AI Governance Institute logo
AI Governance Institute

Intelligence for Compliance and GRC Teams

← All news

Supply Chain Risk

Supply chain risk in AI governance refers to the vulnerabilities and threats introduced through third-party vendors, data providers, model suppliers, and infrastructure partners used in AI systems. Organizations must assess and manage risks across the entire AI supply chain, including model provenance, data quality and origin, licensing compliance, security of training data, and potential dependencies on unreliable or compromised providers. This matters for compliance because supply chain failures can introduce bias, security breaches, model poisoning, and regulatory violations that remain the organization's responsibility even when outsourced.

1 item