17% of DAMA-DMBOK2 you already have
NIST AI Risk Management Framework (AI RMF 1.0) already covers about 17% of DAMA-DMBOK2, leaving
38 of 46 controls as genuinely new work.
Already covered 3
Likely covered 5
New work 38
What is genuinely new work
Nothing in NIST AI Risk Management Framework (AI RMF 1.0) reaches these. This is the list to scope.
DA-2Data Modeling and Design
DA-3Data Architecture Standards
DCB-1Document and Content Management
DCB-3Business Intelligence and Analytics
DEM-2Data Management Maturity Assessment
DEM-3Big Data and Data Science
DG-1Data Governance Strategy
DG-3Data Policies and Standards
DMBOK-DA-01Enterprise Data Architecture
DMBOK-DA-02Data Architecture Governance
DMBOK-DG-01Data Governance Strategy and Operating Model
DMBOK-DG-02Data Policies and Standards
DMBOK-DG-03Data Stewardship Network
DMBOK-DG-04Data Management Maturity Assessment
DMBOK-DI-01Data Integration Architecture
DMBOK-DI-02Data Lineage and Movement
DMBOK-DM-01Conceptual, Logical, and Physical Data Models
DMBOK-DM-02Modeling Standards and Naming Conventions
DMBOK-DOC-01Document and Content Management
DMBOK-DQ-01Data Quality Management Program
DMBOK-DQ-02Data Profiling and Monitoring
DMBOK-DQ-03Data Quality Issue Resolution
DMBOK-DS-01Database Design and Operations
DMBOK-DS-02Database Performance and Capacity Management
DMBOK-DSec-01Data Security Classification
DMBOK-DSec-02Access Controls and Privileged Access
DMBOK-DSec-03Data Masking and Encryption
DMBOK-DW-01Data Warehouse and BI Architecture
DMBOK-DW-02Analytical Data Quality and Reconciliation
DMBOK-META-01Metadata Management Strategy
DMBOK-META-02Business Glossary and Data Dictionary
DMBOK-RMD-01Reference Data Management
DMBOK-RMD-02Master Data Management
DSO-1Data Storage and Operations
RMD-3Data Matching and Linking
Show the 8 you already have
DA-1Enterprise Data Architecture
DIQ-2Data Quality Management
RMD-1Reference Data Management
DIQ-1Data Integration and Interoperability
DSO-3Data Access Management
RMD-2Master Data Management
How this is calculated
Already covered means a mapping runs from a control in NIST AI Risk Management Framework (AI RMF 1.0) to that control. Likely
covered means no direct mapping exists but both frameworks map to the same control in a third
standard. New work means neither. We keep those separate rather than adding them into one
friendlier number, because blending them would present a two-hop inference as a verified
fact.
Coverage is not symmetric.
Run it the other way and you will get a
different number; both are correct.
From 332,959 cross-framework control
mappings across 723 frameworks, 531 of them verified against
their source documents. It does not tell you that you are compliant: a mapped control means
the two standards ask for the same thing, not that you have done it.
Try another pair ยท
Today's edition