Work has started on the revision of the ISO Governance of Data (38505) standard, and I am honored to be chairing this valuable piece of work.
This below can be used for the details of the news post:
Much has changed in the data space since the first publication of the standard in 2017, and yet organisations still collect and store and distribute data without the structure of a good governance framework to protect them from harm in the form of financial, reputational, and/or operational embarrassment. Data investment and interest has been diverted into the pursuit of the new things available in the form of AI bots, and tools that detect criminals attempting to illegally access your systems, products, and services. These are excellent and worthy items to be focused on, but without the underpinning governance for their use, they can cause more issues than they solve.
Our challenge in revising the standard will be to draw in the emerging EU Data Governance Act and AI regulations, to reference data-related legislation, such as the Papua New Guinea Digital Government Act, and to align with the indigenous view of the governance of data such as that presented in the recently published Māori Data Governance Model. And of course, we will look at related standards in the cyber security, AI, and classification space, sector specific materials (such as those produced by CEPEJ), and we will take on the behemoth that is the Modern Data Estate.
If you would like to be part of this exciting adventure, please leave a comment below and we’ll let you know how you can get involved. It will be a blast!