1 min readExecutive Guide

Executive Guide

Qualifying and Quantifying Risk under the EU AI Act

Author
Aziz Shuaib Ausi
Published
August 11, 2026
Reading time
1 min
Publication type
Executive Guide
Availability
Open access

Executive Summary

The EU AI Act employs a risk-based regulatory framework for Artificial Intelligence systems, where the intensity of regulation is proportional to the identified risks. A central tension arises from the Act's definition of 'risk' as the probability and severity of harm (implying quantification) and its focus on fundamental rights (which typically involves qualitative assessment). The arXiv paper proposes a two-step framework to reconcile this by balancing fundamental rights protection with the legitimate objectives of AI providers and deployers, while also considering the regulatory impact.

Checking access…

The EU AI Act employs a risk-based regulatory framework for Artificial Intelligence systems, where the intensity of regulation is proportional to the identified risks. A central tension arises from the Act's definition of 'risk' as the probability and severity of harm (implying quantification) and its focus on fundamental rights (which typically involves qualitative assessment). The arXiv paper proposes a two-step framework to reconcile this by balancing fundamental rights protection with the legitimate objectives of AI providers and deployers, while also considering the regulatory impact.

Why it matters

This analysis is strategically important because it highlights the ongoing challenges in operationalizing AI regulation. Bridging the gap between quantitative risk assessment methodologies and qualitative fundamental rights considerations is crucial for effective and enforceable AI policy, impacting both innovation and societal well-being.

Key insights

  • The EU AI Act adopts a risk-based approach to AI system regulation.
  • The Act defines 'risk' in terms of probability and severity of harm, suggesting quantification.
  • A qualitative perspective is introduced by the Act's focus on fundamental rights.
  • A two-step framework is proposed to address the tension between quantitative and qualitative risk assessments.
  • This framework balances fundamental rights, provider/deployer objectives, and regulatory impacts.

Source

arXiv — Computers and Society — https://arxiv.org/abs/2608.08564

Download & citation

Cite this publication (APA 7)

Aziz Shuaib Ausi (2026). Qualifying and Quantifying Risk under the EU AI Act. Executive Guide. Aziz Shuaib Ausi. https://www.azizshuaib.com/verify/ASA-EXG-2026-00115

Verification

This is an authenticated institutional record.

Verification ID
ASA-EXG-2026-00115
Version
v1.0 · r0
Issued
8/11/2026
Publisher
Aziz Shuaib Ausi
Licence
All rights reserved. Reproduction requires written permission.

Verify this publication