
Most organizations treat the AI Act as a legal topic that can be delegated. However, the legislation actually applies on a system-by-system basis, not to the company as a whole.
As a result, the IT department, the PMO, and the Enterprise Architects are on the front lines: they are the ones who know which systems are running, on what data, and with what level of decision-making autonomy.
Or rather: they are the ones who should know.
Because the real question raised by the AI Act isn’t “are we compliant?” It’s “are we truly governing our AI ecosystem?” And for many organizations, the honest answer is no.


