---
sourceDocument: Brazil Enable AI
sourceDocumentLink: https://www.servicenow.com/docs/r/intelligent-experiences

 Release :

    - brazil

ft:locale :

    - en-US

ft:publication_title :

    - Brazil Enable AI

ft:clusterId :

    - platai

bundleId :

    - platai

workflow :

    - Platform


---

# Risk and compliance tab in AI Control Tower

# Risk and compliance tab in AI Control Tower {#ariaid-title1}

Release version: Brazil  
Updated September 10, 2026  
![](https://www.servicenow.com/docs/portal-asset/ico-clock) 4 minutes to read
Summarize  
![AI sparkle icon](https://servicenow.com/docs/portal-asset/ai-sparkle-icon) Summarized using AI  
This content was generated using new OpenAI-powered functionality. Results are provided on an as is basis and are not guaranteed to be accurate or complete.  

## Summary of Risk and compliance tab in AI Control Tower

The Risk and compliance tab in the AI Control Tower provides a comprehensive view of the risk classification and compliance status of AI assets within your organization, including AI systems, AI models, and AI datasets.
This tab enables you to monitor how these assets align with regulatory and policy requirements, helping ensure that your AI initiatives are effective, reliable, and compliant with relevant standards and regulations.
Show full answer Show less  

## Key Features

* **Compliance Overview** -- Displays risk classifications of AI assets using intuitive donut charts with qualitative categories such as High, Medium, Low, and Unacceptable risk levels.
* **Compliance by Authority Documents and Policies** -- Shows compliance scores based on controls implemented across key frameworks, including:
  * NIST AI Risk Management Framework with its four citations: map, measure, manage, and govern.
  * EU Artificial Intelligence Act with detailed chapters and control objectives.
  * Additional frameworks like the Transparency in Frontier AI Act and Colorado AI Act via the AI Risk and Compliance content pack.
  Users can filter compliance data by authority documents or policies, view overall compliance percentages, and identify issues requiring immediate attention.
* **Risk Overview** -- Allows filtering of risk posture insights by AI asset type, viewing aggregated risk scores for AI systems, and visualizing risks using a heatmap segmented by risk and control effectiveness or impact and likelihood. The heatmap supports filtering by Residual or Inherent risk and by Risk Assessment Methodology when multiple methodologies exist.
* **Regulatory Landscape Overview** -- Requires the GRC: Regulatory Change Management application and shows:
  * Risk classifications for AI assets.
  * Distribution of regulatory change tasks by workflow state or lifecycle phase.
  * Regulatory impact and risk assessments linked to regulatory changes.

## Practical Use for ServiceNow Customers

This tab equips you with actionable insights to manage AI-related risks and compliance efficiently. By leveraging the visualizations and filtering options, you can prioritize remediation efforts, track compliance across multiple regulatory frameworks, and maintain up-to-date awareness of your AI asset risk posture. The ability to configure which authority documents and policies are displayed allows tailoring the dashboard to your organizational needs.

**Important:** Authority documents provided are for guidance only and do not constitute legal advice or guarantee compliance. It remains your responsibility to ensure adherence to applicable laws and standards.  

The Risk and compliance tab on the AI Control Tower
displays the risk classification of AI assets and the compliance posture
for selected authority documents and policies.

AI assets refer to the various components and resources that are essential for the development, deployment, and operation of artificial intelligence systems. These assets can include:

1. AI systems: The complete software or hardware infrastructure that runs AI algorithms and processes. This can include machine learning platforms, natural language processing systems, and other AI-driven applications.
2. AI models: The mathematical and computational models that are trained on data to perform specific tasks. These models can range from simple linear regression models to complex deep learning neural networks.
3. AI datasets: The collections of data used to train, validate, and test AI models.

{#risk-compliance-tab-aict__ol_frz_qwv_x2c}

For more information, see [AI systems](https://www.servicenow.com/docs/access?context=ai-system-airc&version=brazil&pubname=brazil-governance-risk-compliance&ft:locale=en-US), [AI models](https://www.servicenow.com/docs/access?context=ai-model-airc&version=brazil&pubname=brazil-governance-risk-compliance&ft:locale=en-US), and [Datasets](https://www.servicenow.com/docs/access?context=dataset-airc&version=brazil&pubname=brazil-governance-risk-compliance&ft:locale=en-US).

Understanding and managing these AI assets is crucial for ensuring that AI systems are effective, reliable, and compliant with regulatory and ethical standards as defined by your organization.

