AI cases

  • Release version: Zurich
  • Updated July 16, 2026
  • 1 minute to read
  • Investigate and document an incident affecting an AI asset, such as a suspected security breach, data exposure, or policy violation, using a structured case record.

    An AI case documents an incident that requires investigation, such as a suspected security breach, a data exposure, or a policy violation involving an AI asset. A case moves through breach analysis, root cause analysis, and remediation as the investigation progresses.

    Case lifecycle

    An AI steward or asset owner reports a case to document an incident, such as a suspected breach, data exposure, or policy violation. AI Control Tower assigns a case analyst, who triages and investigates the incident to determine whether a breach occurred. The Reporting status field is set automatically based on the regulations associated with the case.

    Once the case analyst completes the root cause analysis, the Primary cause and Primary consequence fields populate from that analysis. The case analyst records whether remediation measures have been taken and documents any preventive measures. The case then moves through a post-case review before closing, or it can be canceled if no further action is needed.

    Where AI cases appear

    AI cases appear on the Cases sub-tab of the Team, Assigned to you, Unassigned, and Submitted by you tabs in Activity Center, depending on assignment.