1. ETSI
1.1. EN 304 223 - Securing Artificial Intelligence (SAI); Baseline Cyber Security Requirements for AI Models and Systems
1.1.1. Provision 5.4.1-1
1.1.2. Provision 5.4.1-1.1
1.1.3. Provision 5.4.1-2
1.1.4. Provision 5.4.1-3
1.2. TR 104 128 - Securing Artificial Intelligence (SAI); Guide to Cyber Security for AI Models and Systems
1.2.1. Provision 5.4.1-1
1.2.2. Provision 5.4.1-1.1
1.2.3. Provision 5.4.1-2
1.2.4. Provision 5.4.1-3
1.3. TR 104 048 - Securing Artificial Intelligence (SAI); Data Supply Chain Security
1.3.1. 6.1.2 Cybersecurity hygiene - 2
1.4. SAI 002 - Securing Artificial Intelligence (SAI); Data Supply Chain Security
1.4.1. 6.1.2 Cybersecurity hygiene - 2
2. NIST
2.1. AI RMF 1.0
2.1.1. GOVERN 5.2
2.1.2. MEASURE 1.2
2.1.3. MANAGE 2.4
2.1.4. MANAGE 4.2
2.2. SP 800-218A
2.2.1. RV.3.4
2.3. IR 8596: Cybersecurity Framework Profile for Artificial Intelligence (Cyber AI Profile): NIST Community Profile
2.3.1. ID.AM-08
2.3.2. ID.IM-03
2.3.3. PR.PS-02
2.3.4. PR.PS-03
2.3.5. DE.AE-06
2.3.6. DE.AE-07
2.3.7. RS.MA-03
2.3.8. RS.MA-04
2.3.9. RS.MI-01
2.3.10. RS.MI-02
3. OWASP
3.1. OWASP Top 10 for Agentic Applications for 2026
3.1.1. ASI04: Agentic Supply Chain Vulnerabilities - 7
3.2. LLM Top 10
3.2.1. LLM03: Supply Chain - 9
3.3. OWASP Model Context Protocol (MCP) Top 10
3.3.1. MCP03:2025 - Tool Poisoning - 9
3.3.2. MCP07:2025 – Insufficient Authentication & Authorization - 11
3.3.3. MCP07:2025 – Insufficient Authentication & Authorization - 12
4. MITRE
4.1. SAFE-AI
4.1.1. Loss of models
4.1.2. Lack of system, firmware, or tool updates and patches
5. Multi Agency
5.1. Guidelines for secure AI system development
5.1.1. Follow a secure by design approach to updates
6. CoSAI
6.1. AI Incident Response Framework
6.1.1. 3.3.3. Containment, Eradication, and Recovery Phase - Eradication Procedures - Root Cause Elimination
7. Cloud Security Alliance (CSA)
7.1. AI Controls Matrix
7.1.1. AIS-07
7.1.2. CCC-04
7.1.3. CCC-06
7.1.4. SEF-06
7.1.5. TVM-04
7.1.6. TVM-05
8. CISA
8.1. Principles for the Secure Integration of Artificial Intelligence in Operational Technology
8.1.1. 1.2.4 Secure Operation and Maintenance
8.1.2. 3.1.4 - Implementing regular audits and compliance testing
8.1.3. 4.1.4 - Establish key performance indicators (KPIs) that measure AI effectiveness and track progress over time.
9. NCSC/NSA/CISA etc
9.1. AI Data Security
9.1.1. 2.8 Periodic Checks
9.1.2. 2.9 Verifying Data
10. OECD
10.1. Due Diligence Guidance for Responsible AI
10.1.1. Step 6 - Provide for or co-operate in remediation when appropriate
11. IMDA
11.1. Model AI Governance Framework for Agentic AI
11.1.1. 2.3.3 When deploying, continuously monitor and test - Gradual deployment of agents
12. Cyber Security Council (UAE)
12.1. National Cyber Security Policy for Artificial Intelligence
12.1.1. 2.2.3
12.1.2. 3.2.3 Patch Management - 1
12.1.3. 3.2.3 Patch Management - 2
12.1.4. 3.2.3 Patch Management - 4
12.1.5. 3.2.4 Vulnerability Management for AI/ML Systems - 3
13. Qatar Central Bank
13.1. Artificial Intelligence Guidelines
13.1.1. 15.1
13.1.2. 19.4
14. MIC/METI (Japan)
14.1. AI Guidelines for Business
14.1.1. Safety - 1 (f)
15. EU
15.1. EU AI Act
15.1.1. 20.1 Corrective Actions and Duty of Information
15.1.2. 20.2 Corrective Actions and Duty of Information
16. ISO/IEC
16.1. DIS 27090
16.1.1. 7.3
17. CEN/CENELEC
17.1. prEN 40000-1-1
17.1.1. remediation
18. Databricks
18.1. The Databricks AI Security Framework
18.1.1. DASF 63: Update software
19. ICO
19.1. Guidance on the AI Auditing Framework - Draft guidance for consultation
19.1.1. Corrective Controls
20. ISO
20.1. 42001:2023 - Information technology — Artificial intelligence — Management system
20.1.1. 6.3
20.1.2. 10.1
20.1.3. 10.2
21. Federal Office for Information Security
21.1. AI Security Concerns in a Nutshell
21.1.1. 3.3 Defending against Evasion Attacks - Defending against Adversarial Attacks based on a teacher model