Roles & Permissions
Role-based access control (RBAC) ensures the right people have the right access. Explore 8 specialized roles designed for comprehensive AI governance.
RBAC Principles in AIMS
AIMS implements enterprise-grade role-based access control following security best practices and compliance requirements.
Least Privilege Principle
Users are granted the minimum level of access necessary to perform their job functions, reducing security risks and ensuring data protection.
Role-Based Assignment
Permissions are assigned to roles rather than individuals, simplifying administration and ensuring consistency across users with similar responsibilities.
Separation of Duties
Critical functions are divided among multiple roles to prevent conflicts of interest and reduce the risk of fraud or errors.
Audit & Accountability
All access and actions are logged and traceable to specific users and roles, ensuring complete accountability and compliance with regulatory requirements.
8 Specialized Roles
Each role is designed with specific responsibilities and appropriate access levels to ensure effective AI governance.
AI Governance Officer
Strategic oversight of the entire AI governance framework, ensuring alignment with organizational objectives and regulatory requirements.
Key Responsibilities
- Define and maintain AI governance policies and frameworks
- Oversee AI system lifecycle from ideation to decommissioning
- Coordinate cross-functional governance activities
- +2 more responsibilities
Chief AI Officer, Head of AI Governance, AI Ethics Lead
Full access to all modules with administrative privileges
Compliance Manager
Ensure organizational adherence to regulatory requirements including EU AI Act, ISO 42001, and other applicable frameworks.
Key Responsibilities
- Monitor compliance with EU AI Act and ISO 42001
- Conduct and oversee impact assessments (AIIA/FRIA)
- Manage controls library and Statement of Applicability
- +2 more responsibilities
Compliance Officer, Regulatory Affairs Manager, ISO Lead
Full access to compliance, risk, and audit modules
AI Engineer
Technical implementation and management of AI systems throughout their lifecycle, ensuring technical compliance and performance.
Key Responsibilities
- Develop and deploy AI systems within governance framework
- Document technical specifications and architectures
- Implement technical controls and safeguards
- +2 more responsibilities
ML Engineer, AI Developer, Data Scientist, AI Product Manager
Full access to lifecycle management, view/edit on risk and impact
Risk Manager
Identify, assess, and mitigate AI-specific risks across the organization's AI portfolio, ensuring residual risks remain acceptable.
Key Responsibilities
- Conduct AI risk assessments using 5x5 matrix methodology
- Develop and implement risk treatment plans
- Monitor risk indicators and trigger escalations
- +2 more responsibilities
Risk Manager, Risk Analyst, Chief Risk Officer
Full access to risk and impact assessment modules
Auditor
Execute internal and external audits of the AI management system, ensuring conformity with standards and identifying improvement opportunities.
Key Responsibilities
- Plan and conduct ISO 42001 internal audits
- Execute audit checklists and document findings
- Perform root cause analysis and recommend corrective actions
- +2 more responsibilities
Internal Auditor, Quality Assurance Manager, External Auditor
Full access to audit module, view access to all other modules
Head of AI / Executive
Strategic leadership and executive oversight of AI initiatives, focusing on alignment with business objectives and informed decision-making.
Key Responsibilities
- Set strategic direction for AI governance program
- Review and approve AI policies and frameworks
- Conduct management review per ISO 42001 Clause 9.3
- +2 more responsibilities
CTO, CIO, CEO, Board Member, Head of Innovation
Executive dashboards with full analytics and reporting access
Legal / Privacy Officer
Ensure AI systems comply with data protection regulations, intellectual property law, and fundamental rights requirements.
Key Responsibilities
- Conduct Fundamental Rights Impact Assessments (FRIA)
- Ensure GDPR compliance for AI data processing
- Review and approve AI system legal documentation
- +2 more responsibilities
General Counsel, Data Protection Officer, Privacy Lawyer
Full access to impact assessments, edit access to foundation and controls
Training Coordinator
Develop and deliver AI governance training programs, ensuring organizational competency and awareness across all levels.
Key Responsibilities
- Design AI governance training curricula
- Manage competency framework and proficiency assessments
- Track training completion and certification
- +2 more responsibilities
L&D Manager, Training Specialist, HR Business Partner
Full access to training module, view access to relevant content
Detailed Access Matrix
Comprehensive view of module access permissions across all platform roles, from full administrative access to view-only permissions.
Personalized Dashboard Views
Each role sees a customized dashboard with relevant metrics, workflows, and insights tailored to their responsibilities.