← All topics

Topic

AI Governance & Risk

How boards, executives, and counsel put responsible AI into practice — governance frameworks, board AI oversight, D&O liability, risk management, and the controls that let organizations scale AI safely. Conversations and analysis from the leaders building the guardrails.

What "AI governance and risk" really means

AI governance and risk is the discipline of deploying artificial intelligence so that an organization can move quickly and stay accountable — covering how AI systems are reviewed before launch, how risk is tiered, who oversees outputs, and how responsibility is assigned when something goes wrong. It is the operating tension at the center of this show: velocity versus accountability.

Most coverage of this topic is either abstract principle ("be responsible") or dense legal reference. This hub is neither. It collects what senior operators — chief privacy officers, state CIOs, general counsel, finance and enterprise leaders — actually do to govern AI, in their own words, from the AI in Chicago interview archive. If you're responsible for getting AI into production without getting your organization into trouble, start here.

Start with the playbooks

Two evergreen guides distill the operator consensus across dozens of conversations:

The questions this hub answers

How do you govern AI without slowing the business down?

Treat governance as a GPS, not a roadblock. Bring legal, security, and privacy in at project inception, tier scrutiny to real impact, and let low-risk work move fast. See the governance playbook, anchored in NielsenIQ CPO Elena Vekilov's framework.

What foundations do you need before scaling AI?

Identity and access, data governance, and cybersecurity — the unglamorous infrastructure that the exciting use case sits on top of. Illinois State CIO Brandon Ragle makes the case from the scale of 13 million residents.

What should you actually measure?

Outcomes, not engagement. Reed Smith's Richard Robbins frames the real maturity test as whether you can govern a tool responsibly at scale — not whether you can launch it.

Who owns AI governance?

Not IT alone. It's a cross-functional business responsibility spanning legal, privacy, security, data, and the business line — a point Gianne James makes pointedly from financial services.

Are AI risk assessments political?

The inputs are. Northwestern's Nick Diakopoulos measured 42,853 news articles across 27 countries and found that which AI harms get covered varies with the political lean of the outlet — and that existential risk, the premise of every frontier-AI statute, accounts for just 7.2% of coverage. If your risk register inherits its priorities from public discourse, it inherits that sorting too.

Governance by sector

The principles are shared, but the stakes and specifics shift by industry. These conversations show governance under real constraints:

  • Enterprise & dataElena Vekilov on risk tiering and privacy as infrastructure across 90+ markets
  • Public sectorBrandon Ragle on foundations-first governance at state scale
  • LawRichard Robbins on effective, responsible AI use aligned to firm strategy
  • FinanceGianne James on why AI governance can't live inside IT
  • Healthcare & sensitive dataTim Turner on data-readiness, bias review, and human oversight

Where governance meets the law

Governance doesn't happen in a vacuum — it happens under a fast-moving regulatory regime, and Illinois is one of the most active states in the country. For the policy and regulation side of this story — the notice regime, mental-health AI rules, and public-sector AI strategy — see the Illinois AI Policy hub and conversations with the people who wrote and enforce the rules, including Rep. Bob Morgan and policy advisor Jason Rosensweig.

Related topics

Frequently asked questions

What is AI governance?

AI governance is the set of practices — intake, risk-tiering, data controls, human oversight, contracts, and auditing — that determine which AI systems an organization deploys, how they're reviewed, and who is accountable for outcomes. Its purpose is to enable adoption safely rather than to prevent it.

What is the difference between AI governance and AI risk management?

Governance is the broader operating system (roles, policies, review processes, accountability); risk management is the part focused specifically on identifying, tiering, and mitigating potential harms. In practice, risk tiering is a core mechanism inside a governance program.

Is AI governance only an IT responsibility?

No. Operators consistently describe it as a cross-functional business responsibility shared across legal, privacy, security, data, and the business line, with a clear convening owner.

Episodes in this topic

Nicholas Diakopoulos — Who Decides Which AI Risks Matter? Nick Diakopoulos on Media, Politics, and AI Governance
Ep 10 · August 24, 2026 · 48 minutes

Who Decides Which AI Risks Matter? Nick Diakopoulos on Media, Politics, and AI Governance

In this episode, host Khullani Abdullahi speaks with Nicholas Diakopoulos, professor of communication studies and, by courtesy, computer science at Northwestern University and director of the Computational Journalism Lab. They discuss what 42,853 news articles across 27 countries reveal about which AI harms get covered, how that coverage sorts by the political lean of the outlet, and the participatory method his lab built to gather public input on AI governance.

