Framework Crosswalk
One Assessment Speaks to All
| Requirement Domain | EU AI Act | NIST RMF | ISO 42001 | TC260 | Risk Level |
|---|---|---|---|---|---|
| Risk Management | Art 9 | GOVERN-1.1 | Clause 6.1 | GB/T 41867 | High |
| Data Governance | Art 10 | MAP-1.1 | Clause 7.2 | GB/T 35273 | High |
| Transparency | Art 50 | GOVERN-5.1 | Clause 7.5 | GB/T 39204 | Critical |
| Human Oversight | Art 14 | MANAGE-1.1 | Clause 6.3 | TC260 WG9 | High |
| Accuracy | Art 15 | MEASURE-1.1 | Clause 8.1 | GB/T 41867 | Medium |
| Cybersecurity | Art 14 | MANAGE-2.1 | Clause 8.2 | GB/T 22239 | High |
| Bias / Fairness | Art 10 | MAP-3.1 | Clause 7.3 | GB/T 41867 | High |
| Audit Trail | Art 12 | MEASURE-2.1 | Clause 9.1 | GB/T 39204 | Medium |
EU AI Act
The world's first comprehensive AI regulation. Risk-based approach with obligations for high-risk and GPAI systems.
NIST AI RMF
Voluntary risk management framework for designing, developing, deploying, and using AI systems.
ISO 42001
International standard for AI management systems. Provides an integrated approach to managing AI risks and opportunities.