Global AI Assurance · Regulatory assurance

    Global AI Control Baseline

    International prudential standards never tried to make every country's banking law identical. They set common principles, and each jurisdiction implemented them through its own regime. AI assurance needs the same shape.

    One baseline of control objectives, then per-jurisdiction overlays naming the additional obligations, controls, evidence and supervisory expectations that apply locally.

    Published as reference architecture. Control weights, grading rubrics and the full control set are set per engagement.

    Principle

    An international baseline does not make every jurisdiction's law identical. It states the common control objectives, and each jurisdiction implements through its own regime. The overlay is where the extra obligations, controls, evidence and supervisory expectations are named.

    Fourteen baseline objectives

    Each written as something that can observably fail, with the artefact an outsider may inspect. Weights and grading rubrics are set per engagement.

    GAB-01

    Every AI system in the estate is discovered, registered and owned.

    Register with owner, purpose, classification and approval state; discovery coverage stated.

    GAB-02

    Each system carries a classification proportionate to its consequence.

    Classification record with the test applied and the reviewer.

    GAB-03

    Capability is assessed against a defined domain set, not a benchmark.

    Domain-level capability read with evidence sources and uncertainty named.

    GAB-04

    Agents hold an identity, an owner and an explicit authority envelope.

    Identity record plus the envelope, including what the agent may not do.

    GAB-05

    Authority is not transitive across agents.

    Delegation decisions and refusals, with the chain evaluated.

    GAB-06

    Actions are evaluated before they take effect where consequence warrants.

    Runtime decision records: allow, conditions, human review, block, escalate.

    GAB-07

    A person can interrupt an action within a stated latency.

    Intervention capability tested, with measured latency.

    GAB-08

    Independent evaluation covers the material capability domains.

    Evaluation records with disposition and date, by an assessor named.

    GAB-09

    Applicable requirements are resolved from the full activity chain.

    Jurisdiction intersection record per activity, with the disposition.

    GAB-10

    Sovereignty requirements are set by the workload and verified against the configuration.

    Sovereignty classification with the configuration contracted and tested.

    GAB-11

    Incidents are detected, classified and reported to each regime that requires it.

    Incident record with the fan-out of filings and clocks.

    GAB-12

    Concentration and substitutability are assessed across providers and infrastructure.

    Dependency map with exit position stated.

    GAB-13

    Evidence is complete, current and held where it can be compelled.

    Freshness and completeness measures, with residency.

    GAB-14

    The board receives a movement in the institution's resilience position.

    Attested board record tying AI assurance to the resilience read.

    Jurisdictional overlays

    The overlay is where local law lives. The baseline does not move; the overlay adds.

    EU

    Risk-tier documentation setConformity and registration duties for high-risk usesTransparency to affected personsSerious-incident reporting

    US

    Model risk governance expectationsCritical-infrastructure profile controlsState privacy and automated-decision dutiesSector supervisory examination readiness

    Canada

    Public-sector automated decision directive requirementsFederal and provincial privacy dutiesLocal validation and evidence expectations

    UK

    Senior-manager accountability mapped per AI useOperational resilience tolerancesConsumer outcome evidencing

    Japan

    Local approval of automated decisionsSector guidance alignmentPrivacy transfer conditions

    Singapore

    Testable governance artefactsTechnology risk management alignmentExtended evidence retention

    Gulf

    Compute and inference residencyEvidence residencyNational AI registration where applicable

    Australia

    Critical operational resilience dutiesPrivacy Act obligationsIncident notification

    A baseline that cannot be monitored across a population is a document, not a control.

    See the supervisory view