AI usage policy checklist

AI usage policy checklist

This checklist will help you implement an effective governance structure so AI usage is both ethical and follows cyber security best practise.

author
Kordia
date
24 Apr 2026

With the improper use of AI emerging as a significant risk for organisations, Kordia has identified the need for a practical governance tool to support safe and responsible use.

This AI usage policy checklist helps directors assess whether management has clear rules for staff AI use, defined accountability, and appropriate approval, oversight and assurance processes for higher risk AI systems. It supports informed governance by prompting the right questions about data sovereignty, supplier risk, bias, transparency and incident response.

This checklist complements the IoD’s Cyber Risk: A Practical Guide and helps directors ask the right questions, strengthen their oversight of AI-related risks, and foster informed discussions at the board table.

Download the AI usage policy checklist