Law / Frameworks / NIST AI RMF / Manage
NIST AI RMF, ManageMANAGE 3.1
AI risks and benefits from third-party resources are regularly monitored, and risk controls are applied and documented.NIST AI Risk Management Framework, version 1.0, January 2023 (NIST AI 100-1), MANAGE 3.1
We read each law below as bearing on this control. That does not mean the control, done well, meets the law: what each law asks is on its own page. Corpus as of .
- 2
- laws
- 2
- places
- 0
- with court rulings behind them
- 1
- not yet in force
The same ground elsewhere linked through the kinds of duty both controls are mapped from
- NIST AI 600-1GAI-RISK-12 Value Chain and Component Integration
- MIT mitigations3.3 Access Management
- NIST Privacy FrameworkID.DE-P2 Data processing ecosystem parties (e.g., service providers, customers, partners,...
- NIST Privacy FrameworkID.DE-P3 Contracts with data processing ecosystem parties are used to implement appropriate...
- NIST CSF 2.0GV.SC-02 Cybersecurity roles and responsibilities for suppliers, customers, and partners are...
- NIST CSF 2.0GV.SC-05 Requirements to address cybersecurity risks in supply chains are established,...
A law in force is unmarked; the rest wear their state: not yet in force
AI risk obligations
2 laws, 2 places| Place | Law | What it asks, as read here |
|---|---|---|
| AI Act, Article 26(1) to (5) (deployer use, human oversight, input data and monitoring) from , in 14 months |
If you are the deployer of a high-risk AI system, take appropriate technical and organisational measures to ensure you use it in accordance with the provider's instructions for use. |
|
| New Jersey Disparate Impact Discrimination Rules, Automated Employment Decision Tools |
If your employment practice or policy that causes a disparate impact relies on an outside vendor's automated tool, take reasonable steps to ensure the vendor's tool is consistent with the New Jersey Law Against Discrimination; relying on the vendor does not by itself excuse a resulting disparate impact. |
Full text of the NIST AI Risk Management Framework, public domain (a US government work). Every control of the framework.