Listing Thumbnail

    Agentic AI Model Risk Management for Banks — SR 11-7 / OCC 2011-12

     Info
    Sold by: Kriv AI 
    Kriv AI delivers a 6-week fixed-fee Model Risk Management framework engagement designed specifically for agentic AI systems (Amazon Bedrock Agents, Claude Agent SDK, LangGraph, AutoGen, CrewAI, LlamaIndex) at US banks. Regulator-aligned to Federal Reserve SR 11-7 + OCC Bulletin 2011-12, FDIC FIL 22-2017, OCC 12 CFR Part 30 Appendix D Heightened Standards, SR 15-18, SR 17-3, NY DFS 23 NYCRR Part 500, OCC Bulletin 2023-17 Third-Party Risk, CFPB Regulation B / ECOA / FCRA / TILA, and international parallels (PRA SS1/23, ECB TRIM, BaFin MaRisk + BAIT). Deliverables: agentic AI inventory, T1–T4 tiering schema, effective-challenge framework, MRM Governance Committee charter + RACI, examiner Q&A prep pack (OCC / FRB / FDIC / NYDFS). Three tiers: $40K / $65K / $95K.

    Overview

    SR 11-7 was written in 2011 for GLMs and scorecards. Multi-step agents with tool use break the taxonomy — and bank MRM teams, Internal Audit, and the Board Risk Committee need a new framework before the next OCC / FRB / FDIC / NYDFS exam cycle.

    US bank MRM is defined by SR 11-7 + OCC 2011-12, with FDIC FIL 22-2017 for state non-member banks, OCC 12 CFR Part 30 App D Heightened Standards ($50B+), SR 15-18 effective challenge, SR 17-3 for complex BHCs, NYDFS 23 NYCRR Part 500 AI scope, CFPB Reg B / ECOA / FCRA / TILA, OCC Bulletin 2023-17 third-party AI. International parallels: PRA SS1/23, ECB TRIM, BaFin MaRisk + BAIT.

    SR 11-7's "model" definition reaches LLM-driven agents, planner/tool-use loops, and retrieval-augmented decisioning. Most banks have 500–5,000 registered traditional models; the agentic wave adds 50–500 more, and traditional tiering and validation patterns do not fit. Multi-step agents with tool use fail traditional effective challenge. MRA / MRIA findings citing "AI governance gap" are appearing in OCC / FRB / FDIC / NYDFS exams through 2025–2026. Stakes are clear: TD Bank $3B CMP (Oct 2024), Binance $4.3B (Nov 2023).

    Existing AWS Marketplace listings don't close this gap. IBM watsonx.governance + ModelOp Center sell platforms. Credo AI sells a registry. Adastra + NorthBay sell agentic build/deploy. Big-4 bank MRM (Deloitte, PwC, EY, KPMG, Oliver Wyman, Promontory, Protiviti) run $200K–$1.5M+ off-Marketplace. DataRobot, Arthur AI, Fiddler AI, ModelOp sell platforms at $100K–$500K+/yr. N24 is the first fixed-fee, transparent, agentic-AI-specific MRM framework on AWS Marketplace from a vendor with Anthropic CPN + Claude Agent SDK + LangGraph + Bedrock Agents fluency.

    Deliverable is document + process + tooling — not a platform, not an implementation. Methodology leverages N14 AML/KYC, N13 P&C Underwriting, N17 Trade Surveillance, N18 Claude Code Training Banking & FS, and Anthropic CPN agent-pattern depth.

    Methodology. Inventory → Tiering → Validation → Monitoring → Retirement lifecycle extended for agents: agentic inventory across BUs (sanctioned, shadow, vendor-embedded); pattern taxonomy (single-shot, multi-step w/ tool use, autonomous, HITL); T1–T4 tiering criteria (tool-invocation risk, compounding step-error, autonomy, materiality, reversibility, audit completeness, customer-impact surface); effective-challenge framework (tool-use behavioral tests, decomposition-quality, prompt-injection resilience, HITL threshold tests, counterfactual trajectory replay); champion-challenger harness; agent-aware Model Cards (tools, guardrails, escalation paths, failure modes; SageMaker Model Registry / MLflow integration); ongoing monitoring (drift, tool-use anomaly, hallucination rate, intervention trends via SageMaker + Bedrock); Governance Committee charter; examiner Q&A pack.

    Week-by-week (6 weeks). W1 Discovery + inventory + CRO/MRM/CCO workshops + regulatory citation map. W2 Taxonomy + T1–T4 Tiering. W3 Validation Design (effective-challenge; champion-challenger; Model Card templates; Registry integration). W4 Monitoring spec + SageMaker + Bedrock integration + IR. W5 Governance (charter; RACI; Board reporting; examiner Q&A). W6 Finalization + executive readout + Board briefing + handoff.

    Three tiers. Foundation $40K (single BU; up to 10 agents) for community banks $500M–$10B, mid-tier first-pilots, fintech BaaS. Standard $65K (enterprise-wide; up to 30 agents; full SR 11-7 + OCC 2011-12 + FDIC FIL 22-2017 + NYDFS 500; examiner Q&A; Board briefing; 90-day adoption) for mid-tier $10B–$100B, large-tier, BDs, asset managers. Enterprise $95K (G-SIB / Category 1–2 $100B–$500B+; systemic agents; OCC Part 30 App D Heightened Standards + PRA SS1/23 + EU AI Act high-risk overlap; multi-jurisdictional examiner pack; quarterly refresh option).

