Study Notes
Study Notes
- Turing Test: test to determine if the machine is intelligent. Machine is considered intelligent if it fooled
the interviewer to believe that it is human.
- Common elements in various definitions of AI
o Technology
o Autonomy
o Human involvement
o Output
- Process of teaching AI systems is ‘machine learning’. There are 3 types:
o Supervised – Using ‘labelled’ data, e.g. images of cats and dogs classified into categories
o Unsupervised – Using ‘unlabelled’ data, e.g. fraud detection, genetics
o Reinforcement – Uses reward and punishment matrix
- AI is a socio-technical system. AI influences society and society influences AI.
- OECD Framework for classifying AI systems, which has main dimensions:
o People and planet dimensions: Identify the individuals impacted, privacy rights, human
rights, environment and society in general
o Economic context: Sector where the AI system operates, business function, technological
maturity of the sytem
o Data and input: what data was used, whether any expert input was used, who collected the
data (machine or human), structure of the data
o AI model
o Tasks and output: System tasks,
- AI use-case types:
o Recognition (image, speech, face), plagiarism detectors, retailer product matches,
o Detection: fraud detection, event detection, cyber events, systems management
o Forecasting: sales, revenue, demand, weather, ride-sharing pricing
o Personalization: Customer experience,
o Interaction support: chatbots,
o Goal-driven optimization: Supply-chain, driving-routes, idle-time,
o Recommendation: based on predictive analytics, product, viewing, medical diagnosis,
Types of AI
- machine perception: systems are trained to process sensory information and mimic human senses.
- Robotic process automation
Expert systems: AI intended to mimic the decision-making abilities of a human expert in a specific field. 3
main elements:
Fuzzy logic
Fuzzy rule e.g. if temperature is hot, then set the fan speed to high. Employ fuzzy inference mechanisms to
make decisions based on fuzzy rules and input data. Standard steps:
- Fuzzification
- Rule evaluation
- Aggregation
- Defuzzification
An AI model typically comprises input data, a pattern-matching algorithm and an output classification
AI systems = AI application
Commonly-used AI models:
- Linear and statistical models: model the relationship between two variables,
- Decision-tree models: predict outcomes based on a flowchart of questions and answers
AI Technology Stack
- Compute: Consists of CPU and GPU (Graphical Processing Unit). GPU has specialised chips. As
algorithms have developed so have GPUs similarly. Serverless: not limited to any particular hardware.
Improves scalability. High performance compute. Aids quantum computing (processing data in 3
dimensions). Trusted Execution environments.
- Storage. 4 stages of AI, all of which require storage
o Ingestion
o Preparation
o Training
o Output
Considerations around storage – expense, storage types, structured vs unstructured data, flexible
storage (AI at scale)
- Network: needs to be fast (high-speed), considerations – Edge computing (IoT), need protocols based
on congestion-free design.
- Software: Tuning AI systems – customize AI, Tuning challenges
o No. of hyperparameters, common hyperparameters are : learning rate, number of epochs
(one cycle through the full training dataset) and momentum (the amount of history included
in the equation)
o Varies on model type and complexity
o Scaling – trial and error tuning
- Observability and Modelling. AI observability is a subcomponent of data observability, Provides indices
and metrics for performance. Challenges – Data Integrity, Data Drift, bias and discrimination, outcome
validation. Opensource AI frameworks – e.g. Tensorflow, PyTorch
Economic impact – jobs will be lost, AI driven recruiting practices may also be discriminatory
- Group Harms
o Mass surveillance, potential harm for marginalized groups
o Harms to freedom of assembly and protest
o Deepening of social and racial inequalities
o Societal harms – democratic participation and process, disinformation, ideological bubbles
o Deepfakes
o Safety, lack of human oversight – e.g. use of lethal autonomous weapons
- Environmental harms
o Energy consumption for training
- Organizational harms - identification
o First identify the owner of the risks – BU, representative of the customer, AI risk manager, AI
SME, compliance, legal and privacy officer, IT leaders – CISO, CTO, CSO, CIO, execs, Board
o Defining organizational harms – reputational, cultural and societal (wrong assumption of
accurate outcome, bias), acceleration (volume, speed and complexity means all risks can be
anticipated, legal and regulatory risk.
