GLOSSARY logo

GLOSSARY

THE TECHNICAL LANGUAGE OF DIGITAL B2B INFRASTRUCTURE

STANDARD
AI GOVERNANCE

ISO/IEC 23894:2023 — AI Risk Management

An international standard providing guidance on managing risks faced by organisations that develop, provide, deploy, or use AI systems.


BUSINESS RELEVANCE

ISO/IEC 23894 gives organisations a common structure for connecting AI-specific technical and societal concerns with enterprise risk governance and accountable decisions.


IMPLEMENTATION EXAMPLE

A provider uses the standard to identify risks across data, model, integration, user interaction, and post-deployment monitoring, then assigns treatments and residual-risk owners.


LIMITATIONS

The standard does not prescribe universal controls or establish that residual risk is acceptable. It must be adapted to the system, stakeholders, legal context, and organisational risk criteria.


TECHNICAL EXPLANATION

The standard adapts risk-management principles to AI by addressing organisational context, lifecycle activities, stakeholders, sources of risk, assessment, treatment, communication, monitoring, and review. It is guidance rather than a certifiable requirements standard and is intended to integrate with broader risk-management practices.


Secondary Topics

Cybersecurity, Data Engineering

Sources

ISO — ISO/IEC 23894:2023 — https://www.iso.org/standard/77304.html

Related terms

ISO 31000:2018 — Risk Management Guidelines

STANDARD
AI GOVERNANCE

An international standard offering principles, a structured framework, and processes for enterprise risk management.

Web Content Accessibility Guidelines (WCAG)

STANDARD
EXPERIENCE DESIGN

International technical standards establishing digital accessibility benchmarks across POUR usability principles.

ISO/IEC 42005:2025 — AI System Impact Assessment

STANDARD
AI GOVERNANCE

An international standard outlining methodology for conducting comprehensive impact assessments on AI deployments.

ISO/IEC 38507:2022 — Governance Implications of AI

STANDARD
AI GOVERNANCE

Governance guidelines assisting corporate boards and executive leadership in evaluating organizational AI oversight.

ISO/IEC 27001:2022 — Information Security Management Systems

STANDARD
CYBERSECURITY

The premier global standard specifying requirements for building and maintaining an Information Security Management System.