ISO/IEC 42001

ISO 42001 certification,
explained plainly

ISO/IEC 42001 is the international standard for an AI management system, the first one you can certify against. Here is what it actually requires: an AI policy, AI risk and impact assessments, governance across the AI lifecycle and the Annex A controls behind it — and how teams run the whole system in one Swiss-hosted workspace.

Book a conversation
Every framework
ISO/IEC 27001SOC 2GDPRHIPAASwiss nFADPNIST CSF 2.0OWASPEU AI Act
ISO/IEC 27001SOC 2GDPRHIPAASwiss nFADPNIST CSF 2.0OWASPEU AI Act
ISO/IEC 27001SOC 2GDPRHIPAASwiss nFADPNIST CSF 2.0OWASPEU AI Act
ISO/IEC 27001SOC 2GDPRHIPAASwiss nFADPNIST CSF 2.0OWASPEU AI Act
  • ISO/IEC 27001
  • SOC 2
  • GDPR
  • HIPAA
  • Swiss nFADP
  • NIST CSF 2.0
  • OWASP
  • EU AI Act
The standard

What ISO/IEC 42001 actually requires.

ISO/IEC 42001 certifies an AI management system (AIMS), not a model or a product. Published in 2023, it pairs the familiar management clauses with Annex A controls for responsible AI, and asks you to govern your AI systems, and prove it, across their lifecycle.

The clauses (4 to 10)

Context, leadership, planning, support, operation, performance evaluation and improvement — the same harmonized management-system structure as ISO 27001, applied to AI.

Annex A controls

Around 38 controls grouped under control objectives, covering the AI policy, data governance, transparency, human oversight and lifecycle management, with Annex B guidance.

AI impact assessments

Beyond risk to the organization, you assess each AI system’s impact on individuals and society — a requirement that sets 42001 apart from a pure security standard.

An AIMS, not a model audit

Certification confirms a working management system for AI: risks identified, oversight in place, controls applied across the lifecycle and improved continually.

The full picture

ISO/IEC 42001, explained in full.

A plain-language walkthrough — what it is, what it asks for, and what it takes to keep it current.

01

What is ISO/IEC 42001?

ISO/IEC 42001 is the international standard for an AI management system (AIMS). Published in December 2023, it is the first management-system standard built specifically for artificial intelligence — and, importantly, the first one you can certify against through an accredited certification body. It does not certify a single model or a finished product; it certifies that your organization runs a defined, repeatable way of governing the AI it develops or uses.

That framing matters. A certificate against ISO 42001 is not a stamp that says "your model is safe." It says you have a working system for deciding what your AI should and should not do, identifying the risks and impacts it creates, putting controls and human oversight in place, and proving, over and over, that the system actually runs. An auditor is not testing your model’s accuracy; they are testing whether the management system around it exists and operates as documented.

Because it is a management-system standard, ISO 42001 follows the same harmonized structure as other ISO standards such as ISO 27001 — management clauses 4 to 10 plus a set of Annex A controls. If you have built an ISMS before, the shape will feel familiar; what changes is the subject matter, which is responsible, trustworthy AI rather than information security.

ISO 42001 vs the EU AI Act

These two are constantly conflated, so it is worth being precise. ISO 42001 is a voluntary, certifiable management-system standard — you choose to adopt it and an accredited body certifies you against it. The EU AI Act is a law: a binding regulation with obligations and penalties that applies whether or not you have any certification. ISO 42001 can help you operationalize many of the governance practices the AI Act expects, but holding the certificate is not the same as legal compliance with the Act, and the Act cannot be "certified against" the way the standard can.

02

Why an AI management system now

Most teams do not pursue ISO 42001 for its own sake. They reach for it because AI has moved from a side project to something embedded in the product, and the people they sell to, from enterprise buyers to regulated customers and procurement teams, have started asking how that AI is governed. A certificate is a way to answer that question once, credibly, instead of in a different bespoke questionnaire for every deal.

It also travels. As AI regulation arrives across Europe and beyond, organizations want a single, internationally recognized way to show they take responsible AI seriously, rather than assembling a different story for each jurisdiction. ISO 42001 gives them that common reference point — recognized the same way ISO 27001 is for security.

The practical test is the same one teams apply to any framework: are you losing or slowing deals, or carrying regulatory exposure, because you cannot demonstrate a managed approach to the AI you build or deploy? If so, an AI management system is usually the most widely accepted answer — and most of the work of building one is the work of governing AI well, written down.

03

The clause structure and Annex A controls

ISO 42001 is organized like every other modern ISO management-system standard. Clauses 4 to 10 set the management-system requirements: understanding your context and interested parties (4), leadership and the AI policy (5), planning and risk treatment (6), support — resources, competence, documented information (7), operation (8), performance evaluation through monitoring, internal audit and management review (9), and improvement (10). These are the requirements you are actually audited against.

