> ## Documentation Index
> Fetch the complete documentation index at: https://docs.aigoframework.com/llms.txt
> Use this file to discover all available pages before exploring further.

# AIGO Governance Roles v0.1

# AIGO — AI Governance Operating Framework

## Governance Roles and Accountability

**Version:** 0.1
**Status:** Draft
**Working Name:** AIGO
**Full Name:** AI Governance Operating Framework

***

### 1. Purpose

The AIGO Governance Roles and Accountability model defines the roles, responsibilities, authorities, and accountability relationships required to govern artificial intelligence effectively.

AIGO recognizes that effective AI governance is a shared organizational responsibility.

AI governance should not normally be assigned exclusively to a single department, technical team, or individual.

The purpose of this document is to provide a common role structure that organizations can adapt according to their:

* organizational structure;
* size;
* industry;
* AI maturity;
* regulatory environment;
* risk profile;
* AI operating model; and
* use of internal or third-party AI systems.

***

### 2. Role Governance Principles

AIGO governance roles should be established according to the following principles:

* accountability should be clearly assigned;
* responsibilities should be documented;
* decision authority should be appropriate to the level of risk;
* conflicts of interest should be appropriately managed;
* governance responsibilities should be integrated with existing organizational structures where practical;
* technical and business responsibilities should be appropriately separated where required;
* individuals performing governance roles should have appropriate competence;
* accountability should remain clear when AI capabilities are outsourced; and
* responsibilities should be reviewed when AI systems, organizational structures, or risks change.

***

### 3. Role Model

AIGO defines a role-based governance model rather than requiring organizations to create specific job titles.

An organization may assign an AIGO role to:

* an individual;
* an existing organizational position;
* a department;
* a governance committee;
* a project team; or
* another appropriately authorized organizational function.

One individual may perform multiple AIGO roles in a small organization where appropriate.

However, combining roles should not create unacceptable conflicts of interest or reduce effective oversight.

***

### 4. Core Governance Roles

AIGO identifies the following core governance roles:

| Identifier      | Role                                   |
| --------------- | -------------------------------------- |
| `AIGO-ROLE-001` | Executive Sponsor                      |
| `AIGO-ROLE-002` | AI Governance Function                 |
| `AIGO-ROLE-003` | AI System Owner                        |
| `AIGO-ROLE-004` | Business Owner                         |
| `AIGO-ROLE-005` | AI Development / Engineering Team      |
| `AIGO-ROLE-006` | AI Operations Function                 |
| `AIGO-ROLE-007` | AI Risk Function                       |
| `AIGO-ROLE-008` | Information Security Function          |
| `AIGO-ROLE-009` | Privacy and Data Protection Function   |
| `AIGO-ROLE-010` | Legal and Regulatory Function          |
| `AIGO-ROLE-011` | Data Governance Function               |
| `AIGO-ROLE-012` | Human Oversight Function               |
| `AIGO-ROLE-013` | Procurement and Third-Party Management |
| `AIGO-ROLE-014` | Internal Audit / Independent Assurance |
| `AIGO-ROLE-015` | AI User                                |
| `AIGO-ROLE-016` | Affected Stakeholder                   |
| `AIGO-ROLE-017` | AI Governance Committee                |

***

### 5. Executive Sponsor

**Identifier:** `AIGO-ROLE-001`

#### 5.1 Purpose

The Executive Sponsor provides organizational leadership, authority, and support for the AI governance program.

#### 5.2 Responsibilities

The Executive Sponsor may be responsible for:

* establishing organizational support for AI governance;
* approving strategic AI governance objectives;
* ensuring appropriate resources are available;
* supporting risk-based decision making;
* ensuring significant governance issues receive appropriate attention;
* approving significant risk decisions where authorized; and
* promoting organizational accountability for AI governance.

#### 5.3 Accountability

The Executive Sponsor is accountable for ensuring that AI governance receives appropriate organizational authority and resources.

***

### 6. AI Governance Function

**Identifier:** `AIGO-ROLE-002`

#### 6.1 Purpose

The AI Governance Function coordinates and maintains the organization's AI governance capability.

#### 6.2 Responsibilities

The function may be responsible for:

* maintaining AI governance policies;
* coordinating governance processes;
* maintaining the AI system inventory;
* coordinating AI risk assessments;
* coordinating governance reviews;
* maintaining governance documentation;
* coordinating control implementation;
* monitoring governance performance;
* coordinating reporting;
* supporting governance committees; and
* coordinating continuous improvement.

