RequirementsArticle 9
Sistema de gestión de riesgos
Un proceso continuo e iterativo que los proveedores de sistemas de IA de alto riesgo deben establecer, aplicar, documentar y mantener durante todo el ciclo de vida. Debe incluir la identificación y análisis de riesgos conocidos y razonablemente previsibles, la estimación de riesgos derivados del mal uso y la evaluación de los riesgos residuales.
Términos relacionados
- Data GovernancePractices and policies applicable to training, validation, and testing data sets used for high-risk AI systems, covering the design choices, data…
- Human OversightMeasures built into high-risk AI systems enabling natural persons to understand, monitor, and — where necessary — override or shut down the system. Must…
- AccuracyThe requirement that high-risk AI systems achieve an appropriate level of accuracy in relation to their intended purpose, as specified in the technical…
- RobustnessThe ability of a high-risk AI system to maintain its level of performance under adverse conditions — including technical limitations, adversarial inputs,…
- CybersecurityThe requirement that high-risk AI systems are resilient against attempts by third parties to alter their use, behaviour, or performance in ways that could…
- Transparency RequirementsObligations under Article 13 requiring that high-risk AI systems are designed to ensure that their operation is sufficiently transparent to enable…
Controles de cumplimiento relacionados
- RM-001Establish Risk Management SystemArticle 9(1) requires providers to establish, implement, document, and maintain a risk management system as a continuous iterative process throughout the entire lifecycle of the high-risk AI system.
- RM-002Identify Known and Foreseeable RisksProviders must identify and analyse known and foreseeable risks that the high-risk AI system may pose to health, safety, or fundamental rights when used as intended and under reasonably foreseeable misuse conditions.
- RM-003Risk Estimation and Probability AssessmentProviders must estimate and evaluate the likelihood and severity of potential harm, taking into account the intended purpose, foreseeable misuse, and the vulnerability of affected natural persons.
- RM-004Risk Evaluation Against Acceptance CriteriaProviders must evaluate identified risks against pre-defined risk acceptance criteria and document the rationale for accepting residual risks that cannot be fully mitigated.
Actualice cuando la conformidad deba ser
El cuestionario gratuito ofrece señales preliminares. La Evaluación Completa convierte la documentación real del sistema en un expediente de decisión auditable: extracción, separación de componentes, evidencias, normativas nacionales y dossier listo para auditoría.
Iniciar vista previa gratuita de riesgos