AI Governance

Available now

NIST AI Risk Management Framework · 1.0

The NIST AI Risk Management Framework (AI RMF 1.0) is a voluntary, public-domain framework for managing AI risk, organized around four functions: Govern, Map, Measure, and Manage. It is the common US reference for building trustworthy AI.

72

requirements tracked

Core plans

Access

Add-on from $19/mo

Scope

How much of the standard Keel models

Models its declared scope in full

Keel authors every leaf requirement in the scope declared below — all 72 of them, with nothing inside that scope left out. A test fails the build if the authored count and the declared count ever diverge, so this framework cannot quietly lose requirements after the fact.

Authored in Keel
72 requirements
In Keel’s scored scope
72 leaf requirements

Keel publishes this for every framework it ships, complete or not, so a readiness percentage can be read against a denominator you can see. Compare every framework

Who it is for

Who needs NIST AI Risk Management Framework?

  • US organizations and federal contractors standing up AI governance
  • Teams that want a voluntary, flexible framework rather than a certification
  • Risk and security leaders aligning AI risk with their existing programs

What Keel does

How Keel helps with NIST AI Risk Management Framework

  • The Govern, Map, Measure, and Manage functions as a trackable control set
  • Evidence shared with your other frameworks so you are not duplicating work
  • A live readiness view across all four functions

Collect once, comply everywhere

NIST AI Risk Management Framework shares canonical controls with ISO/IEC 42001, EU AI Act and AI Governance Essentials and others in the catalog. Implement one of those controls and it counts toward every framework it satisfies, so adding NIST AI Risk Management Framework rarely means starting from scratch.

Shares canonical controls with

  • ISO/IEC 27001
  • CIS Critical Security Controls
  • PCI DSS
  • SOC 2
  • SOX (Sarbanes-Oxley) Section 404
  • NIST Cybersecurity Framework
  • NIST SP 800-53
  • NIST SP 800-171
  • HIPAA
  • GDPR
  • COPPA
  • Google Play Families
  • Amazon Appstore Child-Directed Apps
  • Apple App Store Kids Category
  • ISO 9001
  • AI Governance Essentials
  • ISO/IEC 42001
  • EU AI Act
  • ESG Essentials
  • US Employment Law - Federal Baseline