Appendix B. Extended Security Control Tables

This appendix provides expanded reference tables (Tables B.1–B.10) that catalog additional security controls applicable across the phases of the AI lifecycle. These tables are intended to complement the prioritized controls presented in the main body of this guide by offering a more comprehensive view of relevant safeguards.

For each AI lifecycle phase, the tables list individual security controls, identify the Open Web Application Security Project (OWASP) and Berryville Institute of Machine Learning (BIML) threat categories that each control helps mitigate, and explain the rationale for why each control is relevant to that phase. Together, this information enables readers to understand not only what controls should be applied, but also which risks they address and why these controls are important.

These controls are not exhaustive or mandatory; they serve as supplemental reference to support risk-based decisionmaking. Organizations may select, adapt, or prioritize controls based on their specific AI use cases, systems, threat models, operational constraints, and regulatory obligations.