The Shifting Privacy Left Podcast

S2E34: "Embedding Privacy by Design & Threat Modeling for AI" with Isabel Barberá (Rhite & PLOT4ai)


Listen Later

This week’s guest is Isabel Barberá, Co-founder, AI Advisor, and Privacy Engineer at Rhite , a consulting firm specializing in responsible and trustworthy AI and privacy engineering, and creator of The Privacy Library Of Threats 4 Artificial Intelligence Framework and card game. In our conversation, we discuss: Isabel’s work with privacy-by-design, privacy engineering, privacy threat modeling, and building trustworthy AI; and info about Rhite’s forthcoming Self-Assessment Open-Source framework for AI maturity, SARAI®. As we wrap up the episode, Isabel shares details about PLOT4ai, her AI threat modeling framework and card game created based on a library of threats for artificial intelligence. 

Topics Covered:

  • How Isabel became interested in privacy engineering, data protection, privacy by design, threat modeling, and trustworthy AI
  • How companies are thinking (or not) about incorporating privacy-by-design strategies & tactics and privacy engineering approaches within their orgs today
  • What steps can be taken so companies start investing in privacy engineering approaches; and whether AI has become a driver for such approaches.
  • Background on Isabel’s company, Rhite, and its mission to build responsible solutions for society and its individuals using a technical mindset. 
  • What “Responsible & Trustworthy AI” means to Isabel 
  • The 5 core values that make up the acronym, R-H-I-T-E, and why they’re important for designing and building products & services.
  • Isabel's advice for organizations as they approach AI risk assessments, analysis, & remediation 
  • The steps orgs can take in order to  build responsible AI products & services
  • What Isabel hopes to accomplish through Rhite's new framework: SARAI® (for AI maturity), an open source AI Self-Assessment Tool and Framework, and an extension the Privacy Library Of Threats 4 Artificial Intelligence (PLOT4ai) Framework (i.e., a library of AI risks)
  • What motivated Isabel to focus on threat modeling for privacy
  • How PLOT4ai builds on LINDDUN (which focuses on software development) and extends threat modeling to the AI lifecycle stages: Design, Input, Modeling, & Output
  • How Isabel’s experience with the LINDDUN Go card game inspired her to develop of a PLOT4ai card game to make it more accessible to teams.
  • Isabel calls for collaborators to contribute to the PLOT4ai open source database of AI threats as the community grows.

Resources Mentioned:

  • Privacy Library Of Threats 4 Artificial Intelligence (PLOT4ai)
  • PLOT4ai's Github Threat Repository
  • "Threat Modeling Generative AI Systems with PLOT4ai” 
  •  Self-Assessment for Responsible AI (SARAI®)
  • LINDDUN Privacy Threat Model Framework
  • "S2E19: Privacy Threat Modeling - Mitigating Privacy Threats in Software with Kim Wuyts (KU Leuven)”
  • "Data Privacy: a runbook for engineers"

Guest Info:

Send us a text



Copyright © 2022 - 2024 Principled LLC. All rights reserved.

...more
View all episodesView all episodes
Download on the App Store

The Shifting Privacy Left PodcastBy Debra J. Farber (Shifting Privacy Left)

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

17 ratings