Governance
Governance & accountability: what AI regulations require
AI policy, roles, accountable leadership, regulatory watch.
26 requirements · 10 regulations · 9 checks
Requirements by regulation
UKUK principles1
UK-04
Accountability and governance Principle 4
EUDORA1
DORA-05
EUNIS21
NIS2-20
COColorado AI Act1
CO-05
Risk management policy and programme §6-1-1703(2)
USUS federal1
USF-01
Chief AI Officer and AI governance board M-25-21 §3
INTLISO 420013
ISO-4.3
Scope of the AIMS Cl. 4.3, 4.4
ISO-5.2
AI policy Cl. 5.2, A.2
ISO-5.3
Roles, responsibilities, reporting of concerns Cl. 5.3, A.3
INTLOECD AI1
OECD-1.5
Accountability 1.5
Checks in this theme
Most shared first
| Code | Check | Used by |
|---|---|---|
| CHK-ROLES-CLARIFIED | Roles, responsibilities and delegated authorities are documented and clear to relevant stakeholders | |
| CHK-EXEC-ACCOUNT | Executive leadership is accountable for AI risk decisions (board committee, risk appetite) | |
| CHK-LEGAL-MAP | Applicable legal and regulatory requirements for AI are identified, mapped and monitored | |
| CHK-POL-TRUST | Trustworthy-AI characteristics are embedded in organizational policies and a safety-first culture | |
| CHK-REVIEW-PLAN | Ongoing monitoring and periodic review of the risk-management process are planned, with defined roles and review frequency | |
| CHK-TEAM-DIVERSE | A diverse, interdisciplinary team is involved and its participation documented | |
| CHK-GO-NOGO | A go/no-go determination on system deployment is made and documented | |
| NEW-ISO42001-01 | AIMS scope defined and approved | |
| NEW-US-CA-SB53-03 | Anonymous internal reporting channel in place |
Related themes
Run these requirements across all your AI systems
TrustFlow inventories your systems, qualifies them under each regulation and collects evidence once for every referential.