#### 6.3 Accountability

The AI Governance Function should have sufficient authority and access to information to perform its governance responsibilities effectively.

***

### 7. AI System Owner

**Identifier:** `AIGO-ROLE-003`

#### 7.1 Purpose

The AI System Owner is accountable for the governance of an individual AI system throughout its applicable lifecycle.

#### 7.2 Responsibilities

The AI System Owner may be responsible for:

* defining the system purpose;
* maintaining system information;
* ensuring appropriate risk assessment;
* ensuring applicable controls are implemented;
* coordinating lifecycle approvals;
* ensuring appropriate monitoring;
* managing significant changes;
* coordinating incidents;
* maintaining governance evidence; and
* initiating retirement when appropriate.

#### 7.3 Accountability

The AI System Owner remains accountable for the governance of the AI system even when development, infrastructure, models, or other capabilities are provided by third parties.

***

### 8. Business Owner

**Identifier:** `AIGO-ROLE-004`

#### 8.1 Purpose

The Business Owner represents the organizational business purpose and expected outcomes associated with an AI system.

#### 8.2 Responsibilities

The Business Owner may be responsible for:

* defining business objectives;
* confirming intended use;
* identifying business stakeholders;
* evaluating business impact;
* approving business requirements;
* participating in risk decisions;
* reviewing system performance; and
* determining whether the AI system continues to provide business value.

#### 8.3 Accountability

The Business Owner should ensure that the AI system remains aligned with its approved organizational purpose.

***

### 9. AI Development and Engineering Team

**Identifier:** `AIGO-ROLE-005`

#### 9.1 Purpose

The AI Development and Engineering Team designs, develops, integrates, tests, and maintains AI systems or their technical components.

#### 9.2 Responsibilities

Responsibilities may include:

* technical design;
* implementation;
* model integration;
* application development;
* testing;
* security engineering;
* technical documentation;
* defect remediation;
* technical risk identification;
* change implementation; and
* technical monitoring.

#### 9.3 Accountability

The development and engineering team is responsible for implementing assigned technical requirements and escalating material technical risks.

***

### 10. AI Operations Function

**Identifier:** `AIGO-ROLE-006`

#### 10.1 Purpose

The AI Operations Function is responsible for the reliable and controlled operation of AI systems after deployment.

#### 10.2 Responsibilities

Responsibilities may include:

* operational monitoring;
* availability management;
* performance monitoring;
* incident response;
* operational changes;
* access management;
* deployment management;
* logging;
* service continuity; and
* operational evidence.

#### 10.3 Accountability

The AI Operations Function should ensure that operational issues are identified, documented, managed, and escalated appropriately.

***

### 11. AI Risk Function

**Identifier:** `AIGO-ROLE-007`

#### 11.1 Purpose

The AI Risk Function provides risk management expertise and independent challenge where appropriate.

#### 11.2 Responsibilities

Responsibilities may include:

* defining AI risk methodology;
* supporting AI risk assessments;
* reviewing risk treatment;
* challenging risk decisions;
* monitoring AI risk exposure;
* supporting risk reporting;
* escalating significant risks; and
* maintaining alignment with enterprise risk management.

#### 11.3 Independence

Where appropriate, the AI Risk Function should maintain sufficient independence from AI development and operational teams to provide effective challenge.

The level of independence should be proportionate to the organization's size, structure, and AI risk profile.

***

### 12. Information Security Function

**Identifier:** `AIGO-ROLE-008`

#### 12.1 Purpose

The Information Security Function provides security governance and expertise for AI systems and their supporting environments.

#### 12.2 Responsibilities

Responsibilities may include:

* security risk assessment;
* threat assessment;
* security architecture;
* access control;
* vulnerability management;
* security testing;
* security monitoring;
* incident response; and
* security assurance.

#### 12.3 AI-Specific Security

The function should consider AI-specific security threats where relevant, including:

* prompt injection;
* data leakage;
* model abuse;
* unauthorized tool execution;
* malicious inputs;
* model extraction;
* supply-chain threats; and
* excessive autonomy or permissions.

The specific threats considered should reflect the architecture, capabilities, and risk profile of the AI system.

***

### 13. Privacy and Data Protection Function

**Identifier:** `AIGO-ROLE-009`

#### 13.1 Purpose

The Privacy and Data Protection Function provides privacy governance and expertise for AI systems that process personal or otherwise protected information.

