The NIST AI Risk Management Framework (NIST AI RMF 1.0) provides organizations with practical guidance to address risks of AI systems, fostering the design, development, and deployment of trustworthy and responsible AI technologies.
1. The Four Core Functions: Govern, Map, Measure, Manage
The NIST AI RMF is structured around four iterative functions:
- Govern: Cultivate a culture of risk management, establish accountability structures, and mandate AI safety policies.
- Map: Identify the AI context, categorize operational use cases, and anticipate positive and negative societal impacts.
- Measure: Employ quantitative and qualitative metrics to evaluate bias, accuracy, robustness, and cybersecurity resilience.
- Manage: Allocate resources to identified AI risks, implement guardrails, and maintain continuous post-deployment monitoring.
