Compliance Brief

Bank of Thailand AI Risk Management Guidelines

Bank of Thailand AI Risk Management Guidelines - Compliance Brief

Complying with the Bank of Thailand (BOT) AI Risk Management Guidelines

The Bank of Thailand (BOT) issued Policy Guideline No. BOT.3.5994/2568 on Risk Management for the Use of Artificial Intelligence Systems. The guideline provides a framework for financial institutions to identify, manage, and monitor the risks associated with the use of AI. Thales helps financial institutions in Thailand to align with the Data Risks, Model Development and Cybersecurity Controls of the AI Development and Security Controls in the Guidelines.

Financial institutions in Thailand face growing requirements to manage the risks associated with artificial intelligence. The Bank of Thailand (BOT) AI Risk Management Guidelines establish expectations for AI governance, risk management, responsible AI practices, and controls across the AI lifecycle. This solution brief explains the key principles and how organizations can address areas including data risk, model development, data security, and cybersecurity.

The brief outlines how Thales solutions can help financial institutions in Thailand strengthen controls around sensitive data, AI models, APIs, applications, and AI-driven systems. It provides a practical view of how data discovery, classification, masking, tokenization, encryption, hardware security, application security, and threat detection can support AI risk management and compliance efforts.

What you will learn:

  • The key areas covered by the Bank of Thailand AI Risk Management Guidelines
  • How AI governance and the FEAT principles apply to financial institutions
  • How to manage data risks across AI development and deployment
  • How data security controls can help protect sensitive information used by AI systems
  • How cybersecurity controls can help address malicious prompts, API threats, bots, and other AI-related risks