組織が自信を持ってAIを管理、監視、スケールできるよう設計された、EnzaiのAIガバナンス製品のフルスイートをご覧ください。構造化されたインテークや一元化されたAIインベントリから、自動化されたアセスメントやリアルタイムの監視まで、Enzaiはイノベーションを遅らせることなく、日々のAIワークフローにガバナンスを直接組み込むためのビルディングブロックを提供します。

Enzai

AI governance podcast

California's ADMT regulations with Phil Laird

AI governance podcast

California's ADMT regulations with Phil Laird

AI governance podcast

California's ADMT regulations with Phil Laird

Phil Laird (General Counsel, California Privacy Protection Agency)

Phil Laird (General Counsel, California Privacy Protection Agency) walks through California's ADMT regulations, the 2026/2027 Risk Assessment roadmap, and what the agency means by meaningful human involvement.

Belfast/California

Belfast/California

Podcast Guest

Podcast Guest

Phil Laird

Phil Laird

トピック

Spotifyでお聴きください

YouTubeで視聴

Appleで聴く


Summary

This episode of the AI Governance Podcast features Phil Laird, General Counsel of the California Privacy Protection Agency (CPPA). Phil joins Enzai's Matt McCallum to discuss how California is operationalising automated decision-making oversight in 2026 and 2027.

They explore what California's regulations require by "meaningful human involvement" and what the definition explicitly rules out, the most common failure modes in early ADMT implementations, how California's Risk Assessment regime overlaps with EU AI Act and GDPR work, and the architectural ambition behind DROP. Phil closes on why "frictionless" is operating doctrine inside the agency rather than consumer rhetoric.

You can listen on Spotify or Apple Music or watch the episode here on YouTube.

Key takeaways

  • What California's definition of "meaningful human involvement" explicitly closes the door on, and why some enterprise human-review patterns won't pass it.

  • The most common failure mode in early ADMT implementations: organisations believing they have addressed automation bias when they have not, and what the CPPA's sharper expectations actually require.

  • Where California's Risk Assessment regime overlaps with EU AI Act and GDPR work, where it doesn't, and why "re-use" is bounded rather than wholesale.

  • Inside DROP, the centralised Delete Request and Opt-out Platform California is building, and what operational readiness in 2026/2027 looks like for in-scope businesses.

  • Why "frictionless" is operating doctrine inside the CPPA rather than consumer rhetoric, and how that shapes the agency's regulatory sequencing.

Spotifyでお聴きください

YouTubeで視聴

Appleで聴く

さらに詳しく見る

さらに詳しく見る

当社のニュースレターにご登録ください

サインアップすることにより、Enzaiのプライバシーポリシーに同意することになります

当社のニュースレターにご登録ください

サインアップすることにより、Enzaiのプライバシーポリシーに同意することになります

当社のニュースレターにご登録ください

サインアップすることにより、Enzaiのプライバシーポリシーに同意することになります

当社のニュースレターにご登録ください

サインアップすることにより、Enzaiのプライバシーポリシーに同意することになります

設計に伴うコンプライアンス

設計に伴うコンプライアンス

ISO 27001

EnzaiISO 270012023NQAInstil

一般データ保護規則 (GDPR)

ISO 27001

EnzaiISO 270012023NQAInstil

一般データ保護規則 (GDPR)

AI

AI

インフラストラクチャ

インフラストラクチャ

信頼を構築するために設計されています。

信頼を構築するために設計されています。

組織がAIを採用し、管理し、監視する能力を、企業レベルの信頼性で強化します。規模で運営する規制対象の組織向けに構築されています。

既存のシステム、ポリシー、AIワークフローを、すべて1つの統合プラットフォームでシームレスに接続します。

既存のシステム、ポリシー、AIワークフローを、すべて1つの統合プラットフォームでシームレスに接続します。