Skip to content

Systemic Risk

What is Systemic Risk?

The risk of widespread failure in a system, market, or industry that could trigger cascading effects across interconnected organizations.

Risk Management

Each of these is named in at least one of the same controls as systemic risk. The number is how many controls name both.

What the standards actually require on systemic risk

Requirements naming systemic risk across 6 standards, quoted from the control text.

EU AI Act6 controls

Providers of GPAI models with systemic risk shall additionally: perform model evaluation incl adversarial testing; assess and mitigate possible systemic risks;

EUAI-Art.55 · Obligations of providers of GPAI models with systemic risk
SASB Standards3 controls

Disclose management of systemic risks including financial, technology, and geopolitical risks

SASB-LG-2 · Systemic Risk Management
ISO 223181 control

Identify and address concentration risk and systemic risk where multiple suppliers share common dependencies.

ISO22318-9.1 · Concentration and Systemic Risk Review

VLOPs and VLOSEs shall provide the Digital Services Coordinator of establishment or the Commission, on reasoned request, access to data necessary to monitor compliance, and provide vetted researchers access to data for the sole purpose of researching systemic...

DSA-Art.40 · Data access and scrutiny

Lloyds Cyber Insurance Requirements - Systemic Cyber Risk Aggregation + Catastrophe Modelling. Lloyds Catastrophe Modelling Standards require all managing agents to: (a) Model Cyber Realistic Disaster Scenarios (Cyber RDS) developed by Lloyds + Cambridge Centr...

LLOYDS-CI-Systemic-Cyber-Risk-Aggregation-Cyber-Catastrophe-Modelling-Vendor-Use-RDS-Scenario-Testing · Lloyds Cyber Insurance Systemic Aggregation + Catastrophe Modelling + RDS

Questions people ask about systemic risk

What is Systemic Risk?
The risk of widespread failure in a system, market, or industry that could trigger cascading effects across interconnected organizations.
Why is Systemic Risk important for compliance?
Systemic Risk is a key concept in Risk Management. Understanding systemic risk helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address Systemic Risk?
Systemic Risk appears in the requirement text of EU AI Act, SASB Standards, ISO 22318, Digital Services Act (DSA) - Regulation (EU) 2022/2065, Japan FSA Cybersecurity Guidelines for Financial Institutions. Across these standards we have identified 18 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about Systemic Risk?
Explore our compliance framework pages to see how systemic risk applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how Systemic Risk applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.