User Community Service Desk Downloads

AI Governance and Security

This article provides an overview of Ataccama’s approach to AI governance and security, highlighting our commitment to responsible AI usage, data protection, and regulatory compliance.

Our approach to responsible AI

At Ataccama, we recognize the importance of responsible AI governance and robust security practices. Our commitment ensures transparency, compliance, and ethical usage of AI technologies embedded within the Ataccama ONE Platform.

Our AI governance policies are guided by the NIST AI Risk Management Framework, underscoring our dedication to managing AI risks effectively and responsibly.

AI features in ONE

Ataccama’s AI capabilities enhance productivity across data governance, data quality, and master data management domains. Our offerings include:

  • Traditional machine learning: Deployed locally within your environments, these features assist with tasks like business term classification, anomaly detection, and master data matching.

  • Generative AI: Accessible via our embedded user interface, these capabilities include generating descriptions, SQL queries, rule expressions, and conversational assistance.

All AI features provide suggestions that are easy to delete and edit. It is the responsibility of AI users to review and validate the output of the AI.

Data use and privacy

Data minimization

Ataccama primarily utilizes metadata rather than raw data. Data access for Generative AI is minimal, optional, and controlled by your administrators.

No training on customer data

Customer data and metadata are never used for training shared generative AI models. Traditional machine learning (ML) models are trained locally within your environment for personalized and secure outcomes.

Security measures

Ataccama employs secure development practices, including encryption of data in transit and rigorous security assessments, penetration testing, and regular third-party audits to safeguard your information.

Compliance with privacy laws

We comply with applicable data protection regulations, including GDPR, and require all third-party AI service providers (such as Azure OpenAI) to uphold similar compliance standards.

AI governance principles

Our governance program emphasizes transparency, fairness, and reliability in AI operations. Key objectives include:

Performance and accuracy

Continuous model evaluation and improvement to maintain high accuracy.

Fairness and bias mitigation

Regular testing to identify and correct potential biases.

Explainability and transparency

Clear documentation and explanations provided for all AI-driven recommendations.

Security and privacy

Strict adherence to data security practices and customer data usage preferences.

Legal and regulatory compliance

Ongoing monitoring and alignment with AI-related laws and guidelines.

Intellectual property and ownership

Ownership of inputs and outputs

You retain ownership of your data and any AI-generated outputs derived from your metadata. Ataccama maintains intellectual property rights related to the AI logic, model architectures, and underlying technology.

Third-party AI providers

Customers acknowledge the licensing terms of third-party providers like Azure OpenAI. Ataccama ensures clarity regarding these terms to maintain transparency.

Customer responsibilities

You are expected to use AI responsibly, ethically, and lawfully, adhering to the following principles:

Lawful and ethical use

Compliance with all applicable laws and ethical standards.

Human oversight

Reviewing and validating critical or sensitive AI-generated outputs.

Data and privacy management

Appropriate classification and secure management of data inputs to AI systems.

Reporting and feedback

Prompt reporting of any identified issues such as biases, inaccuracies, or security concerns.

For best practices on using Generative AI features effectively, see Get Started with Generative AI.

Audit and compliance

Ataccama conducts biannual internal audits assessing compliance with governance policies, including:

  • Automated monitoring and manual reviews.

  • Regular evaluations of AI model performance, fairness, and security practices.

  • Clear documentation, reporting, and remediation procedures to address any identified issues.

Controls and administration

You retain full control over the usage of AI within your environments:

  • AI features can be individually turned on or off by your administrators.

  • Role-based access control ensures only qualified personnel can approve AI outputs.

  • Clear user interfaces facilitate management and oversight of AI capabilities.

Updates and changes

Ataccama continually enhances AI technologies to improve performance and compliance:

  • Material updates are communicated in advance, allowing you to review and provide feedback.

  • Policy changes align with evolving legal, technological, and customer requirements, with clear communication about updates and effective dates.

Contact information

For more information or assistance, reach out to your Customer Success Manager (CSM). Our team is ready to provide further guidance and support.

Was this page useful?