James Davenport

Proposal(s) title:
  • Artificial Intelligence and Cybersecurity Standardisation
Proposal(s) topic:

Artificial Intelligence

Impact on society:

The EU AI Act places high importance on cybersecurity of AI systems and products, but there is comparatively little work done on this, and none that has reached the level of mature standards. Hence it is important to develop these standards, and ensure that they reflect both the cybersecurity point of view and the specific difficulties of AI, as in the ETSI list , and possibly wider.

Proposal(s) title:
  • Artificial Intelligence Standardisation (including Cybersecurity)
Proposal(s) topic:

Artificial Intelligence

Impact on SMEs:

Many of these standards, e.g. Bias, impact society. In terms of SMEs, I have been closely associated with a software SME, and always ask myself how this SME would be impacted.

Impact on society:

Europe has already seen many cybersecurity attacks, whether by hostile nation states or by criminal gangs, even before AI becomes widely deployed. The impact of these has already led to at least one death, as well as much damage and distress. As AI becomes more widely deployed, these risks will only grow, and need effective standards-driven mitigations. The impact of my work will be coherence between the developing European standards in ISO-IEC JTC/1 SC27 and the current international draft standards in the area of cybersecurity. In addition, I will feed in research from the cybersecurity community as it affects AI-specific attack methods.

Proposal(s) title:
  • Artificial Intelligence Standardisation (Accuracy, Cybersecurity and other topics)
Proposal(s) topic:

Cybersecurity/Network and Information security

Impact on SMEs:

Many of these standards, e.g. Bias, impact society. In terms of SMEs, I have been closely associated with a software SME, and always ask myself how this SME would be impacted. I am also sensitive to the views of one of my editors who is CTO of an Austrian SME.

Impact on society:

Artificial Intelligence has numerous societal implications, particularly around implicit biases. Machine Learning learns from data which reflects the society we have (or had if the data is historic) rather than the society we believe we have, or wish we have. Hence my WG is working on a Bias standard, dealing operationally with detection and mitigation, to build on the excellent work does in ISO-IEC, to which I have contributed. Furthermore, I frequently give interviews with media (typically UK media) on AI. I have also spoken on AI standardisation at relevant subject-matter conferences (on Natural Language Processing and Symbolic Methods)


Value of Research


There is currently no standard addressing the cybersecurity of AI systems. In ISO/IEC JTC1 SC27 WG4  27090 is under development; and I contribute directly to this work.

James Davenport
Full Name: James Davenport
Role: convenor
Title & Organisation Name: University of Bath
Country: United Kingdom
Standards Development Organisation: