Statement 31: Undertake integration planning
Agencies should
Criterion 110: Ensure the AI system meets architecture and operational requirements with the Australian Government Security Authority to Operate (SATO).
This aspect of integration planning includes:
- assessing the AI system and its third-party dependencies against the agency’s requirements to identify risks
- assessing the AI system against the agency’s architecture principles
- identifying any gaps between the agency’s current and target infrastructure to support the AI system
- ensuring the AI system meets security and privacy requirements for handling classified data.
Criterion 111: Identify suitable tests for integration with the operational environment, systems, and data.
This includes:
- ensuring robust test methods are selected
- incorporating auto testing processes
- ensuring that environment controls satisfy security and privacy requirements for the data in the AI system.