As we head into the new year, organizations face escalating governance, security, and regulatory compliance challenges, especially as AI adoption accelerates. To help businesses navigate these complexities and prepare for 2025, Henry Umney, Managing Director of GRC Strategy at Mitratech—a leading global compliance technology provider used by 30% of the Fortune 500 and over 500,000 users in over 160 countries—offers actionable insights and strategies.
Here are some of Henry’s key recommendations to ensure success in the year ahead:
Inventory & Risk Ranking: Start the year by building a comprehensive inventory of AI models and assigning risk rankings based on business impact or regulatory requirements like the EU AI Act. Use frameworks like the NIST AI RMF to benchmark and close gaps in your governance approach.
Budgeting for AI Security: Make AI security a priority for your 2025 budget. Begin with visibility—inventorying assets, assessing vulnerabilities, and benchmarking processes to ensure resources are effectively allocated.
Penetration Testing & Vulnerability Assessments: These steps are no longer optional for 2025. Testing critical AI processes can uncover risks early, guiding remediation efforts and budget planning to ensure continuity.
Continuous Governance: AI governance isn’t static. Allocate resources for ongoing monitoring, advanced training, and governance enhancements to stay ahead of evolving threats and compliance requirements.
With AI playing a more prominent role in business strategies, Henry’s expertise provides a clear roadmap for navigating this increasingly complex landscape.