Jason Rosensweig — Civil Rights, the Notice Regime, and Illinois' 2026 AI Hiring Law with Jason Rosensweig
Ep 9 · June 22, 2026 · 67 minutes

Civil Rights, the Notice Regime, and Illinois' 2026 AI Hiring Law with Jason Rosensweig

In this episode, host Khullani Abdullahi speaks with Jason Rosensweig, Senior Policy Advisor at the Illinois Department of Human Rights (IDHR). They discuss why Illinois regulated AI in hiring through its civil rights act rather than a standalone AI statute, the new notice requirement, disparate impact, and what employers and AI vendors need to know under HB 3773.

Brandon Ragle — Responsible AI Scaling With Illinois State CIO and Secretary of the Illinois Department of Innovation and Technology
Ep 7 · March 9, 2026 · 44 minutes

Responsible AI Scaling With Illinois State CIO and Secretary of the Illinois Department of Innovation and Technology

In this episode, host Khullani Abdullahi speaks with Brandon Ragle, Illinois State Chief Information Officer and Secretary of the Department of Innovation & Technology (DoIT). They discuss what it takes to operate AI responsibly across an entire state—identity, data governance, cybersecurity, foundations over hype, and preparing the public-sector workforce for AI.

Elena Vekilov — People Don't Resist Technology; They Resist Ambiguity with Elena Vekilov
Ep 2 · January 9, 2026 · 55 minutes

People Don't Resist Technology; They Resist Ambiguity with Elena Vekilov

In this episode, host Khullani Abdullahi speaks with Elena Vekilov, Chief Privacy Officer and Global General Counsel for Data Security, Product, and AI at NielsenIQ. They discuss enterprise AI readiness, the trust gap in AI adoption, data maturity challenges, and why governance enables innovation rather than constraining it.

Rep. Bob Morgan — Behind the Bill: Illinois is the First in the Nation to Regulate AI in Mental Health with Rep. Bob Morgan
Ep 1 · September 29, 2025 · 55 minutes

Behind the Bill: Illinois is the First in the Nation to Regulate AI in Mental Health with Rep. Bob Morgan

In this episode, host Khullani Abdullahi speaks with State Representative Bob Morgan, Assistant Majority Leader and Floor Whip, about Illinois's groundbreaking first-in-the-nation AI mental health law. They discuss the journey from healthcare attorney to legislator, the political process of passing AI regulation, and why protecting mental health from unregulated AI therapy bots became urgent.

Gianne James — AI in Finance: Governance, Risk, and the Human Element with Gianne James
Ep 6 · August 22, 2025 · 52 minutes

AI in Finance: Governance, Risk, and the Human Element with Gianne James

In this episode of the AI in Chicago podcast, host Khullani Abdullahi speaks with Gianne James, Senior Vice President at First Insurance Funding. They discuss AI governance in financial services, risk management, and the importance of upskilling and education for career longevity in the AI era.

Insights & analysis

Jason Rosensweig on Civil Rights, the Notice Regime, and Illinois' 2026 AI Hiring Law
Featured Conversation

Jason Rosensweig on Civil Rights, the Notice Regime, and Illinois' 2026 AI Hiring Law

Illinois put AI hiring inside its civil rights act instead of passing a standalone AI statute. Jason Rosensweig, Senior Policy Advisor at IDHR, breaks down the architecture of HB 3773 — the notice requirement, disparate impact, and the 'influence or facilitate' reach — and what employers and AI vendors must do now.

What Illinois' State CIO Taught Me About Scaling AI Responsibly
Featured Conversation

What Illinois' State CIO Taught Me About Scaling AI Responsibly

Brandon Ragle, Illinois State CIO and Secretary of the Department of Innovation & Technology, leads 1,800+ technologists serving 13 million residents. His lesson for anyone adopting AI: the organizations getting it right aren't the fastest, they're the ones with the strongest foundations.

Effective and Responsible Use @ Scale Aligned to Firm Strategy
Featured Conversation

Effective and Responsible Use @ Scale Aligned to Firm Strategy

A Conversation With Richard Robbins, Applied AI @ Reed Smith. Richard Robbins, Director of Applied AI at Reed Smith, shares insights on effective and responsible AI adoption at scale, aligned to firm strategy in the legal profession.