β‘ Workday is in federal court over its AI hiring tools.
A federal court has allowed key AI hiring discrimination claims to move forward, and has held that a technology vendor performing delegated hiring functions can potentially be treated as the employer's agent.
The employer cannot call it a vendor problem. The vendor cannot say it only sells software.
π Here is what should concern every enterprise.
That system almost certainly passed reviews. Security can review the controls. Legal can assess liability. Risk can sign off. Privacy, audit and the business can each reach a defensible conclusion.
But those individual reviews do not automatically answer the enterprise question:
Have the risks that actually matter been reduced enough for this AI system to proceed?
Different functions seeing different risks is not a governance failure. That disagreement is healthy.
The failure is when there is no mechanism for bringing those risk views, the evidence, and the residual exposure together into one defensible decision.
An AI system can pass every review and still not have a risk-based approval decision.
If your organization is wrestling with how to make that decision in practice, I would like to hear from you.
I write about this in De-Risking AI Adoption, publishing September 15. Sign up for my newsletter and you will hear first when it is available, along with the thinking behind it. Link in the comments.
#AIGovernance #AIRisk #AICybersecurity
Brought to you by Sourcee
We find journo requests from across the web and deliver them directly to your inbox.