Mend Releases AI Security Governance Framework: Covering Asset Inventory, Risk Tiering, AI Supply Chain Security, and Maturity Model

TL;DR AI
2 min readKey summary
Mend published an AI security governance framework for inventorying AI assets and spotting shadow AI use.
The framework adds a five-factor risk score with three tiers to classify tools, models, and deployments before production.
It recommends least-privilege access, output controls, and AI-specific incident response measures to reduce exposure.
Mend also extends supply-chain tracking with an AI-BOM covering models, datasets, and inference infrastructure.
