Digitala Vetenskapliga Arkivet

Change search
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf
Legal Challenges in AI Deployment: Leveraging Security Standards for Compliance in the EU Context
Stockholm University, Faculty of Social Sciences, Department of Computer and Systems Sciences.
2024 (English)Independent thesis Advanced level (degree of Master (Two Years)), 20 credits / 30 HE creditsStudent thesis
Abstract [en]

Artificial Intelligence (AI) is becoming increasingly more advanced, and its development, implementation, and use are rapidly increasing, as well as its significance to industries and society. However, AI also raises legal, ethical, and security concerns, e.g., the impact on human rights, privacy, bias, and cybersecurity of AI systems because of its increased importance. European Union have new upcoming regulations, such as the AI Act, and old ones for example the GDPR, that is highly relevant to secure use of AI systems. Since AI systems inherit cybersecurity risks from conventional computing, specific security standards can be leveraged to comply with regulations concerning AI systems, such as ISO 27000 series. There is currently little research on the applicability of ISO 27000 series on legal aspects of AI. Therefore, study will explore how the security standard ISO 270001 can address regulatory requirements, and legal and security challenges on AI systems and work as a facilitator. The study will conduct qualitative research with survey as the research strategy. The required data to answered to research questions was collected through 10 semi-structured interviews with experts in cybersecurity, ISO 27000 or compliance. The data was analyzed using thematic analysis and resulted in 3 main themes, named Security challenges with AI, ISO 27000 and AI and Legal challenges, and 8 sub-themes. The result and discussion showed that the identified security challenges can be connected to legal requirements, and further be mitigated through comprehensive work with ISO 27001. However, the standard does not promote to include AI in the standardization work. ISO 27000 series can work both to identify and mitigate risks associated with AI, and further work as a compliance facilitator.

Place, publisher, year, edition, pages
2024.
Keywords [en]
Artificial Intelligence, compliance, ISO 27000, GDPR, AI Act
National Category
Computer Sciences
Identifiers
URN: urn:nbn:se:su:diva-242760OAI: oai:DiVA.org:su-242760DiVA, id: diva2:1955692
Available from: 2025-04-30 Created: 2025-04-30

Open Access in DiVA

fulltext(535 kB)17 downloads
File information
File name FULLTEXT01.pdfFile size 535 kBChecksum SHA-512
8f8f4b18842dbbf796826ffe08a3a3c1635b0a746a8bfe42bcc72578025a445eda6efed7ea16fa2dc167c1b7cf0f965da890d81bc6f7e683f058dc5c84987b4e
Type fulltextMimetype application/pdf

Search in DiVA

By author/editor
Karlsfred, Mauro
By organisation
Department of Computer and Systems Sciences
Computer Sciences

Search outside of DiVA

GoogleGoogle Scholar
Total: 17 downloads
The number of downloads is the sum of all downloads of full texts. It may include eg previous versions that are now no longer available

urn-nbn

Altmetric score

urn-nbn
Total: 29 hits
CiteExportLink to record
Permanent link

Direct link
Cite
Citation style
  • apa
  • ieee
  • modern-language-association-8th-edition
  • vancouver
  • Other style
More styles
Language
  • de-DE
  • en-GB
  • en-US
  • fi-FI
  • nn-NO
  • nn-NB
  • sv-SE
  • Other locale
More languages
Output format
  • html
  • text
  • asciidoc
  • rtf