ABC Company Standard Document
AIMS Manual
Document Name: AIMS Manual
Classification: Internal
Version No. Reviewed by Approved by Approved Date
1.0 CISO CTO 09/03/2024
Doc. No. AIMS/MAN/0001 Date: 09/03/2024
ABC Company Standard Document
Table of Contents
1. Introduction 01
2. Organization and its Context 02
2.1 Needs and expectations of Interested Parties 02
2.2 Internal and External issues 03
2.3 Scope and boundaries of the AI Management System 03
2.4 AI Management System 03
2.4.1 Process Interaction details & diagrams 03
3. Leadership 04
3.1 Leadership and Commitment 04
3.2 AI Policy 04
3.3 Roles, Responsibilities and Authorities 05
4. Planning 06
4.1 Actions to Address Risks and Opportunities 07
4.1.1 General 08
4.1.2 AI Risk Assessment 08
4.1.3 AI Risk Treatment 10
4.1.4 AI System Impact Assessment 11
4.2 AI Objectives and Planning to achieve them 12
4.3 Planning of Changes 12
5. Support 13
5.1 Resources 14
Doc. No. AIMS/MAN/0001 Date: 09/03/2024
ABC Company Standard Document
5.2 Competence 15
5.3 Awareness 16
5.4 Communication 16
5.5 Documented Information 18
5.5.1 General 18
5.5.2 Creating and Updating the documented information. 19
5.5.3 Control of Documented Information 19
6. Operations 20
6.1 Operational Planning and Control 20
6.2 AI Risk Assessment 21
6.3 AI Risk Treatment 23
6.4 AI System Impact Assessment 24
7. Performance Evaluation 25
7.1 Monitoring, Measurement, Analysis and Evaluation 25
7.2 Internal Audit 26
7.2.1 General 27
7.2.2 Internal Audit Programme 28
7.3 Management Review 29
7.3.1 General 30
7.3.2 Management Review Inputs 31
7.3.3 Management Review Results 31
8. Improvement 32
8.1 Continual Improvement 33
8.2 Non-Conformities and Corrective Action 34
9. Reference Control Objectives and Controls 35
10. Guidelines & Normative References 36
Doc. No. AIMS/MAN/0001 Date: 09/03/2024
ABC Company Standard Document
9. Reference Control Objectives and Controls:
Note: Kindly refer the SOA for applicable control objectives and controls associated with Annex A to D.
Ref. 1 – Implementation details, Records, Evidence and other documents are mapped to SOA.
Doc. No. AIMS/MAN/0001 Date: 09/03/2024
ABC Company Standard Document
10. Guidelines & Normative references:
1. ISO 31000:2018 – Risk Management – Guidelines
2. ISO/IEC 27001 – Information Security, Cybersecurity and Privacy protection – Information Security
Management System – Requirements
3. Risk Framework N.I.S.T. – A.I. 1.0, 2023-01-26 [National Institute of Technology]
https://www.nist.gov/itl/ai-risk-management-framework
Doc. No. AIMS/MAN/0001 Date: 09/03/2024