AI Governance Institute logo
AI Governance Institute

Practical Governance for Enterprise AI

← All controls
BRD

Board & Executive Governance

Operational controls for board & executive governance — with maturity levels, evidence requirements, and implementation guidance.

Not sure where to start? Answer 3 questions and get a tailored compliance action plan.

What applies to me? →

9 controls

BRD-001
medium

Director AI Literacy and Competency Assessment

Establish a board-level AI literacy program that assesses director competency against defined standards, closes identified gaps through targeted education, and ensures the board can discharge its AI oversight obligations effectively.

BRD-002
medium

AI Governance Committee Charter and Decision Rights

Establish a cross-functional AI governance committee with a formal charter defining its mandate, composition, decision rights, quorum requirements, escalation paths, and reporting obligations to the board.

BRD-003
medium

Board-Level AI Safety Committee Charter

Establish a dedicated board-level committee with fiduciary responsibility for AI safety oversight, distinct from the operational AI governance committee, with defined authority over high-consequence AI risk decisions.

BRD-004
medium

AI Governance ESG and Investor Disclosure

Establish a structured process for disclosing AI governance maturity, AI-related risk management, and AI safety posture to shareholders, institutional investors, and ESG rating agencies.

BRD-005
medium

AI Governance Maturity Assessment

Conduct structured self-assessments and external benchmarking of the organization's AI governance program against defined maturity frameworks, and use assessment results to prioritize governance improvements.

BRD-006
medium

AI Risk Tolerance and Appetite Documentation

Establish a formal process for defining, documenting, and approving the organization's AI risk tolerance and appetite across key risk categories, with board-level sign-off and periodic review.

BRD-007
high

Federated AI Governance Design

Design the accountability model for AI governance across distributed deployments, defining the balance between central control and business unit autonomy, and the escalation path when BU-level governance is insufficient.

BRD-008
medium

Voluntary AI Governance Adequacy Standard

Define an internal AI governance adequacy standard for organizations operating without binding AI mandates, providing a documented and defensible governance posture that satisfies stakeholder expectations and anticipated regulatory requirements.

BRD-009
high

Unified Multi-Framework AI Risk Register

Maintain a single AI risk register that consolidates obligations from multiple frameworks (NIST AI RMF, ISO 42001, EU AI Act, sector regulations) into a unified view, eliminating duplication and identifying where a single control satisfies multiple requirements.