#### 13.2 Responsibilities

Responsibilities may include:

* privacy assessments;
* data protection requirements;
* privacy risk assessment;
* data minimization;
* retention requirements;
* data-sharing assessment;
* third-party processing review; and
* privacy incident support.

#### 13.3 Accountability

The function should provide appropriate privacy expertise and challenge where required by organizational policy or applicable requirements.

***

### 14. Legal and Regulatory Function

**Identifier:** `AIGO-ROLE-010`

#### 14.1 Purpose

The Legal and Regulatory Function provides legal and regulatory expertise relevant to AI activities.

#### 14.2 Responsibilities

Responsibilities may include:

* identifying relevant legal requirements;
* supporting regulatory interpretation;
* reviewing contracts;
* assessing legal risks;
* supporting regulatory reporting;
* reviewing AI-related claims;
* advising on intellectual property considerations; and
* supporting regulatory change management.

#### 14.3 Advisory Role

Legal and regulatory responsibilities should remain consistent with the organization's legal governance model.

AIGO does not assign legal responsibility to this role beyond the authority and responsibilities established by the organization.

***

### 15. Data Governance Function

**Identifier:** `AIGO-ROLE-011`

#### 15.1 Purpose

The Data Governance Function provides governance for data used by AI systems.

#### 15.2 Responsibilities

Responsibilities may include:

* data ownership;
* data classification;
* data quality;
* data lineage;
* data provenance;
* access requirements;
* retention;
* data lifecycle management; and
* data governance standards.

#### 15.3 Accountability

The function should ensure that important data governance requirements are identified and appropriately addressed.

***

### 16. Human Oversight Function

**Identifier:** `AIGO-ROLE-012`

#### 16.1 Purpose

The Human Oversight Function establishes or coordinates appropriate human involvement in AI decisions and operations.

#### 16.2 Responsibilities

Responsibilities may include:

* defining human review requirements;
* establishing intervention mechanisms;
* defining escalation thresholds;
* reviewing high-impact decisions;
* monitoring automation bias;
* assessing human factors; and
* ensuring users understand their responsibilities.

#### 16.3 Applicability

This role may be particularly important for AI systems involving:

* significant decisions;
* autonomous actions;
* high-impact processes;
* agentic workflows; or
* other situations where human intervention is required.

***

### 17. Procurement and Third-Party Management

**Identifier:** `AIGO-ROLE-013`

#### 17.1 Purpose

The Procurement and Third-Party Management role governs the acquisition and ongoing management of external AI services, providers, suppliers, and dependencies.

#### 17.2 Responsibilities

Responsibilities may include:

* supplier due diligence;
* AI service assessment;
* contractual requirements;
* security requirements;
* privacy requirements;
* service-level requirements;
* supplier monitoring;
* dependency management; and
* exit planning.

#### 17.3 Accountability

The use of third-party AI services does not eliminate the organization's responsibility for appropriate governance of those services.

Responsibility boundaries between the organization and third parties should be documented where material.

***

### 18. Internal Audit and Independent Assurance

**Identifier:** `AIGO-ROLE-014`

#### 18.1 Purpose

Internal Audit or an appropriately independent assurance function provides independent evaluation of AI governance effectiveness where required.

#### 18.2 Responsibilities

Responsibilities may include:

* independent assessment;
* audit planning;
* control testing;
* evidence review;
* governance effectiveness assessment;
* reporting;
* recommendations; and
* follow-up of remediation.

#### 18.3 Independence

Assurance activities should maintain an appropriate level of independence from the activities being assessed.

Where an organization does not have an internal audit function, an appropriately qualified independent party may perform assurance activities where appropriate.

***

### 19. AI User

**Identifier:** `AIGO-ROLE-015`

#### 19.1 Purpose

The AI User is an individual who interacts with, operates, supervises, or relies upon an AI system as part of their activities.

#### 19.2 Responsibilities

Responsibilities may include:

* following applicable policies;
* using AI systems for approved purposes;
* protecting confidential and sensitive information;
* identifying unexpected or inappropriate behavior;
* reporting incidents;
* applying appropriate human judgment;
* avoiding unauthorized use; and
* completing required training.

#### 19.3 Accountability

AI Users remain responsible for complying with organizational requirements applicable to their use of AI.

