• news-banner

    Expert Insights

Top 5 tips for businesses to mitigate legal and regulatory risks associated with AI

Artificial intelligence is playing a pivotal role in today’s rapidly evolving business landscape. The development of generative AI, in particular, holds promise in revolutionising business operations. However, the potential for transformation is not without significant challenges.

In our AI Business Guide, we dissect the complex legal and regulatory risks that accompany the advancements in AI technology.

But what can businesses do to start mitigating those risks? Here are our top 5 tips:

1. Prepare and implement an AI acceptable use policy (AI AUP)

Your AI AUP should reflect what your organisation is, and is not, comfortable with when employees use AI tools in their roles. It should explain the guardrails in place to ensure that any use of AI is used responsibly, ethically and legally. But it’s also important that the policy is flexible so that it can reflect the changing regulatory landscape, evolving business needs and risk appetite. This could be done by establishing a list of prohibited and pre-approved types of AI in a “live list” that is updated periodically.

2. Embed an AI Risk Assessment Process (AI RAP)

An AI RAP should build on your organisations’ existing risk management processes to:

  • help identify how and where regulatory, legal and ethical risks arise in the AI life cycle
  • identify possible controls to help reduce risk
  • identify when a data protection impact assessment may be required
  • assess the residual risk after appropriate controls have been implemented
  • ensure that AI risks are regularly reviewed

3. Ensure that the new and specific risks associated with AI are reflected in contracts

There are a plethora of contractual considerations that need to be taken into account when procuring or supplying an AI system, in particular regarding explainability, unlawful discrimination, data protection (especially important in relation to training data) and cybersecurity. Another very important consideration is how to address changes that will be required as a result of the EU AI Act (which has not yet been finalised and so still a moving feast) and any other applicable changes in law.

4. Ensure your Supplier Code of Conduct reflects the positions in your AI AUP

Accountability and governance are key components of the UK’s non-statutory, principles-based approach to AI. Therefore, ensuring that your supply chain uses AI in a responsible manner will help demonstrate good AI governance.

5. Increase AI literacy and training amongst your staff

Educate your employees on how AI works as well as how to identify AI risks and understand their personal responsibilities under the AI AUP. Whilst this will inevitably result in more queries for you from the business, it should help reduce overall risk and enable you to understand which areas of your organisations are most impacted by the rise in AI.

If you wish to delve deeper into the legal implications of AI, we invite you to explore our AI Business Guide. This resource is a collaborative effort, bringing together insights from experts across various practice areas within our firm to offer a holistic view of the intricate legal challenges posed by AI.

If you have any questions or concerns regarding AI, please get in touch.

Our thinking

  • IBA Annual Conference 2025

    Simon Ridpath

    Events

  • Triple Play "Bid Fever": UK Tech's ability to scale and go global

    Mark Howard

    Quick Reads

  • The Future of AI and Copyright Regulation in the UK: The Data (Use and Access) Bill finally gets Lords approval in the UK

    Rebecca Steer

    Quick Reads

  • HM Land Registry's Digital Drive - Delays Persist but perhaps there is light at the end of the tunnel?

    Maisy-Jane Cook

    Quick Reads

  • Key aspects of the FCA’s PISCES Sourcebook

    Jodie Dennis

    Insights

  • Mike Barrington and Mary Perham write for Tax Adviser on what the proposed changes to business property relief mean for investors and entrepreneurs, and for their businesses

    Mike Barrington

    In the Press

  • Bloomberg quotes Catrin Harrison on the recent exodus of non-doms from the UK

    Catrin Harrison

    In the Press

  • Trusts and Matrimonial Disputes in England

    Tom Watts

    Insights

  • The Financial Times and Daily Mail quote Emma Humphreys on the impact of the UK Government's Spending Review on housebuilding targets

    Emma Humphreys

    In the Press

  • Consultation on Private International Law and Digital Assets Law Commission Proposes Landmark Reforms

    Racheal Muldoon

    Insights

  • Navigating International M&A Disputes: Insights and Strategies for 2025

    Stephen Burns

    Quick Reads

  • Bridging Differences: The Role of Mediation in Resolving Cross-Border Trust Disputes

    Tamasin Perkins

    Insights

  • Rachel Warren writes for Solicitors Journal on the new failure prevent fraud offence

    Rachel Warren

    In the Press

  • MoneyWeek quotes Mary Perham on whether business property relief can be claimed on a furnished holiday let

    Mary Perham

    In the Press

  • Anti-greenwashing in the UK, EU and the US: the outlook for 2025 and best practice guidance

    Caroline Greenwell

    Insights

  • Sowing doubt: slashing green farm funding is a risk we can't afford

    Maddie Dunn

    Quick Reads

  • Can a contractor adjudicate to recover outstanding retention monies from the employer’s assignee?

    Kate Knox

    Insights

  • HS2 - still no sign of a train leaving the station

    Richard Flenley

    Quick Reads

  • Tamasin Perkins writes for IFA Magazine on what financial advisers need to know about The Law Commission’s recent report: Modernising Wills Law

    Tamasin Perkins

    In the Press

  • London International Disputes Week: Trusts hurt: the fraud lawyer, the trust, and the avenues of attack (and defence)

    Tamasin Perkins

    Events

Back to top