Aeon AI Risk Management

AI Vendor Due Diligence

A fixed-scope review for AI vendor relationships, model documentation, risk tiering, and B-10-aligned controls.

Questions this page answers

What is AI vendor due diligence?
AI vendor due diligence reviews vendor model documentation, risk tiering, contractual controls, and oversight evidence for AI suppliers.
How does this relate to OSFI B-10?
The review maps vendor arrangements, model documentation, contract controls, and remediation actions to OSFI B-10 third-party risk expectations.

Vendor inventory

Identify and risk-rate AI vendor arrangements.

Model documentation

Review training data lineage, evaluation methodology, and bias or robustness evidence.

Contract controls

Map gaps against B-10 contract expectations and practical remediation clauses.