AI · AIC-55

AI Governance and Responsible AI for Organizations

6 hours 1 days
Last updated
AI Governance และ Responsible AI สำหรับองค์กร

AI Governance and Responsible AI for Organizations is a 6-hour training course by IT Genius Institute. In most organizations staff are already using AI, but there is no policy saying how far they may go, what data must never be entered, who is accountable when…

Training schedule

No public rounds are open right now — register your interest and we will contact you when the next round opens, or request an in-house session for your team.

Corporate training quote

In most organizations staff are already using AI, but there is no policy saying how far they may go, what data must never be entered, who is accountable when the output is wrong, or how the company would show an auditor that controls actually exist. That gap becomes a data leakage risk, a legal risk and a reputational risk, particularly now that international rules are taking effect and business partners are beginning to ask for governance documentation. This course is built for executives, governance teams and anyone who has to set AI policy. It

connects the frameworks you can genuinely cite, NIST AI Risk Management Framework, ISO/IEC 42001 and the EU AI Act, to Thai legal context and the Personal Data Protection Act. It covers identifying and assessing the risk of each AI use case, grading risk and choosing proportionate controls, writing an AI usage policy staff will actually follow, governing the data fed to models, handling bias, transparency and explainability, and finally establishing ongoing oversight and audit-ready documentation. Learners draft their own organizational policy in the workshop. (1 day, 6 hours, no technical background required.)

Objectives

  • Articulate the data, legal and reputational risks of AI use in the organization
  • Understand the NIST AI Risk Management Framework and apply it to manage risk
  • Understand the structure of ISO/IEC 42001 and what certification would require
  • Understand EU AI Act risk tiers and their impact on Thai companies trading abroad
  • Connect AI requirements to Thailand Personal Data Protection Act obligations
  • Assess the risk of each AI use case and choose proportionate controls
  • Write a clear AI usage policy that staff can actually follow
  • Address bias, transparency and explainability in AI systems
  • Establish ongoing oversight and prepare documentation for audit

Who this course is for

  • Executives and department heads who decide how AI gets adopted
  • Governance, risk and internal audit teams
  • Data protection officers and corporate legal teams
  • IT leaders who must set policy for AI tools across the organization
  • HR teams who must issue AI usage guidelines to staff

Prerequisites

  • No technical or programming background required
  • Some hands-on experience with AI tools makes the risks easier to picture
  • Understanding your organization processes and data flows deepens the workshop
  • Bring one real AI use case from your organization to assess in class

Curriculum

Course Details

A 1-day course, 6 hours (09:00-16:00), delivered as lectures with group workshops. No technical background required. The content follows the latest international frameworks adapted to Thai organizational context. Learners take home a ready-to-use template set covering AI usage policy, risk assessment forms and an AI system register, plus the draft policy they wrote in class, ready to put in front of management. The material is management guidance, not case-specific legal advice.

Morning: Risk and International Governance Frameworks

Section 1: The Risks of AI Use in Organizations

  • The risks that actually occur: data leakage, wrong output, bias and copyright exposure
  • The risk of staff adopting AI tools on their own without the organization knowing
  • Case studies from real incidents and the lessons worth adopting
  • Why an outright ban fails and why a safe-use framework works better

Section 2: NIST AI Risk Management Framework

  • The framework structure: govern, map, measure and manage
  • The characteristics of trustworthy AI and what they mean in practice
  • Applying the framework in a mid-sized organization with no dedicated governance team
  • Connecting it to the risk management system the organization already runs

Section 3: ISO/IEC 42001 AI Management Systems

  • What an AI management system is and how it differs from a security standard
  • The core requirements and the documentation certification would demand
  • Running it alongside existing standards without duplicating work
  • Deciding whether to pursue certification or use it as internal guidance

Section 4: The EU AI Act and Thai Legal Context

  • EU AI Act risk tiers with examples of each
  • Obligations on providers and deployers, and the impact on Thai firms trading with Europe
  • Transparency requirements and telling users they are interacting with AI
  • The direction of AI law and practice in Thailand and what to watch

Afternoon: From Risk Assessment to Workable Policy

Section 5: Assessing Risk Case by Case

  • Building a register of the AI systems in use and grouping them by impact
  • Risk criteria: impact on individuals, on the business and on legal compliance
  • Choosing controls proportionate to the risk without blocking the work
  • Workshop: assess the risk of a real AI use case from your own organization

Section 6: Writing the AI Usage Policy

  • What a complete policy contains: scope, roles, prohibitions and approval steps
  • Defining which data categories must never be entered into external AI tools
  • Defining the review step before output is used and who is accountable at each stage
  • Workshop: draft your own organizational AI policy from the provided template

Section 7: Personal Data and PDPA

  • The lawful basis for processing personal data through AI systems
  • Purpose notification and consent when data is used with AI
  • Data subject rights and responding to requests involving automated decisions
  • Managing external AI vendors and the contract terms you should have

Section 8: Bias, Transparency and Explainability

  • Where bias comes from and its impact on decisions affecting individuals
  • Testing outputs for fairness before the system goes live
  • Explaining to affected people what the system based its decision on
  • Defining where a human must always remain in the decision loop

Section 9: Ongoing Oversight and Audit Readiness

  • The oversight structure: working group, roles and review cycle
  • Monitoring AI systems after go-live and handling incidents
  • The documentation and evidence to retain for internal and partner audits
  • Workshop: plan the first 90 days of policy rollout and present it

Frequently asked questions

Who is AI Governance and Responsible AI for Organizations for, and what background is needed?

Built for Executives and department heads who decide how AI gets adopted · Governance, risk and internal audit teams · Data protection officers and corporate legal teams Background you should have: No technical or programming background required · Some hands-on experience with AI tools makes the risks easier to picture Not sure the fit is right? Talk to our team on LINE @itgenius or call 02-570-8449.

How much does AI Governance and Responsible AI for Organizations cost and how long does it run?

THB 6,500 (currently THB 5,850 on promotion). The course runs 6 hours. The fee covers course materials, lunch and refreshments throughout. Pay by bank transfer to the company account, confirm it on our payment page, and we can issue the receipt or tax invoice in your company's name.

Do I get a certificate?

Yes. Everyone who completes the course receives a Certificate of Completion from IT Genius Institute. Each certificate carries its own number, and anyone holding that number can verify it online on our certificate page, so you can add it to your portfolio or pass it to HR as evidence of training.

Where does the training take place, and is there an online option?

You can attend onsite at IT Genius Institute or arrange to join online, and we also run it as a private in-house session for your team. Ask about dates and venues on LINE @itgenius or call 02-570-8449.

What if I fall behind or miss a session — can I retake it?

Yes. You may retake the same course free of charge in a later round, under the institute's conditions. Tell our team which course and round you attended, and we will check it and offer you the rounds that still have seats. Ask us on LINE @itgenius or call 02-570-8449.

How do I enrol, or request a quotation for my company?

Enrol online with the registration form on this page. You can register several attendees at once and enter your tax ID and billing address for the tax invoice. Or request a company quotation straight from the quote button. For anything else call 02-570-8449 or reach us on LINE @itgenius.

Instructors

Run this course for your whole team

We run this course in-house, tailored to your stack.

Corporate training quote