Announcing Agent Commander - The First Integrated solution from Veeam + Securiti.ai enabling the scaling of safe AI agents

View

Veeamon Tour'26 - Data & AI Trust CONVERGE for the Agentic Era

View

Article 1: Subject Matter | EU AI Act

Contributors

Anas Baig

Product Marketing Manager at Securiti

Syed Tatheer Kazmi

Data Privacy Analyst

CIPP/Europe

The European Union’s Artificial Intelligence Act (AI Act) is a pioneering step towards creating a legislative framework that mandates the development, design, and implementation of safe AI.

Article 1 of the AI Act serves as an abstract that provides a descriptive overview of the Act’s overall goal and important considerations that organizations subject to it must take into account, particularly in terms of elevating the AI system's overall human-centricity and trustworthiness.

Furthermore, it guarantees an adequate degree of protection of health, safety, and fundamental rights enshrined in the Charter of Fundamental Rights. These rights encompass democracy, environmental protection, and the rule of law against adverse effects of AI models and systems while supporting innovation.

This Article contains the following essential points to take into consideration:

a. Harmonized Rules for AI Systems

By harmonized rules, the regulation aims to introduce a degree of standardization when it comes to AI systems being made available for use within the market. The primary purpose behind this push towards standardization is to create a consistent regulatory environment across all EU member states that facilitates the adoption of a uniform ethical standard related to AI development.

Consequently, businesses would have an easier time navigating the regulatory requirements as they will be focusing on one set of rules rather than a different obligation in each country. More importantly, such a framework can prove highly conducive to innovation and cross-border operations which will be vital for organizations in developing various AI products and services.

b. Prohibition of Certain AI Practices

Stated bluntly, the AI Act prohibits, and as a result, severely restricts the development of any AI models, systems, and applications that may pose an unacceptable risk to EU residents’ fundamental rights and safety. Per this requirement, the regulation places the onus on the businesses themselves to steer clear of any AI practices that may result in any form of unacceptable risk to their users.

c. Requirements for High-Risk AI Systems

One of the AI Act's salient features is its categorization model. Under this model, each AI model, system, or application is to be assessed and categorized based on the risk they seemingly pose to their users. Models and systems deemed high-risk will be subject to heightened scrutiny and requirements, such as extensive risk assessments, transparency, and human oversight, etc.

d. Transparency Rules

The AI Act emphasizes the importance of transparency rules, especially for AI systems that are more likely to interact with people and evaluate their emotions in real-time. Such systems must be upfront, honest, and transparent in their communications with their users regarding their internal decision-making processes. This means all developers behind AI models and systems must ensure these products and services are easily accessible and understandable by users.

e. Harmonized Rules for Placing on the Market

The AI Act contains essential details for all relevant stakeholders on their roles and responsibilities related to the market placement of general-purpose AI models.

f. Market Monitoring & Surveillance

The AI Act also touches upon how organizations developing mechanisms for market monitoring and surveillance are expected to operate. The rules outlined in the AI Act will work in tandem with the EU’s other data protection regulations to ensure all AI systems being developed place responsible risk management practices at the heart of their development process.

g. Measures to Support Innovation

The Act provides necessary information and clarity on what steps and measures relevant organizations may take related to innovation in Artificial Intelligence. Such information will be vital for SMEs and startups, as it will allow them to focus their time, efforts, and resources in a compliant manner.

Join Our Newsletter

Get all the latest information, law updates and more delivered to your inbox


Share

More Stories that May Interest You
Videos
View More
Rehan Jalil, Veeam on Agent Commander : theCUBE + NYSE Wired: Cyber Security Leaders
Following Veeam’s acquisition of Securiti, the launch of Agent Commander marks an important step toward helping enterprises adopt AI agents with greater confidence. In...
View More
Mitigating OWASP Top 10 for LLM Applications 2025
Generative AI (GenAI) has transformed how enterprises operate, scale, and grow. There’s an AI application for every purpose, from increasing employee productivity to streamlining...
View More
Top 6 DSPM Use Cases
With the advent of Generative AI (GenAI), data has become more dynamic. New data is generated faster than ever, transmitted to various systems, applications,...
View More
Colorado Privacy Act (CPA)
What is the Colorado Privacy Act? The CPA is a comprehensive privacy law signed on July 7, 2021. It established new standards for personal...
View More
Securiti for Copilot in SaaS
Accelerate Copilot Adoption Securely & Confidently Organizations are eager to adopt Microsoft 365 Copilot for increased productivity and efficiency. However, security concerns like data...
View More
Top 10 Considerations for Safely Using Unstructured Data with GenAI
A staggering 90% of an organization's data is unstructured. This data is rapidly being used to fuel GenAI applications like chatbots and AI search....
View More
Gencore AI: Building Safe, Enterprise-grade AI Systems in Minutes
As enterprises adopt generative AI, data and AI teams face numerous hurdles: securely connecting unstructured and structured data sources, maintaining proper controls and governance,...
View More
Navigating CPRA: Key Insights for Businesses
What is CPRA? The California Privacy Rights Act (CPRA) is California's state legislation aimed at protecting residents' digital privacy. It became effective on January...
View More
Navigating the Shift: Transitioning to PCI DSS v4.0
What is PCI DSS? PCI DSS (Payment Card Industry Data Security Standard) is a set of security standards to ensure safe processing, storage, and...
View More
Securing Data+AI : Playbook for Trust, Risk, and Security Management (TRiSM)
AI's growing security risks have 48% of global CISOs alarmed. Join this keynote to learn about a practical playbook for enabling AI Trust, Risk,...

