- Services
- Products
-
-
- Online Training
- Information Security Awareness Training Course
- PCI DSS Compliance Bundle
- GLBA Awareness Training Course
- CMMC Training Course
- HIPAA Awareness Training Course
- Data Privacy Training Course
- Payments Security Training Course
- Phishing Awareness Training Course
- GDPR Training Course
- FERPA Training Course
- FACTA Training Course
- Online Training
-
- Compliance
- Markets
- Insights
- About
About This Webinar
Every day, employees, faculty, and staff type sensitive information into AI tools, often without knowing where that data goes, who can read it, or how long it’s kept.
In this session, we pull back the curtain on what actually happens to your data when you use tools like ChatGPT, Copilot, Gemini, and Claude. Drawing on current provider policies, real incidents, and observed workplace behavior across 1.6 million workers, we trace the full data journey from your keyboard through cloud providers, subprocessors, human reviewers, and model training pipelines.
You’ll learn where privacy concerns become hard legal liability under PCI DSS, HIPAA, FERPA, and GLBA, what GDPR, CCPA, and the EU AI Act actually protect, and the practical settings, habits, and organizational policies that reduce your exposure. This session is informative, practical, and surprisingly fun.
Key Takeaways
- Identify the three ways AI tools collect data: direct inputs, metadata, and model training pipelines, and why “deleted” doesn’t always mean gone.
- Trace where AI data actually travels, including cloud hosts, third-party sub-processors, human reviewers, and litigation holds.
- Recognize where AI use creates regulatory liability the moment cardholder data, PHI, student records, or GLBA-covered financial information touches an external AI tool.
- Compare the current data practices of the four major AI providers and understand why paid consumer tiers don’t automatically mean private.
- Opt out of AI training data use on ChatGPT, Gemini, Copilot, and Claude.
- Apply a six-step framework for building an organizational AI data policy: inventory, classify, negotiate, train, monitor, and review.
- Use the Golden Rule of AI privacy as a simple, teachable test for every prompt: would you be comfortable seeing it on the front page?
Our Speakers:
Kyle Smith
CISA, CISSP, QSA
Security Advisor, Team Supervisor, Security Advisor Services,
Allison Zwaschka
PCIP
Senior Customer Success Manager
Need assistance with your AI program?
AI introduces new risks. The right policy and testing strategy can keep your organization protected.
Whether you’re building an AI policy from the ground up, pressure-testing an existing one, or exploring AI penetration testing and consulting, CampusGuard has the expertise to help your organization stay secure and ahead of the curve
Contact us to learn more and get started!