AI
The biggest change brought by the AI Act isn't about compliance. It's about leadership.

Just a few years ago, most organisations were asking whether they should adopt artificial intelligence.
Today, the question is very different.
How do we use AI in a way that creates business value while maintaining the trust of customers, employees and partners?
Artificial intelligence has quickly become part of everyday business. We use AI to develop software, analyse data, automate routine tasks and improve the way we work. The pace of change is faster than most of us expected.
At the same time, one important development is receiving far less attention than it deserves.
The EU AI Act is now coming into force in phases. The requirement for AI literacy has already applied since February 2025, with additional provisions taking effect over time. Although Norway is not a member of the European Union, the AI Act is considered EEA-relevant and is expected to become part of Norwegian law. Many Norwegian organisations are already affected through customers, suppliers or business activities within the EU.
But the AI Act itself is not the biggest story.
The real shift is that artificial intelligence has moved beyond the IT department and become a leadership responsibility.
AI is no longer an IT project
In many organisations, AI is already used every single day.
A developer uses GitHub Copilot. A project manager summarises meetings with AI. Marketing teams create content with AI. Customer service teams use it to draft responses.
Each use case may seem harmless on its own.
Taken together, however, these everyday uses represent a fundamental shift in how organisations operate. And that naturally leads to a different set of questions.
Do we know where AI is actually being used? Do our employees have the knowledge they need? Have we established clear guidelines? And perhaps most importantly, who is accountable when AI becomes part of an important decision or business deliverable?
These are no longer questions for IT alone. They are leadership questions.
The biggest risk isn't the fines
When people talk about the AI Act, the conversation often focuses on potential fines.
But that's the wrong place to start.
For most organisations, the greatest risk is not regulatory penalties. It's adopting AI without building the knowledge, governance and capabilities needed to use it responsibly. That can lead to poor decisions, increased business risk and reduced trust, both internally and with customers.
There's also a commercial perspective.
Organisations that can demonstrate responsible AI practices will be in a much stronger position when customers ask how AI is used, how decisions are made and how risks are managed.
Trust is quickly becoming a competitive advantage.
AI literacy is becoming a leadership responsibility
One of the most important aspects of the AI Act is its requirement for AI literacy.
This may well become the regulation's most significant long-term impact.
The AI Act is not primarily about technology. It is about the people who develop and use it.
It's worth remembering that the requirement for AI literacy has already been in force since February 2025.
This doesn't mean every employee needs to become an AI expert. Rather, organisations need to ensure that everyone who develops or uses AI has the knowledge required to understand its opportunities, limitations and risks, in line with their role and responsibilities.
Ultimately, AI literacy is about much more than training. It is about an organisation's ability to adopt AI in a safe, responsible and value-driven way.
Over time, I believe AI literacy will become just as important as digital competence has been over the past two decades.
What does this mean for your organisation?
For business leaders, this is less about legal compliance and more about taking practical steps today.
Begin by understanding where AI is already being used across your organisation. In many businesses, its use is far more widespread than leadership realises.
Build AI capability across the organisation, ensuring that people have the knowledge appropriate to their roles, not just within technical teams.
Establish clear ownership for how AI is governed and used. Then begin documenting responsible AI practices, not simply because regulation requires it, but because transparency and trust will increasingly become a competitive advantage as customers ask more informed questions.
What does this mean for us at Frontkom?
At Frontkom, we don't just help organisations adopt AI. We are going through the same transformation ourselves.
As a company that develops digital solutions while increasingly embedding AI into our own ways of working, we face many of the same questions as our clients. How do we use AI responsibly? How do we govern it? And how do we ensure that innovation never comes at the expense of trust?
Our responsibility therefore goes beyond understanding what AI can do. We also need to understand how it affects governance, software delivery, security, privacy and, ultimately, trust.
In practice, this means knowing which AI tools are used throughout a client engagement, understanding how AI contributes to a particular outcome, and having clear policies on what information should never be entered into AI systems.
For us, AI governance is not a compliance exercise. It is the foundation for building digital solutions that people can trust.
Over the past few years, we have invested significantly in building expertise in AI literacy and AI governance. Not simply to prepare for new regulation, but to strengthen our ability to help clients make informed decisions in a landscape where technology continues to evolve faster than regulation.
Our ambition is to be a trusted advisor, helping organisations adopt AI in a way that creates value, manages risk and earns lasting trust.
The better we understand these challenges ourselves, the better equipped we are to help our clients navigate them safely, responsibly and with confidence.
Beyond the AI Act
The AI Act will probably not be remembered for introducing more regulation.
It will be remembered for marking a fundamental shift.
From asking:
"How can we use AI?"
to asking:
"How do we build organisations that use AI in a way people can trust?"
For me, this is one of the most important leadership conversations organisations need to have today.
So I'll leave you with two questions.
Is AI still viewed as an IT initiative in your organisation, or has it become part of the way your organisation is governed?
And if your customers asked today how you use AI, who would be accountable for the answer?
Because in the end, responsible AI isn't just about technology. It's about leadership.
Transparency note: This article reflects the author's own analysis and professional experience. AI was used as an editorial assistant to improve language, structure and readability.


