In line with public procurement and AI governance guidelines, my Department undertook a comprehensive risk assessment process as part of the deployment of the Digital Contact Centre (DCC). This included a Data Protection Impact Assessment (DPIA).
The DPIA assessment concluded that the processing of data did not present a high risk to the rights and freedoms of individuals and, accordingly consultation with the Data Protection Commission was not required. It is not standard practice to publish DPIAs.
The DCC project was not undertaken as a pilot. The performance of this project has delivered a number of benefits including the ability for applicants to view the status of their applications, book and amend appointments and access to 24/7 customer support through the chatbot.
Users are clearly informed that they are interacting with an AI system and can speak to a member of the customer service team at any stage of the process. My Department is committed to being transparent and upfront with end-users when AI system are used. This includes notifying end-users when they are interacting with the chatbot, in line with the AI Act.
My Department complies with the “Guidelines for the Responsible Use of AI in the Public Service” issued by the Department of Public Expenditure, Infrastructure, Public Service Reform and Digitalisation and also with guidance issued to all Government departments by the National Cyber Security Centre (NCSC) in relation to the cyber security.
My Department continues to assess the opportunities presented by all digital tools, including AI, to improve the delivery, security, efficiency, and accessibility of services to our customers. Approval for adoption of any new tools or solutions is subject to appropriate governance processes, including risk assessment.