🤖AI Workload Compliance EU-AIACT-ART9Rule: AIACT-001critical

AI Risk Management System

Description

Risk management system established and maintained for high-risk AI systems (EU AI Act Article 9). EchelonGraph correlates the AI workload inventory with NetworkPolicy / RBAC / Secret posture to flag high-risk gaps.

⚠️ Risk Impact

EU AI Act enforcement starts February 2026. Penalties for missing risk-management on high-risk AI: €35M or 7% of global turnover. Repeated violations: regulator can order market withdrawal of the AI system.

🔍 How EchelonGraph Detects This

AIACT-001Automated scanner rule

EchelonGraph's Tier 1 Cloud Scanner automatically checks for this condition across all connected cloud accounts. Violations are flagged as critical-severity findings with remediation guidance.

🔧 Remediation

Classify each AI workload (high-risk vs limited-risk per EU AI Act Annex III); document risk controls per category; review annually.

🎯 MITRE ATT&CK Mapping

AML.T0011 — User Execution

🔗 Cross-Framework References

AIRMF-MAP-1.1ISO42001-7.4

Automate AI Workload Compliance EU-AIACT-ART9 compliance

EchelonGraph continuously monitors this control across all your cloud accounts.

Start Free →