AI-Driven Changes in Data Privacy and Governance

AI is “Forcing a Fundamental Shift” in Data Privacy and Governance

Enterprises are shaking up their approach to data privacy and governance, new research shows, largely due to added risk factors created by AI adoption.

Key Findings from Cisco’s 2026 Data and Privacy Benchmark Study

According to Cisco’s 2026 Data and Privacy Benchmark Study, nearly all companies are expanding privacy programs and governance frameworks to protect their data. AI is the main reason for 90% of these initiatives, with 93% saying they plan further investment to keep up with the complexity of AI systems and the expectations of customers and regulators.

The survey found that 38% of organizations spent at least $5 million on their privacy programs in the past year. This marks a dramatic increase from just 14% who spent over that threshold in 2024.

Impact of Privacy Frameworks

Notably, these programs appear to be working well. An overwhelming 96% of organizations reported that robust privacy frameworks were helping unlock AI agility and innovation, and 95% stated that privacy was essential for building customer trust in AI-powered services.

One interesting change noted by the researchers is that trust is no longer just a question of meeting regulatory requirements. Data governance is now seen as a strategic business enabler, with 99% of organizations reporting at least one tangible benefit from their privacy initiatives, such as enhanced agility, innovation, and greater customer loyalty.

The Need for Holistic Governance

“AI is forcing a fundamental shift in the data landscape, calling for holistic governance of all data – both personal and non-personal,” said a senior executive at Cisco. “Organizations must deeply understand and structure their data to ensure every automated decision is explainable. It’s not just for compliance, but a necessary scaling engine for AI innovation.”

Challenges in Data Requirements

While 72% of respondents were generally positive about data privacy laws, there is a growing push to streamline and update data requirements. Just over 80% of organizations surveyed face heightened demand for data localization and global data complexity, and 85% said this adds cost, complexity, and risk to cross-border service delivery.

Similarly, 77% report these requirements limit their ability to offer seamless 24/7 service across markets. The assumption that locally stored data is inherently more secure is gradually eroding, decreasing from 90% in 2025 to 86% in 2026.

Advocating for International Standards

“To capture the potential of AI, organizations (83%) are advocating for a shift toward harmonized international standards,” said another Cisco executive. “They recognize that global consistency is an economic necessity to ensure data can flow securely while maintaining the high standards of protection required for trust.”

Recommendations for Enterprises

Cisco advises enterprises to invest in robust data infrastructure, prioritizing transparency and embedding security and privacy throughout AI initiatives. Organizations should also make informed decisions about data localization, establish strong AI governance, and equip their teams with comprehensive training and safeguards.

In conclusion, as enterprises navigate the evolving landscape of data privacy and governance in the age of AI, a proactive approach to privacy initiatives will not only ensure compliance but also drive innovation and customer trust.

More Insights

Revolutionizing Drone Regulations: The EU AI Act Explained

The EU AI Act represents a significant regulatory framework that aims to address the challenges posed by artificial intelligence technologies in various sectors, including the burgeoning field of...

Revolutionizing Drone Regulations: The EU AI Act Explained

The EU AI Act represents a significant regulatory framework that aims to address the challenges posed by artificial intelligence technologies in various sectors, including the burgeoning field of...

Embracing Responsible AI to Mitigate Legal Risks

Businesses must prioritize responsible AI as a frontline defense against legal, financial, and reputational risks, particularly in understanding data lineage. Ignoring these responsibilities could...

AI Governance: Addressing the Shadow IT Challenge

AI tools are rapidly transforming workplace operations, but much of their adoption is happening without proper oversight, leading to the rise of shadow AI as a security concern. Organizations need to...

EU Delays AI Act Implementation to 2027 Amid Industry Pressure

The EU plans to delay the enforcement of high-risk duties in the AI Act until late 2027, allowing companies more time to comply with the regulations. However, this move has drawn criticism from rights...

White House Challenges GAIN AI Act Amid Nvidia Export Controversy

The White House is pushing back against the bipartisan GAIN AI Act, which aims to prioritize U.S. companies in acquiring advanced AI chips. This resistance reflects a strategic decision to maintain...

Experts Warn of EU AI Act’s Impact on Medtech Innovation

Experts at the 2025 European Digital Technology and Software conference expressed concerns that the EU AI Act could hinder the launch of new medtech products in the European market. They emphasized...

Ethical AI: Transforming Compliance into Innovation

Enterprises are racing to innovate with artificial intelligence, often without the proper compliance measures in place. By embedding privacy and ethics into the development lifecycle, organizations...

AI Hiring Compliance Risks Uncovered

Artificial intelligence is reshaping recruitment, with the percentage of HR leaders using generative AI increasing from 19% to 61% between 2023 and 2025. However, this efficiency comes with legal...