NIST.AI.100 1 · Table (p.28)
From NIST.AI.100-1.pdf · page 28
| 0 | 1 |
|---|---|
| NIST AI 100-1 | AI RMF 1.0 |
| Table 1: Categories and subcategories for the GOVERN function. (Continued) | |
| Categories | Subcategories |
| GOVERN 1.5: Ongoing monitoring and periodic review of the | |
| risk management process and its outcomes are planned and or- | |
| ganizational roles and responsibilities clearly defined, including | |
| determining the frequency of periodic review. | |
| GOVERN 1.6: Mechanisms are in place to inventory AI systems | |
| and are resourced according to organizational risk priorities. | |
| GOVERN 1.7: Processes and procedures are in place for decom- | |
| missioning and phasing out AI systems safely and in a man- | |
| ner that does not increase risks or decrease the organization’s | |
| trustworthiness. | |
| GOVERN 2: | GOVERN 2.1: Roles and responsibilities and lines of communi- |
| Accountability | cation related to mapping, measuring, and managing AI risks are |
| structures are in | documented and are clear to individuals and teams throughout |
| place so that the | the organization. |
| appropriate teams | |
| GOVERN 2.2: The organization’s personnel and partners receive | |
| and individuals are | |
| AI risk management training to enable them to perform their du- | |
| empowered, | |
| ties and responsibilities consistent with related policies, proce- | |
| responsible, and | |
| dures, and agreements. | |
| trained for mapping, | |
| GOVERN 2.3: Executive leadership of the organization takes re- | |
| measuring, and | |
| sponsibility for decisions about risks associated with AI system | |
| managing AI risks. | |
| development and deployment. | |
| GOVERN 3: | GOVERN 3.1: Decision-making related to mapping, measuring, |
| Workforce diversity, | and managing AI risks throughout the lifecycle is informed by a |
| equity, inclusion, | diverse team (e.g., diversity of demographics, disciplines, expe- |
| and accessibility | rience, expertise, and backgrounds). |
| processes are | |
| GOVERN 3.2: Policies and procedures are in place to define and | |
| prioritized in the | |
| differentiate roles and responsibilities for human-AI configura- | |
| mapping, | |
| tions and oversight of AI systems. | |
| measuring, and | |
| managing of AI | |
| risks throughout the | |
| lifecycle. | |
| GOVERN 4: | GOVERN 4.1: Organizational policies and practices are in place |
| Organizational | to foster a critical thinking and safety-first mindset in the design, |
| teams are committed | development, deployment, and uses of AI systems to minimize |
| to a culture | potential negative impacts. |
Source Metadata