- Characteristics of trustworthy AI systems - Trustworthy AI operates in an expected, legal and fair
manner
o Human-centric
o Accountability (organisations to be responsible)
o Transparent
- Responsible AI practices with risk management framework
o Transparent and explainable
o Fairness
o Human oversight
o AI playbooks
o Technical standards
o Guidelines
- Existing and emerging ethical guidance on AI
o OECD AI Principles in 2019
o White House Office of Science and Technology policy blueprint for AI Bill of Rights
o UNESCO Principles
o Asilomar AI Principles
o The Institute of Electrical and Electronics Engineers Initiative on Ethics of Autonomous and
Intelligent Systems
o CNIL Action Plan
- OECD AI Principles
o Inclusive growth, sustainable development, and well-being
o Human-centred values and fairness
o Transparency and explainability
o Robustness, security and safety
o Accountability (for proper functioning of AI systems
- Factors involved in creating ethical AI
o Legal and compliance
o Equitable design
o Transparency and interpretability
o Privacy and cybersecurity
o Data governance
- Planning
o Business objectives and requirements
Classification business problem
Regression business problem: Predicting future based on past data
Recommendation business problem
How to define the problem?
What type of results are you expecting from the use of AI system?
What processes do you have to solve the problem?
What resources are available to use to solve the business problem?
User interviews, market research, identify AI use-cases, finding the right
data to use
Scope of the project?
Impact of the AI system on the problem
Effort needed
Fitment
Governance structure
- Design: Implementing a data strategy
o Gathering data –
What data is required?
What type of data is required?
How much data is required?
How it is collected and where it is stored
Use pre-trained data?
Internal data or external data
Quality of data
Format of the data
Structured data
Unstructured data
Static data
Streaming data
o Wrangling the data, preparing the data (constitutes 80% of AI lifecycle) – 5 Vs
Volume of the data
Velocity of the data
Variety of the data, structured v unstructured
Veracity of the data
Value of the data
o Cleansing – remove erroneous or inaccurate data
o Labelling the data
- Development:
o Build the model – Use same features for training and testing
Feature engineering: transforming raw data into features, use SMEs. Purpose of
feature engineering are:
Improving model performance
Reducing costs, improving effectiveness
Boosting model explainability
o Model training – train, test, evaluate and retrain
o Model testing and evaluation – metrics should be determined earlier. Also test on new data
- Implement
o Perform a readiness assessment of the model
o Continuous monitoring
o Baseline to measure future iterations
o Maintain the model
o Avoid model drift
For general AI
Operational risk
- SR-7 (a regulatory standard set out by the U.S. Federal Reserve Bank that provides guidance on model
risk management)
- AI conformity assessment mandated by the EU AI Act – required whether or not personal information
is being processed
- 2 proposals in the EU for affixing AI product liability issues- both operate in parallel
o Reform of the 1985 product liability directive
AI and other software will fall within the scope (product)
Strict liability regime
Damage – injury, death, psychological harm, property/ financial damage, data loss/
corruption
Extraterritorial
o EU AI Liability directive
Fault liability regime
Reinforces the EU AI Act
Courts are empowered to order disclosure in relation to high-risk AI systems
Courts can presume a casual link between non-compliance with AI act and harm
- US Approach – product liability laws are determined at the state level – 3 types of liability principles
o Strict liability
o Negligence
o Breach of warranty
- Not clear in the US if AI is a product
o Rodgers vs Christie (New Jersey) – AI does not qualify as product.
o Connecticut Fair Housing vs CoreLogic Rental Property Solutions. Rejection of housing
application due to disability. AI vendor may be made liable
o White House Blueprint of AI Bill of Rights
Safe and effective systems
Algorithmic discrimination protections
Data privacy
Notice and explanation
Human alternatives, consideration and fallback.
o Presidential Executive Order on advancing racial equality
o Executive Order on the Safe, Secure, and Trustworthy Development and Use of AI
Artificial Intelligence must be safe and secure
Promoting responsible innovation, competition and collaboration
Responsible development and use of AI require a commitment to support American
workers
AI policies must be consistent with the dedication to advancing equity and civil
rights
The interests of Americans who increasingly use, interact with, or purchase AI and
AI-enabled products in their daily lives must be protected.
Americans’ privacy and civil liberties must be protected as AI continues advancing.
It is important to manage the risks from the Federal Government’s own use of AI
and increase its internal capacity to regulate, govern, and support responsible use of
AI to deliver better results for Americans.
