# NIST AI Risk Management Framework (AI RMF) · Glossary
A voluntary framework published by the US National Institute of Standards and Technology to help organisations identify and manage risks from AI systems.
[Glossary](/glossary) · AI governance and risk

# NIST AI Risk Management Framework (AI RMF)

     A voluntary framework published by the US National Institute of Standards and Technology to help organisations identify and manage risks from AI systems. It is organised around four functions: Govern, Map, Measure and Manage.

## Why it matters

     The AI RMF provides a practical vocabulary for AI risk that is widely referenced internationally, including by organisations outside the US. Its four functions translate naturally into questions a risk committee can ask of any AI use case.

     NIST has also published a Generative AI Profile that applies the framework to risks specific to generative models. Because the framework is voluntary and flexible, organisations still need to decide how much rigour each use case needs.

## In practice

     For example, a UK-headquartered manufacturer with US operations might use the four functions to structure its AI intake review: map the use case and its context, measure performance and bias, decide controls and monitoring, and confirm accountable owners before deployment.

## Where Rodan fits

     Rodan maps evaluation and monitoring work onto recognised frameworks in [AI and Decision Systems](https://rodan.io/what-we-build/ai-decision-systems) delivery, so governance teams receive evidence in a form they can use.

## Related terms

- [AI governance](/glossary#ai-governance)

- [ISO/IEC 42001](/glossary/iso-iec-42001)

- [EU AI Act](/glossary/eu-ai-act)

- [Model risk management](/glossary/model-risk-management)

- [AI evaluation (evals)](/glossary#ai-evaluation)
HTML: https://rodan.io/glossary/nist-ai-risk-management-framework
