Glossary term
Glossary term
Governance and Compliance
A maintained record of identified AI risks, owners, ratings, treatments, due dates, residual risk, approvals, and review status. It supports governance transparency and accountability and should be connected to issue management and governance reporting so AI risks do not sit separately from enterprise risk, compliance, and audit workflows.
Credo AI, IBM watsonx.governance, and ServiceNow AI Governance provide AI risk register modules used by enterprises like H&M Group and the United Nations.
The MIT AI Risk Repository is a publicly available risk register-style catalog of over 700 risks across seven domains, useful as an input to enterprise registers.
ISO 31000 and ISO/IEC 23894:2023 reference risk register practices applicable to AI risk recording and reporting in clauses 6.6 and 6.7.