When selecting a conversational AI platform for use in a regulated industry, remember that cutting corners can have disastrous consequences. When virtual assistants aren’t developed and deployed with an eye toward regulatory compliance, customer experience will suffer. Even worse, your organization risks running afoul of the many ever-shifting regulatory frameworks in which they operate.

HIPAA, GDPR, and SOC2 are just a few of the common frameworks that may constrain the behavior of your virtual assistant, the data it uses and how that data is stored and protected. You’ll want to be sure that your chatbots are designed and deployed with an understanding of all relevant regulations: those that apply to your industry and the regions in which you and your customers operate.

For example, consider GDPR. This framework was created to harmonize data protection law across the EU, but it imposes strict rules on organizations hosting and processing data anywhere in the world. Violations are costly – in 2020, the EU collected more than $191 million in penalties for GDPR violations, up 40% from the prior year. Virtual assistants need to provide users a simple way to access, review and download electronic copies of their data. Users should be able to delete their information if they want. You’ll need to evaluate what information your organization is allowed to store in the form of chat logs, and what you can share with third parties. Your organization must also take reasonable care to protect customer data against a network breach.

IBM has invested heavily in making watsonx Assistant GDPR-ready, so that our customers can achieve compliance easily and with a high degree of control, enabling them to be ready to respond when regulations inevitably change. Our conversational AI platform allows you to easily opt out of log data use before data is collected or created, and to label and delete existing data that doesn’t conform to GDPR rules.

watsonx Assistant is well-suited to organizations in industries that must comply with strict regulations on how customer data is used, such as healthcare and finance. Let’s look at a few real-world examples of how this can play out.


Watson was crucial to financial institutions adapting to COVID restrictions while adhering to industry regulation. When restrictions hit Europe in 2020, call volume at some banks increased by a factor of 20 to 30. On NatWest’s service lines, customers were struggling to get through to a representative to ask about access to services and the financial implications of the pandemic. NatWest’s AI team sprang into action with their virtual assistant “Cora,” which was built using Watson. Cora fielded customer service inquiries, transforming customer experiences and providing support to agents.

In Australia, leading bank Westpac also improved contact center efficiency with conversational AI. Their bot fielded over 215,000 chats, resolving over 70% of customer inquiries without having to engage an agent.

Auto loan provider GM Financial built a chatbot with watsonx Assistant called “Nanci,” which answered 60% of customer interactions. The company also employed text analytics software to listen and learn from their customer interactions. “IBM’s commitment to cybersecurity and regulatory compliance allows us to rest easy, knowing that our customer data is in good hands,” said Bob Beatty, Executive Vice President, Chief Experience Officer, GM Financial.


In healthcare, organizations need to be especially aware of how they’re collecting, storing, and using customer data. In the U.S., for example, virtual assistants operating in the healthcare space must follow all HIPAA requirements, such as in-transit and at-rest encryption, strong passwords, training for employees, and more. watsonx Assistant is designed to make implementation of these capabilities straightforward.

The University of Arkansas for Medical Sciences deployed a virtual agent to field incoming COVID-related queries about testing, symptoms, and other resources. Average registration time has been reduced by 50%. And the Andhra Pradesh National Health Mission portal implemented a virtual agent to help residents get quick answers to their COVID questions. This bot speaks English, Telugu, and Hindi. The virtual agent is deployed in a web browser and is built to safeguard user privacy.

Over the next few years, we can expect regulations to grow even more complex, and their consequences more severe. watsonx Assistant helps the above organizations stay compliant while adapting to — and thriving under — new challenges. See what it can do for you.

Find out what watsonx Assistant can do for you

Was this article helpful?

More from watsonx Assistant

Chatbot examples: A beginner’s guide 

7 min read - A chatbot is a program or script designed to interact and respond to humans in real-time conversation. Different organizations and individuals employ chatbots for a variety of different uses and business functions. Broadly, chatbots provide pre-written responses and information to handle basic requests or to get enough information from customers to connect them to a live agent for better and more specific service. More advanced chatbots use machine learning, artificial intelligence (AI) and generative AI technology to generate real-time responses…

Beyond basics: Six tips for an exceptional customer service strategy

7 min read - Enhancing the customer experience through customer service is among the most important disciplines for any organization for one simple reason: without customers, organizations would fail overnight. Customer service, sometimes called customer care or customer support, relates to the activities organizations take to ensure their customers’ needs are being met. While every customer interaction is different, organizations that want to improve customer retention and grow their customer base must create an effective customer service strategy. Doing so requires combining customization with…

Transform digital experiences and unlock productivity with advanced generative AI

2 min read - AI and automation are driving business transformation by empowering individuals to do work without expert knowledge of business processes and applications. Whether it’s an employee who knows what they need but doesn’t know how to do it, a knowledge worker who knows how to do the task but needs help doing it more efficiently, or a customer who wants to resolve an issue but struggles with self-help tools, artificial intelligence (AI) unlocks new levels of productivity by empowering individuals to…

IBM Newsletters

Get our newsletters and topic updates that deliver the latest thought leadership and insights on emerging trends.
Subscribe now More newsletters