Compliance Library Blog Product Sign In

NIST-AI-RMF

NIST AI Risk Management Framework 1.0 (AI 100-1)

US Version 1.0 137 obligations

Requirement Obligations

39

Title I — Foundational Information

Article TR-1. Valid and Reliable

3 obligations

Article TR-2. Safe

3 obligations

Article TR-3. Secure and Resilient

3 obligations

Article TR-4. Accountable and Transparent

1 obligation

Title II — AI RMF Core Framework

Chapter 1 — GOVERN

Article GV-1. Policies, Processes, Procedures, and Practices

2 obligations

Article GV-2. Accountability Structures

2 obligations

Article GV-4. Organizational Culture of AI Risk

1 obligation

Article GV-5. Engagement with Relevant AI Actors

3 obligations

Chapter 2 — MAP

Article MP-1. Context is Established and Understood

5 obligations

Article MP-2. Categorization of the AI System

1 obligation

Article MP-3. AI Capabilities, Usage, Goals, Benefits, and Costs

1 obligation

Article MP-5. Impact Characterization

2 obligations

Chapter 3 — MEASURE

Article MS-2. Trustworthy Characteristics Evaluation

9 obligations

NIST-RMF-MS-2-02 Requirement

Ensure Human Subject Evaluations Meet Protection Requirements

When conducting evaluations involving human subjects, organizations must ensure these evaluations meet applicable human

NIST-RMF-MS-2-03 Requirement

Measure and Demonstrate AI System Performance Criteria

Organizations must measure AI system performance or assurance criteria qualitatively or quantitatively and demonstrate t

NIST-RMF-MS-2-06 Requirement

Demonstrate AI System Validity and Reliability

Organizations must demonstrate that the AI system to be deployed is valid and reliable.

NIST-RMF-MS-2-09 Requirement

Demonstrate AI System Safety and Risk Tolerance

Organizations must demonstrate that the AI system to be deployed is safe, its residual negative risk does not exceed the

NIST-RMF-MS-2-10 Requirement

Implement Safety Metrics for System Reliability and Monitoring

Organizations must ensure safety metrics reflect system reliability and robustness, real-time monitoring, and response t

NIST-RMF-MS-2-11 Requirement

Evaluate AI System Security and Resilience

Organizations must evaluate AI system security and resilience as identified in the MAP function.

NIST-RMF-MS-2-19 Requirement

Evaluate Fairness and Bias

Organizations must evaluate fairness and bias as identified in the MAP function.

NIST-RMF-MS-2-21 Requirement

Assess Environmental Impact and Sustainability

Organizations must assess environmental impact and sustainability of AI model training and management activities as iden

NIST-RMF-MS-2-23 Requirement

Evaluate TEVV Metrics and Processes Effectiveness

Organizations must evaluate the effectiveness of the employed TEVV metrics and processes in the MEASURE function.

Chapter 4 — MANAGE

Article MG-2. Strategies for Benefits and Impact Management

2 obligations

Article MG-4. Risk Treatment and Communication Plans

1 obligation

Start your compliance assessment

Map obligations to your AI systems, identify gaps, and generate board-ready reports. Plans start at $149/mo.

Get Started