The Federal Government should lead the way to global societal, economic, and
technological progress,
Provides guidance for using AI responsibly and effectively, including the various
aspects of artificial intelligence and the different applications an organization may
use. It takes an integrated approach to manage AI projects, from risk assessment to
effective treatment of these risks.
Applies to organizations of any size and industry involved in developing, providing or
using AI-based products or services.
Process:
Integrate the AI management system into the organization’s processes and
overall management structure.
Consider specific issues related to AI in the design of processes, information
systems and controls, such as:
o Determining organizational objectives, involvement of interested
parties and organizational policy
o Managing risks and opportunities
o Processes for managing concerns related to the trustworthiness of
AI systems
o Processes to manage suppliers, partners and third parties that
provide or develop AI systems for the organization
o Singapore’s Model AI Framework
o Huderia – Council of Europe’s Human Rights, Democracy and the Rule of Law Assurance
Framework for AI systems
General guidance:
Develop impact assessment models that incorporate human rights with AI-centered approaches
Develop a method for assessing and grading the likelihood and extent of risks associated with an AI
system
o Consider use, such as contexts and purposes, underlying technology, stage of development
and stakeholders
Principles:
1. Human dignity: Humans should be treated as moral subjects and not as objects to be algorithmically
manipulated
2. Human freedom and autonomy: Humans should be informed and empowered to act; systems should
enrich humans, not control or condition them
3. Prevention of harm: AI systems must not be permitted to adversely impact humans’ mental or physical
health, or planetary health
4. Non-discrimination: AI systems must be fair, equitable and inclusive in their beneficial impacts and in
the distribution of risks
5. Transparency and explainability: AI use and the rationale for this use must be made clear to affected
individuals
6. Data protection and the right to privacy: Informed, freely given and unambiguous consent for AI use
when personal information is involved
7. Democracy: Transparent and inclusive oversight mechanisms to ensure the safeguarding of the above
principles
8. Rule of Law: AI systems must not undermine judicial independence, due process, etc.
Process:
Assess governance mechanisms to ensure the mitigation of risks, stakeholder involvement, effective
remedy, accountability and transparency
Monitor and evaluate the system continuously for sufficient response to changes in context and
operation.
o NIST AI Risk Management Framework
A guide for risk and incorporating trustworthiness considerations into AI design, development, use and
evaluation.
Seven characteristics of trustworthy AI: Valid and reliable; safe; secure and resilient; accountable and
transparent; explainable and interpretable, privacy-enhanced; fair, with harmful bias mitigated.
There is also a NIST AI RMF Playbook with suggested actions to accomplish outcomes in AI RMF core
functions.
o Oversight should review and hold accountable the risk management structures —declaring
risk tolerances for development or use.
o Support AI risk management and executives by ensuring appropriate authority and resources
to perform risk management. Equip the right people with the right tools.
o EU AI Act
o IEEE 7000-21: Standard Model Process for Addressing Ethical Concerns during System Design
Outlines how organizations can consider ethical values throughout system design.
Purpose: Enabling organizations to design systems with explicit consideration of individual and societal ethical
values, such as transparency, sustainability, privacy, fairness and accountability, as well as values typically
considered in system engineering, such as efficiency and effectiveness.
Projects conforming to this standard balance management commitments for time and budget
constraints with long-term values of social responsiveness and accountability
Describes processes for traceability of ethical values in the concept of operations, ethical
requirements and ethical risk-based design
Relevant to all sizes and types of organizations using their own life cycle models
Defines the term "ethical" as supporting the realization of positive values or reduction of negative
values
The ethically-aligned processes described are performed during two stages in the system life cycle:
1. Concept exploration
2. Development
Provides guidance on including safety aspects and serves as a reference for other stakeholders
Goals:
Reduce risk in design, production, distribution, use and destruction or disposal of systems or products
There are other ISO/IEC guidelines addressing aspects of AI safety and security, including ISO/IEC 23894:2023.
Familiarize yourself with those that apply to your industry.
- Change Management
Other Materials
Be machine-based.
"an AI model, including where such an AI model is trained with a large amount of data using self-
supervision at scale, that displays significant generality and is capable of competently performing
a wide range of distinct tasks regardless of the way the model is placed on the market and that
can be integrated into a variety of downstream systems or applications, except AI models that are
used for research, development or prototyping activities before they are released on the market."