AI Regulations Review
Summary briefings on the AI regulatory landscape, focused on what each rule demands for governance and compliance - and how every obligation translates into concrete engineering capabilities.
- 01 Key highlights distilled into a numbered list.
- 02 Action item cards split into governance and compliance tracks.
- 03 A high-level engineering translation into build capabilities.
Binding and Emerging National Rules
Jurisdictions where AI obligations are already law, actively litigated, or one signature away from enactment.
EU AI Act
The world's first comprehensive horizontal AI law. Risk-tiered obligations, phased application, and penalties up to EUR 35 million or 7% of global turnover.
US AI Regulation Patchwork
Executive orders, agency enforcement, and a fast-moving wave of state statutes. NIST AI RMF is the de facto national playbook for governance evidence.
Malaysia Draft AI Governance Bill
Voluntary AIGE guidelines today, a statutory risk-based bill in consultation since July 2026, and sectoral hard law already applying to critical systems.
UK Principles-Based Regime
Five cross-sector principles enforced by existing regulators, ADM reform under the Data (Use and Access) Act 2025, and a frontier-model bill still pending.
Australia Voluntary-to-Mandatory Path
Ten voluntary guardrails for high-risk settings today, mandatory guardrails in the works, with consumer, privacy, and sectoral laws already enforcing.
China Vertical Rulebook
The world's most prescriptive AI regime: algorithm filing, deep-synthesis consent, generative-AI security assessments, and nationwide content labelling.
Recognized Entities Shaping the Rulebook
Standards bodies, treaties, and intergovernmental frameworks that national regulators copy, cite, and certify against.
ISO/IEC 42001 AI Management Systems
The first certifiable AI management system standard, with an Annex A control catalogue and accredited certification now live worldwide.
OECD AI Principles
The first intergovernmental AI standard. Five values-based principles whose definitions are reused verbatim inside binding laws such as the EU AI Act.
Framework Convention on AI
The first legally binding international AI treaty, tying AI activity to human rights, democracy, and the rule of law.
Recommendation on the Ethics of AI
The most widely adopted global AI ethics instrument, backed by a readiness assessment methodology deployed across member states.
Hiroshima Process Code of Conduct
Voluntary but politically weighty commitments for organizations developing advanced AI: evaluation, disclosure, incident reporting, and provenance.
Guide on AI Governance and Ethics
The regional Southeast Asia playbook aligned to OECD and UNESCO, expanded with generative-AI guidance. The reference point behind Malaysia's draft bill.
These briefings summarize public regulatory instruments for engineering audiences. They are educational overviews, not legal advice. Timelines shift; verify current status with qualified counsel before making compliance decisions.
Turn Regulatory Pressure Into Engineered Advantage
Speak directly with AI steward & systems architect Hafiz Zainudin about encoding AI governance and compliance obligations into your delivery pipeline.