AEGISAIStart Assessment

About AegisAI Compliance

Who built this, and why you should trust it.

AegisAI was built from a simple observation: financial institutions understand their AI governance obligations but lack the structured tools to act on them.

“Every CCO I spoke to said the same thing: we know we need to act on AI governance, but we don't have the bandwidth to build it from scratch, and we can't justify a six-figure engagement.”

I spent years working inside the compliance and risk functions of financial institutions — watching teams navigate model risk management, vendor due diligence, and now AI governance with frameworks designed for large banks and budgets built for community institutions. The gap was obvious. The solution wasn't.

AegisAI Compliance exists to bridge that gap — with assessments, templates, and evidence frameworks built specifically for CCOs, CROs, and compliance teams at institutions under $10 billion in assets.

Every product on this platform traces directly to the regulatory frameworks your examiners use: SR 26-2, OCC Bulletin 2026-13, FFIEC interagency guidance, NIST AI RMF. No generic AI content. No legal conclusions. Just structured, exam-ready compliance infrastructure.

Methodology & Sources

All frameworks, assessments, and templates on this platform are grounded in the following regulatory sources and guidance documents.

Model Risk Management

SR 26-2 / OCC Bulletin 2026-13 — current AI model risk expectations. SR 11-7 — legacy MRM foundation and mapping.

Third-Party Risk

FFIEC Interagency Guidance on Third-Party Relationships — vendor AI due diligence and oversight requirements.

AI Governance Framework

NIST AI RMF and NIST Generative AI Profile — risk categorization and governance structure.

Supervisory Expectations

CFPB, FDIC, OCC, and Federal Reserve guidance on AI use in consumer protection, fair lending, and safety and soundness.

Industry Framework

Cyber Risk Institute Financial Services AI RMF — sector-specific risk management aligned to NIST.

Grant Holloway

Content authored by

Grant Holloway

Founder & CEO, AegisAI Compliance — former financial institution risk & compliance practitioner. All platform content reviewed against current supervisory expectations.

This platform and its content are provided for informational and educational purposes only. They do not constitute legal, regulatory, audit, or supervisory advice. Institutions should consult qualified legal counsel and compliance professionals regarding their specific obligations.