Skip to content
    Back to Regulatory Radar
    CriticalNew RegulationMarch 13, 2024

    EU AI Act Adopted by European Parliament

    The European Parliament adopted the EU Artificial Intelligence Act, the world's first comprehensive legal framework for AI regulation. The regulation establishes a risk-based classification system with four tiers: unacceptable risk (banned), high risk (strict compliance obligations), limited risk (transparency requirements), and minimal risk (voluntary codes of conduct). The Act applies to providers, deployers, importers, and distributors of AI systems placed on the EU market or whose output is used within the EU.

    EU AI ActSaaSHealthcareFinTech

    Key Analytics

    March 13, 2024
    Event Date
    Time Remaining
    August 24, 2026
    Last Verified
    1
    Frameworks Affected

    Impact Analysis

    Organizations developing or deploying AI systems that serve EU markets must begin classifying their AI systems under the Act's risk categories and prepare compliance roadmaps aligned with the phased implementation timeline. High-risk AI systems, common in healthcare diagnostics, credit scoring, and employment decisions, face requirements including conformity assessments, technical documentation, human oversight provisions, and post-market monitoring. General-purpose AI model providers face additional transparency and safety obligations.

    Recommended Actions

    • Inventory all AI systems in use or in development and classify each under the EU AI Act's risk tiers to determine applicable compliance obligations.
    • Establish an AI governance program that addresses technical documentation, risk management, data governance, and human oversight requirements for high-risk systems.
    • Engage legal counsel to assess extraterritorial applicability and begin developing a compliance timeline aligned with the Act's phased enforcement dates.

    Always verify requirements with official regulatory sources.

    Estimated Remediation Effort

    Indicative effort to address this development, broken down by your organization's current compliance posture. Select the posture that best matches where you are today.

    A partial program exists: some policies and controls are in place, but coverage, evidence, and ownership have gaps.

    Analyst estimate
    Significant85-180 hours
    Key Workstreams
    • Risk-tier classification of the existing AI inventory
    • AI governance program gap closure for high-risk systems
    • Extraterritorial applicability analysis and phased roadmap

    The Cost of Waiting

    Readiness work is dramatically cheaper before a deadline than after one. The ranges below come from the same estimate: the difference is only how prepared you are when the work starts.

    Start preparing nowSignificant · 85-180 hours
    Start cold under pressureMajor · 200-430 hours

    Roughly 115 to 250 hours avoided by preparing early

    Effort ranges are indicative planning estimates, not quotes. Actual effort depends on organizational scope, environment complexity, and evidence maturity. Talk to us for a scoped assessment.

    Related Events