AI Risk Management Framework

Loading
loading...

AI Risk Management Framework

June 30, 2025
mike@standardsmichigan.com
No Comments

 

We list notable NIST projects or efforts related to LLMs, based on available information from NIST’s publications and initiatives. These projects emphasize NIST’s role in advancing measurement science, standards, and guidelines for trustworthy AI systems, including LLMs. Note that some projects are specific studies, while others are broader programs that encompass LLMs.
  • Evaluating LLMs for Real-World Vulnerability Repair in C/C++ Code
    NIST conducted a study to evaluate the capability of advanced LLMs, such as ChatGPT-4 and Claude, in repairing memory corruption vulnerabilities in real-world C/C++ code. The project curated 223 code snippets with vulnerabilities like memory leaks and buffer errors, assessing LLMs’ proficiency in generating localized fixes. This work highlights LLMs’ potential in automated code repair and identifies limitations in handling complex vulnerabilities.
  • Translating Natural Language Specifications into Access Control Policies
    This project explores the use of LLMs for automated translation and information extraction of access control policies from natural language sources. By leveraging prompt engineering techniques, NIST demonstrated improved efficiency and accuracy in converting human-readable requirements into machine-interpretable policies, advancing automation in security systems.
  • Assessing Risks and Impacts of AI (ARIA) Program
    NIST’s ARIA program evaluates the societal risks and impacts of AI systems, including LLMs, in realistic settings. The program includes a testing, evaluation, validation, and verification (TEVV) framework to understand LLM capabilities, such as controlled access to privileged information, and their broader societal effects. This initiative aims to establish guidelines for safe AI deployment.
  • AI Risk Management Framework (AI RMF)
    NIST developed the AI RMF to guide the responsible use of AI, including LLMs. This framework provides a structured approach to managing risks associated with AI systems, offering tools and benchmarks for governance, risk assessment, and operationalizing trustworthy AI across various sectors. It’s widely applied in LLM-related projects.
  • AI Standards “Zero Drafts” Pilot Project
    Launched to accelerate AI innovation, this project focuses on developing AI standards, including those relevant to LLMs, through an open and collaborative process. It aims to create flexible guidelines that evolve with LLM advancements, encouraging input from stakeholders to ensure robust standards.
  • Technical Language Processing (TLP) Tutorial
    NIST collaborated on a TLP tutorial at the 15th Annual Conference of the Prognostics and Health Management Society to foster awareness and education on processing large volumes of text using machine learning, including LLMs. The project explored how LLMs can assist in content analysis and topic modeling for research and engineering applications.
  • Evaluation of LLM Security Against Data Extraction Attacks
    NIST investigated vulnerabilities in LLMs, such as training data extraction attacks, using the example of GPT-2 (a predecessor to modern LLMs). This project, referencing techniques developed by Carlini et al., aims to understand and mitigate privacy risks in LLMs, contributing to safer model deployment.
  • Fundamental Research on AI Measurements
    As part of NIST’s AI portfolio, this project conducts fundamental research to establish scientific foundations for measuring LLM performance, risks, and interactions. It includes developing evaluation metrics, benchmarks, and standards to ensure LLMs are reliable and trustworthy in diverse applications.
  • Adversarial Machine Learning (AML) Taxonomy for LLMs
    NIST developed a taxonomy of adversarial machine learning attacks, including those targeting LLMs, such as evasion, data poisoning, privacy, and abuse attacks. This project standardizes terminology and provides guidance to enhance LLM security against malicious manipulations, benefiting both cybersecurity and AI communities.
  • Use-Inspired AI Research for LLM Applications
    NIST’s AI portfolio includes use-inspired research to advance LLM applications across government agencies and industries. This project develops guidelines and tools to operationalize LLMs responsibly, focusing on practical implementations like text summarization, translation, and question-answering systems.

Remarks:

  • These projects reflect NIST’s focus on evaluating, standardizing, and securing LLMs rather than developing LLMs themselves. NIST’s role is to provide frameworks, guidelines, and evaluations to ensure trustworthy AI.
  • Some projects, like ARIA and AI RMF, are broad programs that encompass LLMs among other AI systems, but they include specific LLM-related evaluations or applications.

