Back to glossary

AI governance

YZ yönetişimi

D5

AI governance is the organizational arrangement of authority, roles, policies, processes, oversight, and evidence used to direct and account for AI across its lifecycle.

Review status: 2027-08-28

Technical explanation

It connects technical AI-risk work to organizational priorities, responsibilities, documentation, and review.

Conceptual boundaries

AI governance is not a policy document alone, a model control alone, or a guarantee of compliant or ethical outcomes.

Provider-neutral example

An organization can assign a system owner, define approval and incident-review responsibilities, retain evaluation evidence, and schedule lifecycle reviews for a customer-support AI system.

Limitations

A governance arrangement improves traceability and responsibility but does not by itself prove that a system is safe, fair, lawful, or effective.

Related concepts

Atomic claims and evidence

  1. 1.1NIST AI 100-1, Artificial Intelligence Risk Management Framework (AI RMF 1.0) — D5 governance and security slice
    Source
    NIST AI 100-1, Artificial Intelligence Risk Management Framework (AI RMF 1.0) — D5 governance and security slice
    Source role
    Authoritative source
    Exact locator
    Section 5.1, GOVERN, and Table 1, printed pp. 21-24
    Supported claim
    NIST describes GOVERN as a cross-cutting AI-risk-management function involving policies, processes, practices, accountability structures, documentation, and periodic review.
    Last verification
    Review due
    Scope limitation
    This is voluntary NIST risk-management guidance, not a universal legal definition of governance.
    1.2OECD AI Principles
    Source
    OECD AI Principles
    Source role
    Authoritative source
    Exact locator
    Accountability
    Supported claim
    NIST describes GOVERN as a cross-cutting AI-risk-management function involving policies, processes, practices, accountability structures, documentation, and periodic review.
    Last verification
    Review due
    Scope limitation
    This is voluntary NIST risk-management guidance, not a universal legal definition of governance.
  2. 2.1NIST AI 100-1, Artificial Intelligence Risk Management Framework (AI RMF 1.0) — D5 governance and security slice
    Source
    NIST AI 100-1, Artificial Intelligence Risk Management Framework (AI RMF 1.0) — D5 governance and security slice
    Source role
    Authoritative source
    Exact locator
    Section 5.1, GOVERN, printed p. 22
    Supported claim
    NIST says documentation can enhance transparency, human review, and accountability in AI system teams.
    Last verification
    Review due
    Scope limitation
    Documentation improves inspectability; it does not itself establish compliant, ethical, safe, or effective outcomes.