NIST AI Risk Management Framework 1.0
A voluntary, widely adopted framework organised around four functions — Govern, Map, Measure and Manage — that has become the de facto reference for building trustworthy AI programmes in the US and beyond.
Overview
A voluntary, widely adopted framework organised around four functions — Govern, Map, Measure and Manage — that has become the de facto reference for building trustworthy AI programmes in the US and beyond.
Key dates
- Jan 26, 2023AI RMF 1.0 released
- Jul 26, 2024Generative AI Profile (NIST-AI-600-1) released
Risk areas addressed
Who it applies to
Any organisation designing, developing, deploying or using AI systems that wants a structured, voluntary approach to managing AI risk.
Penalties & enforcement
None — voluntary framework.
Enforced by: National Institute of Standards and Technology (non-binding)
Whatever your exposure to NIST AI RMF, the practical work is the same: inventory the AI systems in scope, map them to concrete obligations, and keep the evidence to show it. A structured AI governance programme — risk assessments, documentation and continuous monitoring — turns a moving regulatory target into a repeatable process.