PAC views the European Union Artificial Intelligence (EU AI) Act, required to be implemented and enforced by 2027, as a pivotal development in AI governance, introducing a risk-based regulatory framework that strikes a balance between innovation, accountability, and security. The Act categorises AI capabilities by potential harm, imposing stricter obligations on high-risk capabilities such as generative and agentic AI. It expands cybersecurity requirements to include algorithmic integrity, data provenance, and decision explainability, mandating secure, ethical, and transparent AI operations.
Compliance requires a comprehensive organisational response that integrates governance, operational processes, and cultural change. PAC considers that organisations must adopt secure development practices, maintain traceable documentation, and embed continuous risk management across the AI lifecycle. Collaboration between cybersecurity, data science, and compliance teams is essential to ensure human oversight and verifiable AI outputs. Accountability also extends to third-party suppliers, necessitating enhanced due diligence and monitoring.
PAC highlights that beyond regulatory alignment, the Act offers strategic advantages because organisations that embed its principles can build trust, improve AI reliability, and mitigate reputational and operational risks. Compliance promotes effective data governance and cross-functional collaboration, thereby supporting innovation and growth. Ultimately, a cybersecurity-first approach to AI enables scalable, responsible deployment, aligning ethical governance with strategic objectives and enhancing competitiveness in an AI-driven landscape.
Recommended advisory: PAC Leadership Session – Cybersecurity Compliance
SHARE :
For this report, we have identified 45 IT services providers that are active in the German market for digital sustainability & ESG.
Event Date : February 05, 2024
This document provides market volumes, growth rates and forecasts for the Business Application Software (BAS)-related Consulting & Systems ...
Event Date : December 19, 2025
PAC's Deal Tracker for Japan covers Software and IT services deals.
Event Date : March 05, 2026
This document provides market volumes, growth rates and forecasts for the Business Application Software (BAS)-related Consulting & Systems ...
Event Date : February 07, 2025
This document provides market volumes, growth rates and forecasts for the Generative AI market in Norway for the 2022-2028 period.
Event Date : October 14, 2024
Digital Customer Engagement - Accenture - Vendor Profile - Worldwide
Vendor Profile April 09, 2026
Cloud Computing - DXC Technology - Vendor Profile - Worldwide
Vendor Profile April 09, 2026
Logo Yazilim - Figures - Turkey - FY 31-Dec-2025
Datamart April 09, 2026
Netaş - Figures - Turkey – FY 31-Dec-2025
Datamart April 09, 2026
Logo Yazilim - Vendor Profile - Turkey
Vendor Profile April 09, 2026
Atos: Cause for Optimism, Despite the Headlines
Blog Post February 05, 2024
Blog Post April 09, 2026
Maximizing AI ROI Through Smarter Model Usage
Blog Post April 08, 2026
Fujitsu advances its AI strategy and industry focus with a governance led approach
Blog Post April 02, 2026
Blog Post March 27, 2026
NTT DATA’s Horizons Innovation Summit 2026 Explores AI Opportunities
Blog Post March 27, 2026