Skip to content

California AI Executive Order N-9-26: What It Means for AI Governance

California is accelerating a move from AI safety claims to independently verified evidence. On September 18, 2026, Governor Gavin Newsom signed Executive Order N-9-26, directing state agencies to accelerate the development of California’s independent AI oversight framework and to evaluate potential additions to its AI safety laws. The proposals include onsite independent verification at large … Continued

California AI Audit Laws: What SB 813 and AB 1405 Mean for AI Governance

California’s new AI audit laws do not require every organization using AI to obtain an independent audit. They do, however, establish a more formal accountability framework for the auditors that assess AI systems for compliance with state law. Signed on September 9, 2026, SB 813 requires California to develop standards for designating independent verification organizations … Continued

Astra for Law: Five AI Governance Lessons for Privacy and Legal Teams

OpenAI’s Astra for Law offers privacy and legal leaders a useful preview of specialized AI in high-stakes work. The central lesson is not simply that a legal model can find better sources. It is that stronger AI performance must be paired with controlled data access, verifiable authority, defined human review, and a record of how … Continued

From Data Breaches to AI Harm: Why Incident Management Needs to Expand

For years, privacy, security, and compliance teams could usually recognize an “incident” by looking for familiar signals: a data breach, a ransomware attack, an unauthorized disclosure, or another event that triggered an established response process. AI is changing that operating assumption. As organizations embed AI into more business processes, incidents are no longer limited to … Continued

Custom Compliance Workflows Help Teams Turn Risk Criteria Into Defensible Action

Compliance decisions are rarely one-size-fits-all. A cybersecurity incident, privacy event, AI-related issue, vendor event, or enterprise risk scenario may require fast action, but the right outcome depends on the organization’s own policies, thresholds, obligations, and decision criteria. That is where custom compliance workflows matter. RadarFirst custom compliance workflows help organizations translate internal policies, assessment criteria, … Continued

AI Incident Management Turns AI Risk Into Operational Trust

NVIDIA CEO Jensen Huang recently pointed to cybersecurity as one of AI’s next major use cases, reflecting a broader reality: as AI becomes more powerful, organizations will need better ways to manage the risks it creates. But AI risk is not a reason to stop moving. It is a reason to build stronger operational readiness. … Continued

ChatGPT and EHR Integration: What Healthcare Privacy Teams Need to Address

OpenAI’s Epic EHR integration may help healthcare teams access patient context faster. It also makes disciplined data governance, HIPAA controls, and defensible incident response more important before organizations scale AI-enabled workflows. OpenAI’s new Epic EHR integration gives healthcare organizations a faster way to bring authorized patient context into ChatGPT for Healthcare. Clinicians may be able … Continued