 

Standards for American Prosperity

June 29, 2025
mike@standardsmichigan.com
, , , ,
No Comments

 

Crucial Role of Standards for American Prosperity Highlighted in CSIS Roundtable Session with S. Joe Bhatia

 

Here are some of the ways in which government regulations impede economic growth:

  1. Increased costs: Regulations can impose additional costs on businesses, which can affect their ability to operate efficiently and compete in the marketplace. For example, regulations can require businesses to invest in new technologies or processes to comply with environmental or safety standards, which can increase their expenses.
  2. Reduced innovation: Some people believe that regulations can stifle innovation and entrepreneurship, as businesses may be hesitant to invest in new products or technologies that could be subject to strict regulations. This can limit the potential for new businesses to emerge and grow.
  3. Slowed job growth: Regulations can increase the cost of doing business, which can lead to reduced hiring and slower job growth. This can be particularly challenging for small businesses that may not have the resources to comply with regulatory requirements.
  4. Reduced competition: Regulations can sometimes create barriers to entry for new businesses, which can reduce competition and limit economic growth. This can be particularly true in industries that are heavily regulated, such as healthcare and finance.
  5. Reduced trade: Regulations can make it more difficult for businesses to operate in international markets, as they may face additional regulatory requirements and trade barriers. This can limit economic growth and reduce opportunities for businesses to expand their operations.

It is important to note that regulations can also have benefits, such as protecting consumers and the environment, promoting fair competition, and fostering innovation. It’s essential to strike a balance between regulatory requirements and economic growth to ensure that businesses can thrive while also protecting public health and safety. 

The U.S. Standards System effectively provides a “shadow government” that runs parallel to the elected government so that a balance of informed voices are present in formulating what Montesquieu called the “necessary laws”.   See our ABOUT.

More

NIST: Procedures for the Development of American National Standards

ANSI Essential Requirements: Due process requirements for American National Standards

Office of Management & Budget Circulars in Numerical Sequence

Timon of Athens

June 28, 2025
mike@standardsmichigan.com
, , ,
No Comments

The Oxford Union Debating Society, founded in 1823, is one of the world’s most prestigious debating societies, affiliated with the University of Oxford. It has hosted numerous influential speakers and debates, including historical figures like Winston Churchill and Malcolm X. Over the years, it has played a vital role in shaping public discourse and fostering critical thinking among students. The society’s iconic debating chamber and rich tradition of lively debates have made it an enduring institution in the world of debate and public speaking.

“In an era of cancellation and defenestration we sometimes forget that we both cannot go on like this and that we have been here before. We know this because our greatest writers and artists have addressed this question in their own times.

When Roger [Scrouton] was going through his own battle with the shallows I often thought of Shakespeare’s rarely performed but great play Timon of Athens. Timon has the whole world before him. He is surrounded by friends and admirers. He is generous to all. Yet he falls on hard times and when he does absolutely everybody deserts him. He is left with nothing and nobody, and risks being filled with despair and rage. It does not help that he is shadowed by the cynical philosopher Apemantus, who has warned him that just such a desertion might occur.”

— Douglas Murray

Service Level Agreements

June 28, 2025
mike@standardsmichigan.com
No Comments

This content is accessible to paid subscribers. To view it please enter your password below or send mike@standardsmichigan.com a request for subscription details.

“Seek Ye First”

June 27, 2025
mike@standardsmichigan.com
No Comments

“And therefore, I said, Glaucon, musical training is a more potent instrument than any other, because rhythm and harmony find their way into the inward places of the soul, on which they mightily fasten, imparting grace, and making the soul of him who is rightly educated graceful…”

— Plato, The Republic, Book III, 401d–402a

Standards Pennsylvania

Summer Sport

June 27, 2025
mike@standardsmichigan.com

No Comments

“No citizen has a right to be an amateur in the matter of physical training…

what a disgrace it is for a man to grow old without ever seeing

the beauty and strength of which his body is capable.”

— (Plato, Republic 403d)

Athena with Hermes, God of Sport

Today we slice horizontally through the multitude of technical and policy silos applicable to seasonal recreational and competitive sport activity.  We limit our examination to the conformance catalogs of ANSI. ASHRAE. ASTM, AWWA, ICC, IEEE, IES, NFPA, NSF International, and UL.

https://en.wikipedia.org/wiki/2028_Summer_Olympics

Relevant changes proposed for the next revision of the International Building Code:

Sprinkler coverage over bleachers or sport spectator seating (p. 665)

Lightning Protection Systems (p. 751)

Spectator live loading on bleachers (p. 1098)

Permitting of outdoor luminaires per zoning codes (p. 2587-2593)

Last year we examined the standards that applies to the 2024 Paris Olympics; worth a second look this year and in anticipation of the 2028 Summer Olympics in Los Angeles

Beach Volleyball

Equestrian

Rowing

Sailing

Swimming & Diving

Track & Field

We deal with the catalogs of CSA, DNV GL  ISO, IEC, SGS, TIC and TÜV in a separate, international session.

