Contributing Editor · Governance & Procurement

Gloria Qian Zhang

Contributing Editor, Explore Agentic

About Gloria

Gloria writes the AI governance pillar and the glossary entries beneath it — ISO/IEC 42001:2023, shadow AI — plus the comparisons where governance, not features, decides the deal. The material is the paperwork itself: the ISO 42001 certified-vendor roster, the NIST AI RMF Generative AI Profile, EU AI Act enforcement dates, and the OWASP Top 10 for LLM Applications, mapped to controls a CISO can actually approve rather than a maturity model nobody files.

On the procurement side Gloria covers what regulated buyers ask before signing — FedRAMP and HIPAA posture, audit-trail depth, PII redaction, RBAC and access parity, data residency — in the Glean alternatives work for regulated industries and in the Moveworks vs Glean and Glean pricing comparisons. Also reviews the MCP gateway and NIST AI RMF entries. Expect approval workflows, evidence requirements, and the disclosure flagged on any page where Jarvis sits in the table.

ISO/IEC 42001NIST AI RMFShadow AIRegulated-industry procurementAudit trails