GovernanceCore
Voluntary frameworkUnited States

NIST AI Risk Management Framework 1.0

A voluntary, widely adopted framework organised around four functions — Govern, Map, Measure and Manage — that has become the de facto reference for building trustworthy AI programmes in the US and beyond.

Status
Voluntary framework
Jurisdiction
United States · Standard
Adopted
Jan 26, 2023
In force
Jan 26, 2023
Enforcement date
Regulator / body
National Institute of Standards and Technology (non-binding)
Sectors
Cross-sector
Extraterritorial
No

Overview

A voluntary, widely adopted framework organised around four functions — Govern, Map, Measure and Manage — that has become the de facto reference for building trustworthy AI programmes in the US and beyond.

Key dates

  • Jan 26, 2023
    AI RMF 1.0 released
  • Jul 26, 2024
    Generative AI Profile (NIST-AI-600-1) released

Risk areas addressed

Safety & robustnessBias & discriminationTransparencyGovernance & accountability

Who it applies to

Any organisation designing, developing, deploying or using AI systems that wants a structured, voluntary approach to managing AI risk.

Penalties & enforcement

None — voluntary framework.

Enforced by: National Institute of Standards and Technology (non-binding)

Getting ready

Whatever your exposure to NIST AI RMF, the practical work is the same: inventory the AI systems in scope, map them to concrete obligations, and keep the evidence to show it. A structured AI governance programme — risk assessments, documentation and continuous monitoring — turns a moving regulatory target into a repeatable process.

Official source

NIST AI Risk Management Framework

Related regulations

← All regulations