    Important disclosures. Kriv is NOT a bank, bank holding company, broker-dealer, investment adviser, or FRB / OCC / FDIC / NCUA / NYDFS / CFPB supervised entity. Kriv performs no model validation — Customer's independent MRM retains sole authority; Kriv delivers validation patterns + templates only. Kriv signs no MRM, Part 30, CCAR / DFAST, or any regulatory filing. Kriv represents no clients before any regulator. No legal, regulatory, or supervisory advice. Document + process + tooling framework only — not a platform, not an implementation, not a Managed MRM service. No guarantee of exam outcomes, MRA / MRIA remediation, consent-order lift, CMP mitigation, CCAR / DFAST approval, or Part 30 attestation acceptance. Anthropic CPN membership does not constitute endorsement.

    Highlights

    • First agentic-AI-specific MRM framework on AWS Marketplace — SR 11-7 + OCC Bulletin 2011-12 + FDIC FIL 22-2017 + OCC 12 CFR Part 30 Appendix D Heightened Standards + SR 15-18 + SR 17-3 + NY DFS Part 500 + OCC Bulletin 2023-17 Third-Party Risk + CFPB Reg B/ECOA/FCRA/TILA aligned. International parallels: PRA SS1/23 (BoE), ECB TRIM, BaFin MaRisk + BAIT. Deliverable is document + process + tooling framework, not a platform.
    • T1–T4 agentic tiering (tool-invocation risk, compounding step-error probability, autonomy, materiality, reversibility, audit-trail completeness, customer-impact surface). Effective-challenge patterns for agents (tool-use behavioral tests, decomposition-quality, prompt-injection resilience, counterfactual trajectory replay). Champion-challenger harness; agent-aware Model Cards; MRM Governance Committee charter + RACI; examiner Q&A prep pack (OCC / FRB / FDIC / NYDFS).
    • AWS Select + Databricks + Anthropic CPN + Claude Agent SDK fluency — 6-week fixed-fee $40K / $65K / $95K, document + tooling, no add-on. Foundation $40K (single BU, 10 agents) for community banks $500M–$10B; Standard $65K (enterprise-wide, 30 agents, examiner Q&A + Board briefing + 90-day adoption) for mid-tier $10B–$100B; Enterprise $95K (G-SIB / Category 1–2, systemic agents, Part 30 Heightened Standards overlay + PRA SS1/23 + EU AI Act overlap).

    Details

    Sold by

    Categories

    Delivery method

    Deployed on AWS
    New

    Introducing multi-product solutions

    You can now purchase comprehensive solutions tailored to use cases and industries.

    Multi-product solutions

    Pricing

    Custom pricing options

    Pricing is based on your specific requirements and eligibility. To get a custom quote for your needs, request a private offer.

    How can we make this page better?

    Tell us how we can improve this page, or report an issue with this product.
    Tell us how we can improve this page, or report an issue with this product.

    Legal

    Content disclaimer

    Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.

    Support

    Vendor support

    Primary contact. info@kriv.ai  · +1-732-433-5564 · https://kriv.ai/support 

    Response SLA. First response within 2 US business days (Mon–Fri 9 am – 6 pm ET, ex-US federal holidays). Active engagements: Engagement Lead within 4 business hours weekdays. MRA / MRIA / consent-order / Part 30 attestation-deadline-driven engagements compress to same business day.

    Onboarding SLA. First customer contact within 2 US business days of buyer inquiry / private-offer acceptance. Kickoff within 2–3 weeks of SOW; 5–10 business days for enforcement-driven engagements.

    Escalation. (1) Engagement Lead (named in SOW) → (2) Practice Director (info@kriv.ai ) → (3) CEO Abhinav Dangri (info@kriv.ai ).

    Communication. Dedicated Microsoft Teams channel; weekly 60-min video checkpoint; Friday written status. Customer SMEs 6–10 × 45–60-min interviews (CRO, Head of MRM, CCO, Head of AI, CAIO, CISO, LoB heads, GC, Internal Audit). Prior MRA / MRIA / consent-order text shared under NDA in Week 1.

    Handoff. Word/Excel/PDF in customer secure share; T1–T4 tiering matrix + agentic AI inventory as Excel; effective-challenge test scripts as Python / JSON; Model Card templates as Markdown + JSON; charter + RACI as Word; examiner Q&A prep as Word; Board briefing as PowerPoint.

    Out of scope. Kriv performs no model validation, signs no attestations (MRM, Part 30, CCAR, DFAST, any regulatory filing), represents no clients before any regulator, and provides no legal / supervisory advice. Framework is document + process + tooling only — not a platform, not an implementation, not a Managed MRM service. For Managed MRM, route to N2 AI Governance-as-a-Service.

    AWS-side billing. AWS infrastructure costs (typically minimal) billed directly by AWS.

    Holiday coverage. Closed on US federal holidays.