policy
Acme Limited
Information Security
TitleArtificial Intelligence (AI) Policy
Document Ref NoIS 014/01
Owner/AuthorGroup Director of Legal & Company Secretary
Agreed byYour name
Authorised byBoard of Directors
Date of IssueXX August 2026
Review DateXX August 2028
Revision History
Version no.Reason for ChangeDate
01Initial Policy createdXX August 2025
Responsible Staff
All Staff
Related Documents
- IS001 Information Security (HR62)
- SOP089 Quality Risk Management
- SOP100 Software Verification and Validation
Contents
- Introduction
- Purpose
- Scope
- AI Usage Principles
- Acceptable Use
- Policy Review and Update Process
- Glossary
1. Introduction
This document outlines the company’s policy regarding the adoption, usage and management of Artificial Intelligence (AI) technologies. This policy aims to ensure that AI is implemented responsibly, securely and in alignment with company standards and regulatory requirements.
AI refers to computer systems capable of performing tasks that typically require human intelligence...
2. Purpose
- Define the approved uses of AI within the company.
- Ensure the security, privacy and ethical application of AI technologies.
- Mitigate potential risks associated with AI deployment.
- Ensure compliance with applicable legal and regulatory frameworks.
3. Scope
This policy applies to:
- All employees, contractors and third-party vendors using AI tools or systems within the company’s operations.
- All AI systems, applications, and models developed, procured or used within the company.
4. AI Usage Principles
4.1 Ethical Use
Employees must be aware of potential discrimination and bias...
4.2 Data Privacy and Security
AI systems must comply with the company’s Data Protection Policy...
4.3 Transparency and Explainability
As information produced by AI might not be factually correct...
4.4 Risk Assessment
All AI implementations must undergo a pre-deployment risk assessment...
5. Acceptable Use
5.1 Acceptable Uses of AI
- Only approved AI platforms can be used.
- AI must only be used to enhance productivity...
5.2 Prohibited Uses
- Using AI to automate decisions that negatively impact individuals without human oversight.
- Deploying AI systems trained on unauthorised or unverified datasets.
- Using AI for malicious purposes...
5.3 Non-Compliance
Failure to comply with this policy may result in disciplinary action.
6. Policy Review and Update Process
Any incident will trigger a communication to all staff to remind them of the policy...
7. Glossary of Technical AI Terms
TermDefinition
Artificial Intelligence (AI)Computer systems capable of performing tasks...
Machine LearningA subset of AI that enables systems to learn from data...
DatasetA structured collection of data used to train or test AI models...
Natural Language Processing (NLP)A field of AI focused on understanding human language...
RoboticsThe design and use of robots capable of autonomous tasks...
Advanced AnalyticsApplication of techniques powered by AI to extract insights...
Pattern RecognitionThe process by which AI identifies and classifies data patterns...
Data-Driven Decision MakingBasing decisions on AI-facilitated data analysis...
If you have any questions, please do not hesitate in contacting a member of the ISMT for assistance.