She Said Privacy/He Said Security

Where Strategy Meets Reality in AI Governance


Listen Later

Andrew Clearwater is a Partner at Dentons’ Privacy and Cybersecurity Team and a recognized authority in privacy and AI governance. Formerly a founding leader at OneTrust, he oversaw privacy and AI initiatives, contributed to key data protection standards, and holds over 20 patents. Andrew advises businesses on responsible tech implementation, helping navigate global regulations in AI, data privacy, and cybersecurity. A frequent speaker, he offers insight into emerging compliance challenges and ethical technology use.

In this episode…

Many companies are diving into AI without first putting governance in place. They often move forward without defined goals, leadership, or alignment across privacy, security, and legal teams. This leads to confusion about how AI is being used, what risks it creates, and how to manage those risks. Without coordination and structure, programs lose momentum, transactions are delayed, and expectations become harder to meet. So how can companies build a responsible AI governance program?

Building effective AI governance programs starts with knowing what’s in use, why it’s in use, what data AI tools and systems collect, the risk it creates, and how to manage it. Standards like ISO 42001 and the NIST AI Risk Management Framework help companies guide this process. ISO 42001 offers the benefit of certification and supports cross-functional consistency, while NIST may be better suited for organizations already using it in related areas. Both frameworks help companies define the scope of AI use cases, understand the risks, and inform policies before jumping into controls. Conducting data inventories and utilizing existing risk management processes are also essential in identifying shadow AI introduced by employees or third-party vendors.

In this episode of She Said Privacy/He Said Security, Jodi and Justin Daniels speak with Andrew Clearwater, Partner at Dentons, about how companies can build responsible AI governance programs. Andrew explains how standards and legal frameworks support consistent AI governance implementation and how to encourage alignment between privacy, security, legal, and ethics teams. He also outlines the importance of monitoring shadow AI across third-party vendors and practical steps companies can take to effectively structure their AI governance programs.

...more
View all episodesView all episodes
Download on the App Store

She Said Privacy/He Said SecurityBy Jodi and Justin Daniels

  • 4.8
  • 4.8
  • 4.8
  • 4.8
  • 4.8

4.8

12 ratings


More shows like She Said Privacy/He Said Security

View all
This American Life by This American Life

This American Life

91,112 Listeners

Criminal by Vox Media Podcast Network

Criminal

37,454 Listeners

Hidden Brain by Hidden Brain, Shankar Vedantam

Hidden Brain

43,660 Listeners

Pivot by New York Magazine

Pivot

9,525 Listeners

The Privacy Advisor Podcast by Jedidiah Bracy, IAPP Editorial Director

The Privacy Advisor Podcast

65 Listeners

Christopher Kimball’s Milk Street Radio by Milk Street Radio

Christopher Kimball’s Milk Street Radio

2,982 Listeners

The Daily by The New York Times

The Daily

112,362 Listeners

Up First from NPR by NPR

Up First from NPR

56,459 Listeners

Serious Privacy by Dr. K Royal, Paul Breitbarth & Ralph O'Brien

Serious Privacy

22 Listeners

Privacy Please by Cameron Ivey

Privacy Please

29 Listeners

Hard Fork by The New York Times

Hard Fork

5,476 Listeners

Masters of Privacy by Sergio Maldonado

Masters of Privacy

6 Listeners

"The Data Diva" Talks Privacy Podcast by Debbie Reynolds

"The Data Diva" Talks Privacy Podcast

16 Listeners

We Can Do Hard Things by Treat Media and Glennon Doyle

We Can Do Hard Things

41,489 Listeners

The Mel Robbins Podcast by Mel Robbins

The Mel Robbins Podcast

20,192 Listeners