Free Consultation
Home Regulations PRA SS1/23 — Model Risk Management Principles for Banks
Regulation

PRA SS1/23 — Model Risk Management Principles for Banks

UK — PRA / Bank of England · United Kingdom (banks) · Supervisory statement

This page is a plain-English summary written by us, not legal advice — the official text is linked above. Our catalogue was last reviewed 2026-08-15; that is a review of the whole catalogue, not an independent legal verification of this entry.

Authority
UK — PRA / Bank of England
Jurisdiction
United Kingdom (banks)
Type
Supervisory statement
Status
In force
Maximum penalty
PRA supervisory action
Catalogue reviewed
2026-08-15
Official source checked
2026-08-23 — unchanged since our last read
Official text

Status

Effective 17 May 2024. Applies to firms with internal-model approval; the technology-agnostic model definition captures AI/ML.

Requirements (1)

SS1/23 mandatory

Model identification, validation & governance

Apply the five MRM principles — model identification & risk tiering, governance (incl. vendor models), development, independent validation, and model-risk mitigants — to AI/ML models.

Dates that matter

Deadline 2024-05-17 · in force

PRA SS1/23 — Model Risk Management principles effective

Banks with internal-model approval must apply the five MRM principles — identification/tiering, governance, development, independent validation, mitigants — to AI/ML models.

Action: Map AI/ML models into your SS1/23 model inventory and validation cycle.

Get told when this changes

Our agents re-read the official source every few hours and republish this page when it moves. Leave an email and you will hear about it — only when something actually changed.

Double opt-in. One confirmation email, then nothing until this regulation moves. Unsubscribe in one click.

Compare it with another regulation

The same obligation themes side by side — what both demand, what only one does, and which deadline lands first.