***

### 20. Affected Stakeholder

**Identifier:** `AIGO-ROLE-016`

#### 20.1 Purpose

An Affected Stakeholder is an individual, group, organization, or other party that may be materially affected by an AI system or its outcomes.

#### 20.2 Examples

Affected stakeholders may include:

* customers;
* employees;
* applicants;
* citizens;
* patients;
* students;
* business partners;
* communities; and
* other individuals or groups.

#### 20.3 Governance Considerations

Organizations should consider affected stakeholders when evaluating:

* system purpose;
* risks;
* impacts;
* transparency;
* human oversight;
* complaints;
* remediation; and
* continuous improvement.

***

### 21. AI Governance Committee

**Identifier:** `AIGO-ROLE-017`

#### 21.1 Purpose

The AI Governance Committee provides cross-functional oversight of organizational AI governance.

#### 21.2 Responsibilities

Responsibilities may include:

* reviewing AI strategy;
* reviewing significant AI risks;
* approving governance policies;
* reviewing high-risk AI systems;
* reviewing significant exceptions;
* monitoring governance performance;
* reviewing significant incidents;
* coordinating organizational functions; and
* overseeing continuous improvement.

#### 21.3 Membership

Membership should be determined according to organizational size, structure, risk, and AI use.

Potential members may include representatives from:

* executive leadership;
* AI governance;
* business;
* risk;
* security;
* privacy;
* legal;
* technology;
* data governance;
* compliance; and
* internal audit or assurance where appropriate.

***

***

### 22. Role Assignment

Organizations should map AIGO roles to their own organizational structure.

An organization may assign multiple AIGO roles to one individual or function where appropriate.

For example, a smaller organization may combine:

* AI Governance;
* AI Risk;
* AI System Ownership; and
* Business Ownership.

Larger organizations may establish dedicated functions for these responsibilities.

Role assignment should consider:

* organizational size;
* system risk;
* complexity;
* regulatory requirements;
* independence requirements;
* available competence; and
* organizational structure.

***

### 23. Responsibility Assignment

Organizations should document responsibility assignments for applicable AI governance activities.

AIGO recommends that organizations clearly distinguish between:

* accountability;
* responsibility;
* authority;
* consultation; and
* information or reporting relationships.

Where appropriate, organizations may use a responsibility assignment model such as RACI.

#### 23.1 RACI Model

A RACI model may identify:

* **Responsible** — the individual or function performing the activity;
* **Accountable** — the individual or function ultimately answerable for the outcome;
* **Consulted** — the party whose expertise or input is required; and
* **Informed** — the party that should receive relevant information.

Organizations may use another responsibility model where it provides equivalent clarity.

***

### 24. Separation of Duties

Organizations should consider separation of duties where the nature or risk of an AI activity requires independent review or approval.

Examples may include separation between:

* system development and approval;
* risk assessment and risk acceptance;
* system operation and independent assurance;
* control implementation and control assessment; and
* procurement and independent security or privacy review.

The required level of separation should be proportionate to risk.

***

### 25. Delegation of Authority

Responsibilities and decision-making authority may be delegated where appropriate.

Delegation should:

* be explicitly defined;
* identify the delegated authority;
* identify applicable limitations;
* maintain accountability;
* be documented where material; and
* be reviewed when circumstances change.

Delegation of responsibility should not automatically remove accountability from the designated accountable role.

***

### 26. Escalation

AIGO roles should have defined mechanisms for escalating significant AI governance issues.

Escalation may be required when:

* risk exceeds approved tolerance;
* a significant incident occurs;
* a control failure is identified;
* unauthorized AI use is detected;
* significant changes are proposed;
* human oversight is insufficient;
* material third-party issues arise;
* regulatory concerns are identified; or
* an AI system behaves unexpectedly.

Escalation paths should be appropriate to the organization's governance structure.

***

### 27. Accountability for Third-Party AI

The use of external AI providers does not eliminate the organization's responsibility for governing the AI systems and services it uses.

Organizations should establish appropriate responsibility for:

* provider selection;
* due diligence;
* contractual requirements;
* risk assessment;
* security;
* privacy;
* monitoring;
* incident management;
* service changes; and
* termination or replacement.

Where responsibilities are shared with a provider, the organization should document the relevant responsibility boundaries.

***

### 28. Accountability for Autonomous AI Systems

AI systems capable of autonomous or semi-autonomous actions require clearly defined accountability.

