AI Moves Fast, Privacy Has to Move Faster with Ojas Rege

Mar 3, 2026

In this episode, Caleb Tolin welcomes Ojas Rege of OneTrust for a practical, wide-ranging conversation on how data privacy and governance must evolve alongside enterprise AI adoption.

Ojas explains why AI fundamentally changes the privacy conversation: the same systems that enable organizations to move faster can also cause harm faster when guardrails aren’t in place. From agentic AI systems that dynamically repurpose data to general-purpose models that blur traditional notions of “intended use,” the challenge isn’t just compliance—it’s trust.

The discussion dives deep into purpose limitation under GDPR and the EU AI Act, clarifying where organizations commonly misunderstand consent and where AI training introduces entirely new risks. Ojas emphasizes a simple but powerful test: are you using personal data for the same purpose you originally received consent for—or has AI quietly expanded that purpose?

The conversation then shifts to cloud and data sovereignty, particularly for European organizations navigating geopolitical uncertainty. Ojas outlines why data mapping, prioritization, and software supply chain visibility matter more than ever—and why perfection is less realistic than smart prioritization.

Ultimately, this episode reframes governance as an enabler. When privacy and data governance are embedded early, organizations can innovate faster, build lasting trust, and deploy AI with confidence in an increasingly complex global environment.

What you’ll learn:

  • Why AI scales privacy risk just as fast as business value
  • How purpose limitation breaks down with general-purpose AI models
  • When AI use requires new consent—and when it doesn’t
  • Why transparency is foundational to long-term customer trust
  • How data sovereignty concerns extend beyond cloud providers
  • Where software supply chains create hidden privacy blind spots
  • How good governance can accelerate, not block, AI deployment

Chapters:
[0:00] Welcome & Introductions
[1:45] AI’s Impact on Data Privacy
[3:45] Purpose Limitation Explained
[6:20] Trust, Transparency, and Risk
[7:45] Cloud & Data Sovereignty
[10:20] Software Supply Chain Risks
[12:15] Data as National AI Value
[14:00] Governance vs. Innovation

Episode Resources:
Caleb Tolin on LinkedIn: https://www.linkedin.com/in/calebtolin/
Ojas Rege on LinkedIn: https://www.linkedin.com/in/ojasrege/