The Risk and compliance dashboard has the following sections. You can drill down into the data on each widget in any section.

## Compliance overview {#risk-compliance-tab-aict__section_v4m_dqt_bgc}

Regulatory risk classification
:   This section displays the risk classifications of AI systems, AI models, and Datasets using donut charts. The risks are qualitatively classified as High, Low,
    Medium, and Unacceptable. These classifications are based on the risk assessments of the AI assets.

Compliance by authority documents and policies
:   The section shows compliance based on controls implemented. By default, the compliance scores are displayed for the following frameworks that are provided in the library:

    * NIST AI Risk Management Framework: This framework displays the four key associated citations, namely map, measure, manage, and govern. Each citation's compliance score is displayed based on its control attestations.
    * EU Artificial Intelligence Act: This framework has multiple chapters that are displayed as citations and child citations. Each citation is mapped to a control objective to provide you with a compliance percentage score.

    {#risk-compliance-tab-aict__ul_y5f_4jd_w2c}

    Additional frameworks, including the Transparency in Frontier Artificial Intelligence Act (SB 53) and the Colorado Artificial Intelligence Act, are available in the AI Risk and Compliance content pack and can be activated to add their citations to the compliance posture view. For more information, see [AI Risk and Compliance Content Pack](https://www.servicenow.com/docs/access?context=airc-content-pack&version=brazil&pubname=brazil-governance-risk-compliance&ft:locale=en-US).

    You can choose to view compliance data by selecting one of two options: Authority Documents or Policies. Additionally, you can view the overall compliance score percentage,
    along with the number of compliant and non-compliant authority documents and policies, by using the drop-down filter to select specific authority documents or policies. You can also see all the issues that require immediate
    attention and AI cases related to each authority document or policy.

    The authority documents are provided solely for informational and guidance purposes to assist with the initial setup of AI Risk and Compliance frameworks. It does not constitute legal advice or assurance of regulatory compliance. You are solely responsible for ensuring that all use of the content complies with applicable
    laws, regulations, directives, and industry standards in their jurisdictions.  
    Note:  
    You can configure which authority documents and policies you want to display on the home page. For more information, see [Set up properties for compliance posture](https://www.servicenow.com/docs/access?context=configure-airc-properties&version=brazil&pubname=brazil-governance-risk-compliance&ft:locale=en-US).

## Risk overview {#risk-compliance-tab-aict__section_v5g_2qt_bgc}

This section monitors and tracks the risk posture of the AI assets in your organization. Using the AI asset filter, you can filter risk posture insights by the type of AI asset inventory.  

AI systems by aggregated risk score
:   This section displays the classifications of AI systems by aggregated risk score using a donut chart. The risk scores are qualitatively classified as High and Low.

Risk heatmap
:   The Risk heatmap widget displays the visualization of all identified risks within the AI assets. By default, the Residual risk filter is applied, but you can filter the heatmap based on Inherent risk. The heatmap is
    segmented, and the segmentation changes based on the filter. The activities fall under the respective combination of risk and control effectiveness, or impact and likelihood. The combination is based on the selected risk
    classification filter. You can filter the risk heatmap by Risk Assessment Methodology (RAM)when more than one methodology is available.

## Regulatory landscape overview {#risk-compliance-tab-aict__section_hn3_fqt_bgc}

You need to install GRC: Regulatory Change Management application to see this section. For more information, see [Installing Regulatory Change Management](https://www.servicenow.com/docs/access?context=activate-grc-rcm&version=brazil&pubname=brazil-governance-risk-compliance&ft:locale=en-US).  

Overview
:
    * AlertsThis section displays the risk classifications of AI systems, AI models,and AI datasets using donut charts.

    * Change tasksThis section displays the distribution of regulatory change tasks by workflow state or lifecycle phase using a donut chart.

    {#risk-compliance-tab-aict__ul_nx4_3st_bgc}

Assessments
:   This section displays the regulatory impact assessments and risk assessments linked to regulatory changes using a donut chart. By default, regulatory assessments filter is applied, but you can change it to risk
    assessments.

The following image shows the Risk and compliance dashboard.  
Figure 1. Risk and compliance dashboard For more information, see [AI Risk and Compliance documentation](https://www.servicenow.com/docs/access?context=ai-risk-and-compliance&version=brazil&pubname=brazil-governance-risk-compliance&ft:locale=en-US).

