Sammanfattning

Problematization: The rapid adoption of Artificial Intelligence (AI) in banking raises challenges for data privacy and security. While existing literature acknowledges the tension between AI innovation and regulatory compliance, there is limited empirical research on how Swedish banks balance this under GDPR and the AI Act. This thesis fills that gap by investigating how Swedish banks manage implementation of AI, while ensuring data privacy, security, and regulatory compliance. Purpose: The thesis aims to explore how Swedish banks manage data privacy, security and regulatory compliance in the context of implementation of AI. It identifies the practices applied for AI adoption while meeting legal obligations and offers country-specific insights into the dynamics between AI and regulatory requirements in the Swedish banking sector. Method: This thesis adopts an exploratory, qualitative method grounded in interpretivism and an inductive approach, to identify themes and patterns from gathered data. Data was collected through semi-structured interviews with AI and IT experts representing large Swedish banks. Secondary sources, such as bank reports and regulatory publications supported the analysis. Thematic coding and triangulation were applied to ensure trustworthiness. Main results: Swedish banks ensure data privacy and security in AI implementation by treating regulatory compliance as a proactive and strategic priority. Through structured processes, technical safeguards, and continuous oversight, banks embed risk management and data governance into operations. Key mechanisms such as DPIAs, DPOs, and ethical frameworks, enhance transparency and stakeholder assurance. Successful AI adoption requires alignment between innovation with early integration of ethical and legal considerations.

Utforska vidare

Liknande uppsatser

Uppsatser med liknande ämnen och nyckelord.