At the DPO Forum Brussels 2025, Paul-Emmanuel Bidault, Co-founder and CEO of Dastra, delivered a keynote in English entitled “What Data Protection Did Teach Us About AI Governance”.
The talk explored how the lessons learned from the GDPR era now serve as a foundation for the European AI Act, bridging the worlds of data protection, risk management, and AI governance.
Drawing on seven years of GDPR implementation, the presentation outlines how established data protection principles — transparency, accountability, minimization, and privacy by design — evolve into AI governance principles such as explainability, AI by design, and continuous risk monitoring.
It provides a concrete framework for understanding the new distribution of responsibilities between AI providers and deployers, managing LLM-related privacy risks, and implementing compliance-by-design practices across organizations.
➡️ Download the full presentation to access practical insights, real-world examples, and governance recommendations for DPOs, legal teams, and compliance professionals navigating the age of AI regulation.
What Data Protection did teach us about AI Governance
From Compliance to Continuous Oversight
