Keep pace with AI Regulations
Prepare for new and emerging regulations and standards such as the European Union AI Act and the National Institute of Standards and Technology (NIST) AI Risk Management Framework (AI RMF) by linking AI use cases to related assessments, risks, controls, and policies. This application serves as a centralized repository for frameworks, citations, control objectives, risk statements. Using this application provides customers with an operational advantage when adopting various regulations and frameworks.
For AI Frameworks such as the EU AI Act and NIST AI RMF, the application offers a pre-defined library to initiate operational activities for the enterprise:
- Agencies
- Authority Documents
- Citations
- Control Objectives
- Risk Statements
Unified Content Management - Centralize AI framework content for the enterprise to manage business operational needs.
- New
- AI Risk and Compliance Content Pack regulatory frameworks:
- AI Risk and Compliance content pack includes additional authority documents, agency mappings, and citations for the following regulatory frameworks: the Transparency in Frontier Artificial Intelligence Act (SB 53) and the Colorado Artificial Intelligence Act (SB 205).
- Multi-framework regulatory citations on control objectives:
- AI Risk and Compliance Content application installed and at least one regulatory framework activated, control objective records display citations from all activated authority documents in the Citations tab, grouped by authority document with citation counts and compliance scores. This enables you to assess cross-framework regulatory coverage from a single control objective record without navigating each framework separately.
- AI Risk and Compliance Content Pack regulatory frameworks:
Permissions and roles:
- Role required to install the app: System Admin (admin)
Disclaimer:
- ServiceNow's Risk products are built to help our customers address regulatory requirements under various jurisdictions across the globe. ServiceNow aims to provide software updates for new or updated major regulations and requirements within twelve to eighteen months of the regulation's publication.
- For the regulations that ServiceNow provides a level of support out of the box, software updates for minor regulatory changes are aimed to be provided within 12 months. For major regulatory changes, we may require up to eighteen months to deliver updates, depending on scope and impact. We differentiate between typical regulatory content updates (which do not require software updates or enhancements) and regulatory updates which do require software updates or enhancements. Content updates are generally delivered on a shorter cadence than if software update or enhancement is required for the regulatory update or change.
- ServiceNow's Risk products do not guarantee compliance. Our products are intended to help provide guidance and input on regulations, and customers are ultimately responsible for their own compliance with applicable regulations.