Methodology

A structured view of AI governance readiness.

SHIELD translates recognised obligations and management practices into six areas leaders can examine, evidence and improve.

Regulatory mapping

Four baselines, mapped without false equivalence.

Each baseline has a different legal status and scope. SHIELD shows alignment separately rather than combining them into a single claim of compliance.

European Union

EU AI Act

Risk-tiered obligations for providers and deployers of AI systems touching the EU market.

Sets the classification, documentation, transparency and human-oversight duties that other regimes are converging on.

ISO/IEC

ISO/IEC 42001

Certifiable management-system requirements for governing AI across its lifecycle.

The practical checklist an auditor uses: policy, roles, impact assessment, controls, review.

Hong Kong regulators

SFC / HKMA guidance

Expectations for licensed and authorised institutions using AI in regulated activity.

Defines senior-management accountability, model validation and outsourcing duties in this market.

US NIST

NIST AI RMF 1.0

Voluntary framework organised around Govern, Map, Measure and Manage.

Gives a common language for describing AI risk to boards, clients and counterparties.