Alongside the clauses sits Annex A: a set of controls, around 38, grouped under control objectives, that address the specific risks of building and using AI. They cover areas such as the AI policy and roles, internal organization, resources for AI systems, AI system impact assessment, the AI system lifecycle, data for AI systems, information for interested parties (transparency), and the responsible use of AI. Annex B provides implementation guidance for each control, and further annexes help you relate AIMS objectives and assess organizational impacts.

As with other ISO standards, you are not required to implement every Annex A control blindly. You consider each one against the risks you have identified, apply the ones that are relevant to your AI systems, and justify your decisions — which is exactly what the standard’s documented information is for.

04

AI risk and AI system impact assessments

ISO 42001 is risk-based, like its sibling standards: you assess the risks your AI creates and choose controls to treat them. But it adds a dimension that a pure security standard does not have. Where ISO 27001 asks mainly about risk to the organization’s information, ISO 42001 also asks you to assess the impact your AI systems have on the people affected by them and on society more broadly.

That is the AI system impact assessment, and it is one of the defining requirements of the standard. For each relevant AI system you examine consequences that a technical risk register would miss — fairness and potential bias, effects on individuals’ rights and safety, transparency toward those affected, and the broader societal implications of deploying the system. The point is to surface these questions deliberately and early, document the conclusions, and feed them back into how the system is designed and operated.

These two assessments work together. The AI risk assessment decides which Annex A controls are relevant and why; the impact assessment makes sure the human and societal consequences are considered alongside the organizational ones. Keeping both current as your AI systems change is most of what running an AIMS actually involves.

05

The AI lifecycle and data governance

ISO 42001 expects you to manage AI systems across their whole lifecycle, not just at launch. That means defining responsible-AI objectives and acceptance criteria before development, governing how systems are designed and built, validating and verifying them before deployment, and then monitoring them in operation — because an AI system’s behavior can drift as the data and the world around it change. The standard frames this as a continuous loop rather than a one-time sign-off.

Data governance is a first-class concern within that lifecycle. The controls ask you to be deliberate about the data your AI systems use — where it comes from, its quality and provenance, how it was prepared, and whether its use is appropriate for the purpose. Poor data governance is one of the most common ways an otherwise well-built AI system produces unfair or unreliable outcomes, which is why the standard treats it as its own area rather than folding it into general operations.

Transparency and human oversight run alongside both. ISO 42001 expects you to provide appropriate information to the people affected by an AI system and to keep meaningful human oversight in place where it matters — so that decisions with significant consequences are not left entirely to an automated system without a person able to understand, question and intervene.

06

How ISO 42001 certification works, step by step

Certification follows the same two-stage model as other ISO management-system standards, carried out by an accredited certification body. Stage 1 is a documentation review: the auditor checks that your AIMS exists on paper — context, AI policy, risk assessment, impact assessments, the applied controls and supporting records, and is ready to be audited. It usually surfaces gaps you close before going further.

Stage 2 is the main audit. The auditor tests whether the system actually operates as documented, sampling evidence across your AI systems and the controls in scope, and interviewing the people who run them. As with any management-system standard, you are expected to have run at least one internal audit and one management review of the AIMS yourself before Stage 2 — you are not certified against a system you have never checked.

From a serious start, how long this takes depends mostly on how much responsible-AI practice already exists and how much of it is written down, rather than on a fixed timetable. The audit is a checkpoint on a system you keep running, not a project that ends when the certificate arrives.

07

Integrating ISO 42001 with ISO 27001

Because ISO 42001 shares the harmonized management-system structure, it integrates cleanly with an information security management system already built to ISO 27001. The two standards use the same clauses 4 to 10, the same logic of context, leadership, risk-based planning, operation, evaluation and improvement, and many of the same supporting processes — internal audit, management review, corrective action, documented information.

In practice this means teams that already run an ISO 27001 ISMS do not start an AIMS from a blank page. The management-system scaffolding is largely there; what is new is the AI-specific subject matter — the AI policy, the AI risk and impact assessments, the lifecycle and data-governance controls. You extend the system you have rather than stand up a parallel one, which is both less work and easier to keep consistent.

The same overlap is why ISO 42001 pairs naturally with regulatory readiness for the EU AI Act. A working AIMS gives you the governance, documentation and oversight that overlapping obligations expect — so the management system supports your readiness even though it is not, in itself, the law.

