# General Risk (GER)

When determining the risk posed by AI systems, a number of concerns pertaining to AI itself should be taken into consideration. These concerns should be tailored to the specifics of the system being evaluated as well as the environment in which it will be used.

Organisations have a responsibility to make certain that the policies, processes, procedures, and practices related to mapping, measuring, and managing the risks associated with AI are in place, transparent, and successfully implemented.

Controls related to this risk category are listed as below:

* GER 01 - Roles and Responsibilities&#x20;
* GER 02 - Executive Responsibility&#x20;
* GER 03 - AI Risk Organisational Practices&#x20;
* GER 04 - Transparent Risk Management&#x20;
* GER 05 - Risk Management Monitoring&#x20;
* GER 06 - AI Risk Decisions Making&#x20;
* GER 07 - AI Organisational Documentation&#x20;
* GER 08 - Organisational Information Sharing Mechanism&#x20;
* GER 09 - AI's Business Value&#x20;
* GER 10 - Organisations AI Mission&#x20;
* GER 11 - Organisations Risk Tolerance&#x20;
* GER 12 - Allocated Resources for Risk Management&#x20;
* GER 13 - 3rd Party Risk Policies&#x20;
* GER 14 - 3rd Party Contingency&#x20;
* GER 15 - Mapping 3rd-Party Risk&#x20;
* GER 16 - Internal Risk Controls for 3rd Party Risk&#x20;
* GER 17 - AI Legal and Regulatory Requirements&#x20;
* GER 18 - AI Classification&#x20;
* GER 19 - AI System Requirements&#x20;
* GER 20 - AI System Benefits&#x20;
* GER 21 - AI Potential Costs&#x20;
* GER 22 - AI Application Scope&#x20;
* GER 23 - Approaches and Metrics&#x20;
* GER 24 - Metrics Appropriateness and Effectiveness&#x20;
* GER 25 - Stakeholder Assessment Consultation&#x20;
* GER 26 - Risk Tracking and Management&#x20;
* GER 27 - Risk Tracking Assessments&#x20;
* GER 28 - Measurement Approaches for Identifying Risk&#x20;
* GER 29 - Development and Deployment Decision&#x20;
* GER 30 - Risk Mitigation Activities&#x20;
* GER 31 - Risk Management of Mapped Risks&#x20;
* GER 32 - Post-Deployment Risk Management&#x20;
* GER 33 - 3rd Party Risk are Managed


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://documentations.seclea.com/iso-ai-risk-management/general-risk-ger.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
