CSAIChaptersEventsBlog
Learn how to uncover runtime risks, close governance gaps, and strengthen oversight. Register now for the June 9 webinar →
Publication Tag

RiskRubric v2 Concept Paper

Released: 06/04/2026

RiskRubric v2 Concept Paper
This CSA concept paper introduces RiskRubric v2, an evidence-based risk assessment framework designed to evaluate AI services across six pillars of trust, security, and operational integrity.

The paper examines:
  • How AI risk assessment must expand beyond models to include MCP servers and AI agents
  • Why independent, multi-scanner evaluations improve transparency, confidence, and trust in AI risk ratings
  • How RiskRubric v2 introduces updated scoring methodologies, confidence indices, and governance structures for AI risk assessment

The paper also explores the evolution of RiskRubric from a single-evaluator model to an open ecosystem of independent assessment partners, while introducing a new Excessive Agency pillar to address emerging risks associated with autonomous AI systems.

Download this Resource

Prefer to access this resource without an account? Download it now.

Featured by CSA

Want to see your content featured here?

Contact us to learn more!

Explore More of CSA

Research & Best Practices

Stay informed about the latest best practices, reports, and solutions in cloud security with CSA research.

Upcoming Events & Conferences

Stay connected with the cloud security community by attending local events, workshops, and global CSA conferences. Engage with industry leaders, gain new insights, and build valuable professional relationships—both virtually and in person.

Training & Certificates

Join the countless professionals who have selected CSA for their training and certification needs.

Industry News

Stay informed with the latest in cloud security news - visit our blog to keep your competitive edge sharp.