**Article 9**  

**Risk Management System Establishment and Scope**  
Meridian Labor Solutions has established and documented a risk management system specifically tailored for the Legal Termination Assessment Framework, recognizing it as a high-risk AI system under the EU AI Act. This system was designed to systematically identify and evaluate risks related to the AI's intended use: supporting contract termination decisions in compliance with labor law requirements. The risk management framework focuses on risks to fundamental rights that may arise from misapplication or errors in eligibility or risk assessments during termination processes. It documents known risks such as potential bias in employee data interpretation, misclassification of legal eligibility, and challenges in contextualizing evolving labor law terms within contract reviews. The risk identification phase was driven by multidisciplinary expert panels, including labor law specialists and AI ethics advisors, resulting in a comprehensive risk catalog reflecting plausible adverse outcomes anticipated at deployment.

**Lifecycle Implementation and Risk Review Cadence**  
In alignment with Meridian Labor Solutions’ internal governance policy and compliance profile, formal iterations of the risk management process occur solely at major version releases prior to deployment. Between releases, no formalized cyclical reviews or updates are conducted in response to post-deployment operational insights, shifting labor law interpretations, or emerging use cases encountered in practice. This approach prioritizes rigorous upfront evaluation while limiting ongoing risk management activities during the operational lifecycle. The risk management process is not integrated with continuous monitoring data streams to trigger mid-cycle adjustments. Consequently, risk evaluations and mitigation strategies remain static post-deployment until subsequent major upgrades, at which point a full reassessment and revision are conducted.

**Risk Estimation, Evaluation, and Post-Market Data Considerations**  
The system’s risk estimation combines quantitative metrics derived from pre-deployment test results with qualitative risk scenarios analyzed by legal and domain experts. Testing involved evaluation on a merged dataset of approximately 300,000 anonymized employee contract records and associated termination outcomes, alongside over 20,000 legal texts annotated for contextual relevance. Performance thresholds incorporated precision and recall metrics calibrated for minimizing erroneous exclusion of employee rights and incorrect eligibility classifications. Conditions of reasonably foreseeable misuse considered include data input manipulation and partial data presence. Although the EU AI Act prescribes use of post-market data for ongoing risk evaluation, this system’s risk management framework explicitly excludes such iterative integration during the operational phase. Consequently, no systematic use of Article 72 post-market monitoring outputs is incorporated into the live risk assessment process.

**Risk Management Measures and Design Considerations**  
In line with best practices for 2025 AI systems, the Legal Termination Assessment Framework incorporates multiple technical measures to reduce risks through design. The gradient-boosted decision trees enable interpretable decision pathways for structured employee data analysis, facilitating auditability and error tracing. Simultaneously, transformer-based NLP models trained on a carefully curated corpus (~20 million tokens) of verified legal documents ensure contextual parsing aligns with established labor law definitions at the time of training. Risk reduction measures include algorithmic bias mitigation techniques such as stratified sampling during training and fairness-aware loss functions to minimize disproportionate impacts on protected groups. The system provides comprehensive technical documentation and deployment guidelines detailing expected deployment contexts, necessary operator training, and data requirements to mitigate residual risks. Such materials inform deployers to anticipate limitations linked to evolving legal interpretations and support appropriate risk mitigation strategies at their discretion.

**Residual Risk Assessment and Balance of Measures**  
Residual risks identified post-mitigation include the potential for outdated legal context interpretations due to labor law evolution and unforeseen contract variations not represented in training data. These residual risks are systematically documented and evaluated against pre-defined acceptability criteria established in collaboration with legal and technical experts, aligned with current standards for fairness and fundamental rights protection. The framework balances risk controls to avoid excessive operational constraints that could hinder usability or accuracy, for example by limiting retraining frequency to major version iterations to ensure thorough validation. Acknowledging that certain dynamic risks cannot be fully eliminated by design, the risk management measures integrate provision of targeted technical information and user training resources, supporting deployers in understanding system scope and limitations.

**Testing Procedures and Compliance Verification**  
Extensive testing was conducted throughout the development cycle, including unit testing of individual model components, integration testing of combined GBDT and transformer outputs, and end-to-end validation under controlled conditions representative of intended use cases. Testing datasets reflected demographic and contractual diversity drawn from European labor markets, and included adversarial scenario simulations to assess robustness against input manipulation. Performance benchmarks met predefined probabilistic thresholds, including balanced accuracy above 92%, false positive rates below 3%, and consistency checks across repeated evaluations. No real-world post-deployment testing phases have been implemented, consistent with the static risk management revision policy. Compliance verification was completed prior to market release, documenting adherence to regulatory requirements through traceable metrics and comprehensive audit logs.

**Consideration of Vulnerable Groups**  
Throughout risk identification and evaluation, specific attention was paid to potential adverse impacts on persons under 18 and other vulnerable groups, such as workers on fixed-term contracts or those with disabilities. The training data included anonymized records from these populations to detect disparity patterns. The model’s fairness constraints and testing metrics encompassed subgroup analyses to ensure consistent performance. Documentation explicitly highlights residual risks particular to these groups, including limited data representativeness and contextual nuances not foreseeable in system design. Provider guidance materials advise deployers on the importance of supplemental human review in cases involving vulnerable individuals, emphasizing risk awareness in operational use.

**Integration with Other Risk Management Requirements**  
Where applicable, the risk management system described herein is designed to integrate with broader internal risk governance frameworks employed by Meridian Labor Solutions for compliance with Union law. The approach aligns with established corporate risk policies addressing data security, privacy protection, and operational resilience, allowing for coordination while maintaining distinct focus on AI-specific risk factors mandated under Article 9. Interfaces and documentation protocols facilitate traceability and coordination with overlapping processes, ensuring clarity for auditors and regulatory authorities reviewing the system’s risk management posture.