EC-Council Unveils Free ADG 2.0 Framework Amid Global AI Regulation Divide
EC-Council Launches ADG 2.0 Framework for AI Governance
In a timely initiative, EC-Council has introduced ADG 2.0, the latest iteration of its Adopt, Defend, Govern (ADG) framework, now available at no cost for governments, regulators, and standards bodies globally. This significant release aims to address the growing complexities surrounding AI governance as nations grapple with divided opinions on the regulation of artificial intelligence.
The ADG 2.0 framework not only enhances the foundational elements of AI governance but also extends the original set of 12 minimum controls to over 180 controls, systematically organized into 12 control families. Each control in the framework has been meticulously mapped to more than 90 existing regulations and standards, including pivotal guidelines such as the NIST AI Risk Management Framework, ISO/IEC 42001, and the EU AI Act. The framework is designed to facilitate regulators and enterprises in navigating the convoluted landscape of AI regulations while ensuring compliance.
As nations face divergent pathways in AI governance, EC-Council recognizes the urgent need for cohesive standards. Recent statements from global leaders illustrate this divide. For example, former President Trump has characterized concerns over AI risks as overstated. Conversely, the Foreign Ministry of China has cautioned against fearmongering, arguing that it could obstruct effective global governance. In a bid for international cooperation, Singapore's Foreign Affairs Minister also called for new multilateral AI safeguards during the UN General Assembly.
EC-Council’s ADG 2.0 framework aims to provide immediate support to public authorities by allowing them to map its controls to their existing laws and standards. This proactive approach can aid in preventing regulatory gaps while nations seek to establish comprehensive AI governance frameworks. Jay Bavisi, the Founder and Group CEO of EC-Council, expressed the urgency of this initiative, stating, “Governments shouldn’t have to build governance from a blank page while they wait.”
The framework emphasizes practical governance beyond mere documentation. Bavisi challenges organizations to “say what you do, do what you say, and be able to prove both.” This stipulation addresses a common concern in AI governance: the discrepancy between policy and practice. ADG 2.0 mandates that companies not only articulate their governance structures but also substantiate them through evidence, fostering accountability.
One of the key features of the ADG 2.0 framework is its flexible governance model, which includes runtime governance, allowable levels of autonomy in AI systems, and defined evidence requirements. It stipulates four critical operational controls: ADMIT, DECIDE, EMIT, and COMMIT, which necessitate human oversight at predefined decision thresholds. Furthermore, the framework distinguishes between assistive, conditional, and autonomous AI systems—clarifying what actions AI can undertake at each autonomy level and outlining required documentation.
The DART implementation method—Discover, Analyze, Report, and Transform—guides organizations in identifying governance gaps and swiftly addressing them. By enabling governments, regulators, and standards bodies to utilize ADG 2.0 freely, EC-Council aims to standardize a critical understanding of AI risks and establish robust governance practices across sectors.
In closing, the launch of ADG 2.0 represents a significant stride towards enhancing AI governance frameworks. Public authorities interested in leveraging this comprehensive tool can reach out to EC-Council for assistance or access the framework directly through their website. With over 400,000 professionals certified globally, EC-Council continues to be a leader in cybersecurity and AI governance, committed to fostering safe and effective practices in an industry characterized by rapid advancement and evolving challenges.