Organizations should identify:

* the system owner;
* the business owner;
* the responsible technical function;
* authorized actions;
* operational boundaries;
* human intervention mechanisms;
* escalation mechanisms; and
* accountability for system outcomes.

Autonomous capability should not be interpreted as autonomous organizational accountability.

***

### 29. Accountability for AI Agents and Agentic Workflows

AI agents and agentic workflows may involve multiple models, tools, applications, services, and decision points.

Organizations should therefore identify governance responsibility for:

* the overall agentic system;
* individual agents where relevant;
* connected tools;
* external services;
* data sources;
* permissions;
* actions;
* human oversight; and
* operational monitoring.

Where multiple components are provided by different parties, responsibility boundaries should be documented.

***

### 30. Competence and Role Requirements

Individuals assigned AIGO governance responsibilities should have appropriate knowledge, skills, experience, and authority for their role.

Competence requirements should be proportionate to:

* role responsibilities;
* AI system complexity;
* system risk;
* level of autonomy;
* regulatory environment; and
* organizational context.

Competence should be reviewed and maintained as AI technologies and governance requirements evolve.

***

### 31. Role Conflicts

Organizations should identify and manage conflicts that may arise when one individual or function performs multiple AIGO roles.

Combining roles may be appropriate where:

* organizational size is limited;
* risks are appropriately managed;
* decision authority remains clear; and
* required oversight is maintained.

Roles should be separated where combining them could create unacceptable conflicts or undermine effective governance.

***

### 32. Role Documentation

Organizations should maintain appropriate documentation of AIGO role assignments.

Documentation may include:

* role descriptions;
* organizational charts;
* responsibility matrices;
* committee charters;
* delegation records;
* approval authorities;
* escalation paths; and
* AI system ownership records.

Documentation should be kept sufficiently current to support effective governance.

***

### 33. Role Authority

Each assigned AIGO role should have sufficient authority to perform its responsibilities effectively.

Authority should be appropriate to:

* the role's accountability;
* the decisions it is expected to make;
* the risks associated with those decisions;
* the organization's governance structure; and
* applicable legal, regulatory, contractual, and organizational requirements.

Individuals should not be assigned accountability without providing the authority, resources, information, and access necessary to perform the role.

***

### 34. Role Interactions

AIGO roles should operate as an interconnected governance system rather than as isolated functions.

Important interactions may include:

* Executive Sponsor providing organizational authority;
* AI Governance coordinating governance activities;
* Business Owner defining business objectives;
* AI System Owner coordinating system-level accountability;
* AI Development and Engineering implementing technical requirements;
* AI Operations managing operational activities;
* AI Risk providing risk oversight and challenge;
* Security managing security requirements;
* Privacy managing privacy requirements;
* Legal and Regulatory providing legal and regulatory expertise;
* Data Governance managing data-related requirements;
* Human Oversight coordinating appropriate human intervention;
* Procurement managing third-party relationships;
* Assurance independently evaluating governance effectiveness; and
* AI Users applying approved governance requirements in practice.

***

### 35. Role Escalation and Decision Rights

Organizations should define which roles have authority to make or approve significant AI governance decisions.

Decision rights may include authority to:

* approve an AI system for deployment;
* approve risk acceptance;
* approve exceptions;
* approve significant system changes;
* suspend an AI system;
* approve third-party AI services;
* require remediation;
* escalate incidents; and
* retire an AI system.

Decision rights should be proportionate to the potential impact and risk of the relevant decision.

***

### 36. Role Review

AIGO role assignments should be periodically reviewed.

A review may be triggered by:

* organizational restructuring;
* introduction of new AI capabilities;
* deployment of high-risk AI systems;
* significant changes in AI operating models;
* changes in applicable requirements;
* significant incidents;
* changes in third-party dependencies; or
* changes in organizational risk tolerance.

The outcome of role reviews should be documented where material.

***

### 37. Role Traceability

AIGO role definitions should maintain traceability to relevant governance requirements.

Where practical, organizations should be able to identify relationships between:

* governance principles;
* governance domains;
* roles;
* lifecycle activities;
* risks;
* controls;
* evidence; and
* assurance activities.

This traceability supports accountability and helps demonstrate how governance responsibilities are implemented.

***

### 38. Organizational Adaptation

AIGO roles are intended to provide a common governance model rather than require identical organizational structures.

Organizations may:

* rename roles;
* combine roles;
* divide roles;
* assign roles to committees;
* assign roles to existing functions; or
* create additional roles.