Spotlight Talks

Spotlight 1:02:06
Consent by proxy: When AI agents start deciding for us
Watch Now View
Spotlight 1:00:41
Future-Proofing for the Privacy Professional
Watch Now View
Spotlight 50:52
From Data to Deployment: Safeguarding Enterprise AI with Security and Governance
Watch Now View
Spotlight 11:29
Not Hype — Dye & Durham’s Analytics Head Shows What AI at Work Really Looks Like
Not Hype — Dye & Durham’s Analytics Head Shows What AI at Work Really Looks Like
Watch Now View
Spotlight 11:18
Rewiring Real Estate Finance — How Walker & Dunlop Is Giving Its $135B Portfolio a Data-First Refresh
Watch Now View
Spotlight 13:38
Accelerating Miracles — How Sanofi is Embedding AI to Significantly Reduce Drug Development Timelines
Sanofi Thumbnail
Watch Now View
Spotlight 10:35
There’s Been a Material Shift in the Data Center of Gravity
Watch Now View
Spotlight 14:21
AI Governance Is Much More than Technology Risk Mitigation
AI Governance Is Much More than Technology Risk Mitigation
Watch Now View
Spotlight 12:!3
You Can’t Build Pipelines, Warehouses, or AI Platforms Without Business Knowledge
Watch Now View
Spotlight 47:42
Cybersecurity – Where Leaders are Buying, Building, and Partnering
Rehan Jalil
Watch Now View
Latest
What Anthropic’s Zero Trust for AI Agents Means for the Data Layer View More
What Anthropic’s Zero Trust for AI Agents Means for the Data Layer
Enterprises are deploying autonomous AI agents into production faster than they can secure them, and the best practices for securing this complex new landscape are still being...
DSPM in 2026: Why It Matters More Than Ever View More
DSPM in 2026: Why It Matters More Than Ever
In 2026, the convergence of cloud expansion, SaaS proliferation, and agentic AI adoption has fundamentally changed the data security challenge, making Data Security Posture...
Data Risk Management View More
What Is Data Risk Management?
Learn the ins and outs of data risk management, key reasons for data risk and best practices for managing data risks.
View More
An Overview of Bangladesh’s Personal Data Protection Act, 2026
Explore Bangladesh’s Personal Data Protection Act, 2026, including its key provisions, data subject rights, compliance requirements, and business impact.
EU AI Act: What Changes Now vs What Starts in 2026 View More
EU AI Act: What Changes Now vs What Starts in 2026
Understand the EU AI Act rollout—what obligations apply now, what phases in by 2026, and how providers and deployers should prepare for risk tiers,...
AI Governance Fails When Privacy Controls Stay Disconnected View More
AI Governance Fails When Privacy Controls Stay Disconnected
Access the whitepaper and learn how to operationalize core privacy controls across the AI lifecycle to ensure compliance, accountability, and defensible AI use.
You Can’t Protect What You Can’t See View More
You Can’t Protect What You Can’t See
Discover why disconnected security findings create hidden breach paths, why 57% of organizations can't prove data flows, and how to identify toxic risk combinations...
Agentic AI Security: OWASP Top 10 with Enterprise Controls View More
Agentic AI Security: OWASP Top 10 with Enterprise Controls
Map the OWASP Top 10 risks for agentic AI to enterprise-grade controls, identity, data security, guardrails, monitoring, and governance to stop autonomous AI abuse.
View More
Take the Data Risk Out of AI
Learn how to prepare enterprise data for safe Gemini Enterprise adoption with upstream governance, sensitive data discovery, and pre-index policy controls.
View More
Navigating HITRUST: A Guide to Certification
Securiti's eBook is a practical guide to HITRUST certification, covering everything from choosing i1 vs r2 and scope systems to managing CAPs & planning...
What's
New