ISITC TALKTIME: AI Governance Responsibilities for Senior Managers
TalkTime Podcast AI Governance Responsibilities for Senior Managers
Artificial intelligence is already reshaping financial markets, operational resilience, supplier oversight and regulatory accountability. In this ISITC Europe podcast, Gary Wright speaks with Bob Morel from AIRTA Systems about what senior managers need to understand now: AI is not a future governance issue, it is already embedded in business processes, third-party services and cyber risk exposure.
Why This Episode Matters
AI tools are entering organisations from multiple directions: in-house development, supplier platforms, frontier model APIs, retrieval augmented generation systems and employee experimentation. For regulated financial services firms, that creates a new accountability challenge. Senior managers need visibility over where AI is used, how it is controlled, who is responsible, and whether the firm can evidence safe, secure and compliant deployment.
What You Will Learn
- Why existing regulations already create AI responsibilities for senior managers.
- How AI governance, compliance risk and cyber risk increasingly overlap.
- Why relying on a frontier model provider does not remove firm-level accountability.
- How third-party AI integrations can create regulatory and reputational exposure.
- Why firms need an AI inventory, policy framework, governance model and ongoing monitoring.
- How AIRTA Systems positions its AI control centre for safety testing, LLM and agentic security testing, evidence management and continuous observability.
Featured Discussion Themes
AI regulation and global principles: The episode explores how AI governance frameworks connect to human rights principles, OECD principles, the EU AI Act, NIST AI Risk Management Framework and emerging regional requirements. The discussion highlights a common regulatory direction: firms must understand what AI systems they use, where they are used, and how those systems affect customers and operations.
Third-party accountability: Gary Wright and Bob Morel discuss why firms cannot simply transfer responsibility to AI suppliers. If an AI integration affects customers, the regulated firm remains accountable for the pipeline, including supplier controls, service arrangements and contractual protections.
Compliance, risk and cyber threats: The conversation frames AI not as a standalone technology issue but as a convergence point for compliance, operational risk and cybersecurity. As AI models become more powerful, both defensive and offensive use cases advance, increasing the need for governance that can keep pace.
Who Should Listen?
This podcast is designed for senior managers, board members, compliance officers, risk leaders, operations executives, technology managers, legal teams and financial services professionals who need a practical view of AI governance responsibilities under existing regulatory expectations.
Viewing time: 22 mins
Part 2 – Continues the discussion and will be published next week.

Bob Morel is an AI security and Cybersecurity SME available for consultancy roles. Bob is the CEO of AIRTA Systems, an AI Risk Management platform designed to facilitate market access for AI-driven applications, and Co-Founder of Genbounty.
With a robust background in thought leadership, Bob previously served as the Head of Application Security at Centrica and the Application Security Lead for a cryptocurrency exchange. He is an active contributor to the cybersecurity community as an author for Infosec, creating learning paths on topics such as Breaking LLMs and AI-driven Applications, and the ChatGPT for offensive security. His expertise is supported by a B.Sc. in Computer Science, and industry certifications including the (ISC)² CISSP, CompTIA Security+, and SecAI+.

Leave a Reply
You must be logged in to post a comment.