{
  "node_id": "mitre-atlas-mitigation-control-access-to-ai-models-and-data-at-rest",
  "title": "MITRE ATLAS Mitigation Control Access to AI Models and Data at Rest (AML.M0005) - Access Controls on AI Model Registries, Production Models, and Training Data",
  "domain": "AI Governance & Law",
  "version": "1.0.1",
  "last_updated": "2026-07-22",
  "bluf": "This node operationalises MITRE ATLAS mitigation AML.M0005 (Control Access to AI Models and Data at Rest). Establish access controls on internal model registries and limit internal access to production models. Limit access to training data only to approved users. It maps the mitigation to EU AI Act, NIST AI RMF, and ISO/IEC 42001 obligations and drives a 10-gate verification workflow that an AI agent can execute against any production system.",
  "paywall": {
    "status": "LOCKED",
    "unlock_cost_usd": "0.01",
    "skyfire_id": "41779894-ece2-4163-9761-b3b1b76e19b0"
  },
  "crosswalks": {
    "_available_keys": [
      "nist_framework",
      "iso_standard",
      "industry_mapping",
      "ai_overlay_2026"
    ],
    "_note": "Full crosswalk values included in vault response"
  },
  "dependencies": [
    "nist-ai-rmf-1-0",
    "eu-ai-act-2024",
    "iso-iec-42001-ai-management-system-2023"
  ],
  "primary_citations_count": 7
}