Any adaptation should preserve the underlying accountability and governance outcomes defined by AIGO.

***

### 39. Role Extensions

Organizations may define additional roles where the organization's AI activities require responsibilities not adequately represented by the core AIGO role model.

Additional roles may address areas such as:

* model governance;
* AI safety;
* AI red teaming;
* AI ethics;
* AI assurance;
* AI architecture;
* AI platform engineering;
* AI observability;
* AI supply-chain management; or
* specialized regulatory oversight.

Additional roles should maintain appropriate traceability to the AIGO framework.

***

### 40. Minimum Accountability Requirements

For every governed AI system, the organization should identify, at minimum:

1. an accountable AI System Owner;
2. a Business Owner or equivalent accountable business function;
3. appropriate technical responsibility;
4. appropriate risk responsibility;
5. appropriate security responsibility where relevant;
6. appropriate privacy and data protection responsibility where relevant;
7. appropriate human oversight where required;
8. appropriate third-party responsibility where external providers are involved; and
9. an escalation path for significant risks and incidents.

The exact organizational assignment may vary according to the size, complexity, and risk of the AI system.

***

### 41. Role Governance Records

Organizations should maintain appropriate records demonstrating how AIGO roles have been assigned.

Records may include:

* role assignment registers;
* responsibility matrices;
* governance committee records;
* system ownership records;
* approval records;
* delegation records;
* escalation procedures; and
* role competency records.

Records should be maintained according to the organization's applicable information management and retention requirements.

***

### 42. Role Governance and Continuous Improvement

Role structures should evolve as the organization's AI capabilities and governance maturity develop.

Organizations should periodically evaluate whether:

* responsibilities remain clear;
* accountability remains effective;
* authority remains appropriate;
* role conflicts are adequately managed;
* governance gaps exist;
* new AI capabilities require additional roles; and
* existing roles remain appropriate.

Identified improvements should be incorporated through the organization's governance and change-management processes.

***

### 43. Relationship to AIGO Controls

The AIGO role model provides the accountability foundation for the AIGO control framework.

Controls defined within `07-controls` should identify appropriate control ownership and responsibility where practical.

Role assignments should therefore support traceability between:

**Role → Governance Domain → Risk → Control → Evidence → Assurance**

This relationship allows organizations to determine who is accountable for implementing, operating, monitoring, and assessing governance controls.

***

### 44. Relationship to the AI Governance Lifecycle

AIGO roles should be assigned across the AI governance lifecycle.

Different roles may become more prominent during different lifecycle stages, including:

* ideation;
* assessment;
* design;
* development;
* testing;
* approval;
* deployment;
* operation;
* monitoring;
* change;
* incident response; and
* retirement.

Role responsibilities should be sufficiently clear to ensure that accountability does not disappear between lifecycle stages.

***

### 45. Relationship to AI Risk Management

AIGO roles should support the identification, assessment, treatment, monitoring, and escalation of AI risks.

Responsibility for risk should be assigned at the appropriate organizational level.

Risk ownership should not automatically be transferred to the AI Risk Function.

The AI Risk Function may provide oversight, methodology, and challenge while accountable business and system owners retain responsibility for risks within their authority.

***

### 46. Relationship to AI System Profiles

Different AI System Profiles may require different role configurations.

For example, an AI system with limited automation may require relatively simple governance responsibilities, while an autonomous agentic system may require additional responsibilities for:

* human oversight;
* tool authorization;
* security;
* operational monitoring;
* action approval;
* incident management; and
* independent assurance.

Organizations should adapt role assignments according to the characteristics and risk of each AI system.

***

### 47. Role Governance Maturity

The maturity of an organization's AI governance roles may be assessed according to factors such as:

* role definition;
* responsibility clarity;
* accountability;
* authority;
* competence;
* independence;
* documentation;
* effectiveness;
* monitoring; and
* continuous improvement.

Organizations should seek to improve role governance as their AI capabilities and governance maturity increase.

***

### 48. Document Status

**Document:** AIGO Governance Roles and Accountability

**Version:** 0.1

**Status:** Draft

**Working Name:** AIGO

**Full Name:** AI Governance Operating Framework

**Document Type:** Framework Governance Roles

**Identifier Prefix:** `AIGO-ROLE`

This document defines the foundational governance roles and accountability model for the AIGO framework.

Organizations may adapt the role model to their organizational structure while maintaining clear accountability, appropriate authority, and effective governance outcomes.
