workflow
AI Service Data Policy & Quality Management Cycle
AI Service Data Policy & Quality Management Cycle as a modular, decision-aware workflow. Each annual instance — and each semiannual regulatory-compliance checkpoint — runs on the existing "AI Service Data Policy & Quality Management" Process item (process_type operational, process_owner = AI Product Owner) and enriches its standing records; it never recreates them. Run by the AI Governance Lead (second line) and owned by the AI Product Owner (first line), it refreshes the customer-facing input data policy and output data policy, collects customer acknowledgements where the changes are material, reviews the AI quality management system for effectiveness, and refreshes the regulatory compliance documentation and obligations register shared with customers. Consumes at launch: the cycle trigger and mode, the in-scope AI service list with each service's value-chain role (a step document — there is no AI System item type), both data policies and the quality manual and procedures as Policy items, and the obligations register as Control items. Deliverables: the published policy versions with their acknowledgement records, the quality management system review record, the refreshed compliance statement and obligations register, the corrective-action log, and an indexed cycle evidence pack. Out of scope: the AI services' own development, risk assessment, and control testing, and fulfilment of individual customer data requests. Terminal — the cycle closes to its own archived workflow record, linked back to the anchor Process item.
In catalog since 2026-09-17T22:28:00Z · Last changed 2026-10-04T21:48:26Z (791ff2dd3a45)
Record JSON · Open in map · Data retrieval guide
Catalog revision: 791ff2dd3a45707290badee660f185e514d15f1cf518908628f425c2f2c56ee4. A connection does not establish full coverage.
Attributes
- domain
- grc
- department
- ai-governance
- lineOfDefense
- operate
Details
- teams
- ai-governance
- privacy
- domains
- grc
- standards
- aiuc-1
- iso-42001
- eu-ai-act
- sourceTemplateId
- workflow-library:grc-ai-service-data-policy-quality-management-cycle
- releaseId
- sha256:61cbc5ce08b62ffe437d818f17e7e5477b1065fa8261ddc096d1ac40abca8e2a
- canonicalUrl
- https://evidenceflows.com/workflows/all/?w=grc-ai-service-data-policy-quality-management-cycle
- capabilities
- mappingStatus
- mapped
- lineOfDefense
- operate
- controls
- UC-AI-17
- UC-AI-24
- UC-AI-13
- roleIntegrity
- activityCount
- 0
- ermPhases
- lineRoles
- serviceModes
- warnings
Source
No record-specific source URL is provided.
Download workflow template · Release: sha256:61cbc5ce08b62ffe437d818f17e7e5477b1065fa8261ddc096d1ac40abca8e2a
Connections
- AI Service Data Policy & Quality Management Cycle operates UC-AI-24 — Operate an AI quality management system
- AI Service Data Policy & Quality Management Cycle operates UC-AI-17 — Define customer data-use and output-rights policies for AI services
- AI Service Data Policy & Quality Management Cycle operates UC-AI-13 — Assign AI value-chain roles and discharge obligations