Skip to main content
AI Consumer Compliance
πŸ‡ΊπŸ‡Έ United States Β· Guidance Β· Framework

NIST AI Risk Management Framework (AI RMF 1.0)

NIST AI 100-1 Β· Last reviewed 2 weeks ago

Voluntary US framework for managing AI risks across the life cycle (Govern, Map, Measure, Manage).

In plain English

NIST's AI Risk Management Framework is a voluntary playbook that many US companies and agencies use to design, deploy, and monitor AI. While not a law, it is often cited by regulators and contracts.

What this means for consumers

If a US company follows the NIST AI RMF, you can generally expect documented risk assessments, testing for bias and security, and ongoing monitoring.

Key obligations

  • Govern
  • Map
  • Measure
  • Manage

Related regulations

  • πŸ‡©πŸ‡ͺ Germany Β· Enacted

    EU AI Act

    The world's first comprehensive horizontal AI law, imposing risk-based obligations across the EU.

  • πŸ‡ΊπŸ‡Έ United States Β· Enacted

    Colorado AI Act

    First comprehensive US state AI law targeting consequential decisions; effective in 2026.

  • πŸ‡¬πŸ‡§ United Kingdom Β· Enacted

    UK GDPR Art. 22

    Rights regarding solely automated decisions with legal or similarly significant effects.

  • πŸ‡¨πŸ‡³ China Β· Enacted

    China Generative AI Rules

    Requirements for generative AI services offered to the Chinese public, including labeling, training-data quality, and fi...