Swimming Pool Dimensions and Construction

Engineering in Sport

Readings / Sport, Culture & Society

National Center for Spectator Sports Safety and Security

Maths and Sport

A novel smart energy management system in sports stadiums

Athletic Equipment Safety Standards

More:

Category: Recreation and Sport Facilities

Uniform Swimming Pool, Spa & Hot Tub Code

June 27, 2025
mike@standardsmichigan.com
,
No Comments
water

“The Bathing Pool” / Hubert Robert (French, 1733–1808) / Gift of J.P. Morgan

2024 Uniform Swimming Pool, Spa and Hot Tub Code

READ-ONLY ACCESS

The IAPMO code development process is one of the best in the land.  Its Read-Only Access — needed for light research — is also the best in the land; unlike other ANSI accredited standards developers (who shall be un-named).   The current edition is dated 2024, with the 2027 revision accepted public input until March 3, 2025 according the schedule linked below:

2027 USPSHTC Code Development Calendar

Related:

What are Plumbing Codes?

Uniform Plumbing Code

Coronavirus in Plumbing Systems

Schenkingen

June 26, 2025
mike@standardsmichigan.com
, , ,
No Comments

“The secret of great fortunes without apparent cause

is a crime forgotten, for it was properly done.”

Honoré de Balzac’

Are they hedge funds with a side hustle in teaching, research and building construction? Are they tricked out memorial gardens for philanthropists? In either case leaders of educational settlements are expected to act in the best interests of both their institution and their donors, and to maintain high standards of transparency, accountability, and ethical conduct when accepting charitable gifts.

University endowments are comprised of money or other financial assets that are donated to academic institutions. Charitable donations are the primary source of funds for endowments. Endowment funds support the teaching, research, and public service missions of colleges and universities.

In the case of endowment funds for academic institutions, the income generated is intended to finance a portion of the operating or capital requirements of the institution. In addition to a general university endowment fund, institutions may also maintain a number of restricted endowments that are intended to fund specific areas within the institution, including professorships, scholarships, and fellowships.

More

Council on Foundations

2021 NACUBO-TIAA Study of Endowments

University of Michigan: Policy Guidelines for Naming of Facilities, Spaces and Streets

University of Buffalo: Naming University Properties, Facilities, and Academic and Non-Academic Programs

Northern Arizona University: Naming of Facilities, Programmatic Units, or Fund for Individuals or Organizations

Dematerialization

Digital Campus

Dartmouth University Endowment Report 2023

https://www.dartmouth.edu/investments/docs/dartmouthendowmentreport2023.pdf

 

The largest philanthropic gift ever given to a United States college or university is the donation of $9.6 billion made by MacKenzie Scott to various organizations, including several universities, in 2020. Scott, the ex-wife of Amazon founder Jeff Bezos, made the donation as part of her commitment to give away the majority of her wealth to charitable causes. The universities that received donations from Scott include historically black colleges and universities, community colleges, and research universities such as the University of California, San Diego, and Johns Hopkins University. The donation was considered significant not only for its size but also for its focus on supporting organizations that serve underrepresented and marginalized communities.

There are several standards and best practices that are generally followed by universities and colleges when accepting charitable gifts. These standards are designed to ensure that the gift is used effectively and that the interests of both the donor and the institution are protected. Some of the key standards include:

  1. Transparency and accountability: Universities and colleges are expected to be transparent about how gifts are used and to provide regular reports to donors on the impact of their gifts.
  2. Due diligence: Universities and colleges are expected to conduct due diligence on potential donors to ensure that their gifts do not create conflicts of interest or ethical concerns.
  3. Gift acceptance policies: Many universities and colleges have established gift acceptance policies that outline the types of gifts that will be accepted and the procedures for accepting them.
  4. Donor recognition: Universities and colleges are expected to recognize donors in an appropriate and meaningful way, while avoiding actions that could be seen as an endorsement of the donor’s business or political interests.
  5. Ethical fundraising: Universities and colleges are expected to follow ethical fundraising practices, including avoiding pressure tactics or misleading information, and ensuring that donors are aware of any tax implications of their gifts.

Overall, universities and colleges are expected to act in the best interests of both their institution and their donors, and to maintain high standards of transparency, accountability, and ethical conduct when accepting charitable gifts.

Infotech 300

Layout mode
Predefined Skins
Custom Colors
Choose your skin color
Patterns Background
Images Background
error: Content is protected !!
Skip to content