Law / Frameworks / NIST AI RMF / Manage

NIST AI RMF, ManageMANAGE 3.1

AI risks and benefits from third-party resources are regularly monitored, and risk controls are applied and documented.NIST AI Risk Management Framework, version 1.0, January 2023 (NIST AI 100-1), MANAGE 3.1

We read each law below as bearing on this control. That does not mean the control, done well, meets the law: what each law asks is on its own page. Corpus as of .

2
laws
2
places
0
with court rulings behind them
1
not yet in force

The same ground elsewhere linked through the kinds of duty both controls are mapped from

A law in force is unmarked; the rest wear their state: not yet in force

  • European Union
  • New Jersey

AI risk obligations

2 laws, 2 places
PlaceLawWhat it asks, as read here
European Union AI Act, Article 26(1) to (5) (deployer use, human oversight, input data and monitoring) from , in 14 months

If you are the deployer of a high-risk AI system, take appropriate technical and organisational measures to ensure you use it in accordance with the provider's instructions for use.

New Jersey New Jersey Disparate Impact Discrimination Rules, Automated Employment Decision Tools

If your employment practice or policy that causes a disparate impact relies on an outside vendor's automated tool, take reasonable steps to ensure the vendor's tool is consistent with the New Jersey Law Against Discrimination; relying on the vendor does not by itself excuse a resulting disparate impact.

Full text of the NIST AI Risk Management Framework, public domain (a US government work). Every control of the framework.