finos / waltz

Enterprise Information Service
https://waltz.finos.org
Apache License 2.0
182 stars 129 forks source link

Evaluate: "Governable" deployment patterns w/ Waltz for GenAI - Cross-Project Collaboration Hypothesis #7185

Open karlmoll opened 1 week ago

karlmoll commented 1 week ago

Description

Feature Request

Description of Problem:

I am looking to evaluate the potential for Waltz to data observability and control capabilities addressing threats, risks, & controls described by Governance documents (e.g. AI Readiness Governance Framework ), in conjunction with other FINOS/Open Source projects.

Feedback we have received: "everyone knows what the threats, risks, controls - but not how to implement".

Ideally would augment existing work done by CCC/CFI to map services described in AIR GF Reference Architecture https://github.com/finos/common-cloud-controls/milestone/6 https://github.com/finos/common-cloud-controls/issues/314

There is also work needed by the AIR SIG to make GF (and regulations) machine readable. There is a general move to describe every part of the deployment as X-as-Code, so in the case of Waltz might fit into a Data-as-Code description for auditability, observability, and automated change deployment.

A similar hypothesis has been addressed to CALM as a feature request to evaluate officially, and has been discussed unofficially with other projects described below: https://github.com/finos/architecture-as-code/issues/544

Potential Solutions:

This is a rough draft of the vision so far:

Benefits:

Resourcing

We would like to collaborate on this feature