AI-related Regulations and Standards Implementation and Assurance
Process-based implementation and assessment workbenches
Overview
Each AI-related regulations and standards implementation and assessment workbench directs an EN/ETSI/ISO/NIST standard or DOR/NIS2/CRA regulation implementation and assessment across the organisation, using a process-based approach. Process owners work from action lists, determine requirements, risks, controls, implementation roadmap, artefacts and compliance.
A process flow approach is adopted for the implementation, for example:
-
Cyber Resilience Act
- Scope
- Requirements
- Vulnerabilities
- Conformity
- Information sharing
-
DORA
- ICT risk
- Incidents
- Testing
- Third parties
- Information sharing
- NIS2
- EN standards
- ETSI standards
- ISO standards
- System development life-cycle best practice
-
Agent-control best practices
- Direct the harness
- Plan the agent
- Code and build
- Before the agent acts
- After the agent writes
- Test, certify and ship
- Deploy and operate
- Monitor, handle incidents and retire
-
Multi-agent system best practices
- Direct the multi-agent harness
- Plan the graph
- Identity, non-human identity and delegation
- Orchestrate and message
- Shared tools, MCP and memory
- Before and after hops
- Certify the graph and ship
- Operate the mesh
- Monitor, handle incidents and retire