2026-03-26
Return to Briefing
Global Regulatory Frameworks for AI and Digital Resilience Solidify, Mandating Governance
Emerging trend with significant business impact in the 12-24 month horizon.
Access Primary Source
Global Regulatory Frameworks for AI and Digital Resilience Solidify, Mandating Governance**
**Key Finding:** Landmark regulations like the EU's AI Act and Digital Operational Resilience Act (DORA) are now entering force, establishing stringent, globally influential standards for AI governance and digital risk management. This transforms compliance from a mere hurdle into a strategic imperative, demanding significant investment in transparent, robust, and ethical technology frameworks.
**Detailed Analysis:** The formal adoption of the **EU AI Act by the Council of the EU (May 21, 2024)** and its entry into force marks a pivotal moment. It classifies many financial services AI applications (e.g., credit scoring, identity verification) as "high-risk," imposing strict requirements for data quality, human oversight, and transparency. Simultaneously, the **Digital Operational Resilience Act (DORA)**, with its finalized technical standards (Q1/Q2 2024) and upcoming Jan 2025 application date, mandates a comprehensive ICT risk management framework, covering AI systems and third-party providers. In the U.S., regulators like the **SEC and FINRA** are intensifying scrutiny, not with new laws, but by applying existing rules against "AI washing" and demanding robust supervision. SEC Chair Gary Gensler has repeatedly warned against misleading AI claims, while FINRA emphasizes that rules on communication and fair dealing apply to AI. This global regulatory convergence necessitates that firms embed AI governance and digital resilience into their core strategy, increasing compliance costs but also building customer trust and mitigating significant legal and reputational risk.
* **Source:** Council of the EU, "Artificial intelligence act: Council adopts landmark law," May 21, 2024. [https://www.consilium.europa.eu/en/press/press-releases/2024/05/21/artificial-intelligence-act-council-adopts-landmark-law/](https://www.consilium.europa.eu/en/press/press-releases/2024/05/21/artificial-intelligence-act-council-adopts-landmark-law/)
* **Source:** EBA, "Digital Operational Resilience Act (DORA)," 2024. [https://www.eba.europa.eu/financial-innovation-and-cybersecurity/digital-operational-resilience-act-dora](https://www.eba.europa.eu/financial-innovation-and-cybersecurity/digital-operational-resilience-act-dora)
* **Source:** SEC, Press Release on AI Washing Enforcement, March 2024. [https://www.sec.gov/news/press-release/2024-31](https://www.sec.gov/news/press-release/2024-31)