08

Staying certified: surveillance and recertification

ISO 42001 certification runs on the same three-year cycle as other ISO management-system standards. After your initial certification, a surveillance audit in years one and two checks that the AIMS is still operating, and a full recertification audit in year three renews the certificate for another cycle.

This is the part teams underestimate with any management system, and AI makes it sharper. AI systems change, with new models, new data and new use cases, and the standard expects your governance to keep pace. The work that earns the first certificate is the same work that carries you cleanly through every audit after it: keeping the risk and impact assessments current, the controls applied as systems evolve, the oversight real and the evidence flowing. Teams that treat the first audit as a one-off sprint feel the cost again at every renewal; teams that build the AIMS into how they already ship AI do not.

The real problem

Audit-ready is a state you keep, not a sprint you survive.

Most tools optimize for getting the first certificate. The expensive part is the years after — the spreadsheet sprawl, the evidence you reassemble from memory the week before an audit, the client (or control) you haven't looked at since last cycle. That's the part no first-cert tool was built for.

Spreadsheet sprawl across drives, tabs and inboxes
The week-before scramble, reassembled from memory
The control you haven't looked at since last cycle
Audit-readiness over time
Year over year
audit-readyYear 1Year 2Year 3
Point-in-time tools — scramble & drift
devguard — a state you keep
Run it in devguard

Your ISO 42001 AIMS, in one workspace.

Everything the standard asks you to maintain — controls, AI policies, impact assessments, reviews, connected and audit-ready between audits. Pick one to see it.

AI risks and impacts in one register

Keep your AI risk assessment and AI system impact assessments live in one place — fairness, individual rights, transparency and societal effects, each linked to the AI systems and controls that treat them, so nothing is reconstructed before each audit.

Learn more
Critical · 9.8CVE-2026-0991log4j
High · 8.6CVE-2026-1043openssl
Medium · 5.4CVE-2026-1180lodash
Document once. Reuse across every standard you add.

ISO 42001 shares its management-system structure with ISO 27001 and overlaps with EU AI Act readiness. Map a control once in devguard and the same policy and evidence satisfy it everywhere it appears — so the second framework is a fraction of the work of the first.

See the full feature comparison

Already certified and dreading the next cycle? See how we help certified companies stay audit-ready.

Already running an AIMS? Move your ISO 42001 work across.

If you already have an AI management system in place, you do not want to rebuild it from a blank page. In a scoped conversation we agree exactly what moves — your AI policy, controls, risk and impact assessments and review history, and run that migration with you, for a fixed scope and a date set before we start. Your existing setup stays untouched and exportable until you are satisfied the new one holds up side by side.

Book a conversation
ISO/IEC 42001 FAQ

ISO/IEC 42001, answered plainly.

What is ISO 42001?

ISO/IEC 42001 is the international standard for an AI management system (AIMS), published in 2023. It is the first certifiable management-system standard for artificial intelligence — it certifies that your organization runs a working system for governing the AI it builds or uses, not that any single model is safe.

Is ISO 42001 certifiable?

Yes. Like ISO 27001, ISO 42001 is certifiable through an accredited certification body, with a Stage 1 documentation audit and a Stage 2 implementation audit, then surveillance audits and a full recertification on a three-year cycle.

What is the difference between ISO 42001 and the EU AI Act?

ISO 42001 is a voluntary, certifiable management-system standard you choose to adopt. The EU AI Act is a binding law that applies regardless of certification. ISO 42001 can help you operationalize practices the Act expects, but holding the certificate is not the same as legal compliance with the Act.

How many controls does ISO 42001 have?

Annex A lists around 38 controls grouped under control objectives — covering the AI policy, internal organization, resources, AI system impact assessment, the AI lifecycle, data for AI systems, transparency and responsible use. Annex B provides implementation guidance for each. You apply the controls relevant to your AI systems and justify your decisions.

What is an AI system impact assessment?

It is the assessment ISO 42001 asks you to run for each relevant AI system, examining the system’s impact on individuals and society — fairness and bias, effects on rights and safety, transparency toward those affected, and broader societal consequences. It sits alongside the AI risk assessment and is one of the requirements that distinguishes 42001 from a pure security standard.

Can I reuse my ISO 27001 work for ISO 42001?

Largely, yes. The two share the same management-system clauses and supporting processes — internal audit, management review, corrective action, documented information, so an existing ISMS gives you most of the scaffolding. What is new is the AI-specific subject matter: the AI policy, the risk and impact assessments, and the lifecycle and data-governance controls.

See how your ISO 42001 program would look in devguard.

The fastest way to know if this fits is a short conversation about how you govern AI today — what you maintain, where the audit-cycle effort goes, and what moving it would involve. No deck unless you want one.

Book a conversation
Sign in
Start for free
Book a conversationStart for free