GRChelp.ai shield markGRChelp.ai
← Back

Free tools & reference

Glossary

Orientation, not a dictionary — every term connects to the obligation behind it.

AI governance
Oversight of how a firm adopts and uses AI: who owns it, what the policy says, and the evidence that someone is watching. Not the tools themselves.
How we help →
NIST AI RMF
The U.S. National Institute of Standards and Technology's AI Risk Management Framework; functions GOVERN, MAP, MEASURE, MANAGE.
How we help →
NIST CSF 2.0
NIST Cybersecurity Framework 2.0; functions GOVERN, IDENTIFY, PROTECT, DETECT, RESPOND, RECOVER.
How we help →
FINRA
Financial Industry Regulatory Authority; oversees broker-dealers.
How we help →
FINRA 3110
FINRA's Supervision rule; requires a system to supervise the firm's business, including AI-assisted work.
How we help →
SEC
U.S. Securities and Exchange Commission.
How we help →
SEC 17a-4
SEC books-and-records retention rule; AI-assisted communications are records too.
How we help →
Reg S-P
SEC Regulation S-P; privacy and safeguarding of customer financial information.
How we help →
RIA
Registered Investment Adviser.
How we help →
NYDFS
New York Department of Financial Services (e.g., Part 500 cybersecurity).
How we help →
GRC
Governance, Risk, and Compliance.
How we help →
Maturity level (L0–L4)
How far a control has matured, from none (L0) to optimized (L4); assessments grade where you are vs. the target the rule expects.
How we help →