NIST AI Risk Management Framework: enterprise implementation in 2026
The NIST AI Risk Management Framework (AI RMF 1.0) is a voluntary, US-government-published framework that gives organisations a structured way to identify, measure and manage AI risks across the lifecycle. It is built around four functions - GOVERN, MAP, MEASURE, MANAGE - and is supported by a public Playbook of recommended actions and a Generative AI Profile released in July 2024 [1]. It is the de facto reference for AI risk in the US, increasingly cited in EU and UK procurement, and structurally compatible with ISO/IEC 42001 and the EU AI Act.