C009—Enable real-time feedback and intervention
>Control Description
Application
Frequency
Every 3 monthsCapabilities
>Controls & Evidence (2)
Technical Implementation
Core - This should include:
- Enabling user intervention capabilities. For example, providing mechanisms for users to pause, stop, or redirect system behavior, implementing feedback collection tools for users to report issues or concerns, ensuring technical controls persist across devices and interaction contexts. - Ensuring accessibility of feedback and intervention mechanisms. For example, adhering to WCAG 2.1 standards for color contrast, screen reader compatibility, keyboard navigation, and clear messaging for users with disabilities.
Operational Practices
Supplemental - This may include:
- Reviewing user feedback and intervention logs regularly. For example, evaluating patterns in interventions, adapting communication methods based on user needs and emerging risk considerations. - Analyzing collected feedback using structured methodologies. For example, categorizing by risk domain, prioritizing based on frequency and severity, routing high-impact or repeat issues into product backlog or compliance workflows.
>Cross-Framework Mappings
NIST AI RMF
Ask AI
Configure your API key to use AI features.