Risk services
The GDPR and the AI Act: the upcoming challenge of financial institutions
February 2025 marks the beginning of the regulatory shift towards the implementation of the EU Artificial Intelligence Act, or the so-called AI Act. By August 2026, the full act will enter into force. The stake is high for financial institutions – 7 out of 8 categories of high-risk AI systems identified by the AI Act involve the processing of personal data. In other words, in more than 87% of the cases involving a high-risk AI system, compliance with GDPR would be necessary. Financial institutions, by regularly dealing with personal and sensitive client data, must take the first steps