Governance · Concept
AI Resilience Framework: Operational Resilience for AI-Dependent Firms
A proposed regime-agnostic framework argues trustworthy-AI regulation (EU AI Act, NIST AI RMF) fails to address operational resilience and supplier concentration risk.
UK financial regulators are already closing the resilience gap via Critical Third Parties regime and frontier AI cyber resilience statements.
Connections
Connections · 6
How this node ties into the rest of the map, and the evidence behind each link.
The AI Resilience Framework paper identifies a gap between the EU AI Act's trustworthy AI stack and operational resilience obligations.
+4 growthThe AI Resilience Framework paper identifies a gap between the NIST AI RMF trustworthy AI stack and operational resilience obligations.
+4 growthAITD taxonomy links latent data/model/ops debts to safety and security failures in high-stakes AI systems.
+3 growthThe AI Resilience Framework proposes a regime-agnostic method applicable across jurisdictions, contributing to a global governance floor for AI operational risk.
+2 growthThe AI Resilience Framework paper contrasts operational resilience with the trustworthy-AI stack including the EU AI Act.
+2 growthThe paper also situates its framework relative to the NIST AI Risk Management Framework.
+2 growthSignal sources
Signal sources
Dated facts from primary sources in this direction.
EU AI Act obligations for general-purpose AI models applied from 2 Aug 2025; high-risk obligations under Annex III apply from 2 Aug 2026.
EU AI Act — implementation tracker →The Council of Europe Framework Convention on AI — the first legally binding international AI treaty — opened for signature in Sep 2024; the EU ratified it on 15 May 2026.
Council of Europe →On 26 Aug 2025 the UN General Assembly created an Independent International Scientific Panel on AI (40 experts) and a Global Dialogue on AI Governance.
United Nations →