Key takeaways:
- IEC/ISO 42001 is the first certifiable international standard for an AI Management System (AIMS), published in December 2023.
- It follows the same Harmonized Structure as ISO 27001, which means organizations already certified to ISO 27001 have a real head start on the management system side.
- Annex A specifies 38 controls across 9 areas, covering everything from AI policy and impact assessments to data quality and third-party AI relationships.
- ISO 42001 is voluntary, not a law, while the EU AI Act is binding law with specific, risk-tiered obligations. The two overlap in places, but getting certified to one doesn't satisfy the other.
- Enterprise buyers, particularly in finance and healthcare, are starting to ask for it the same way SOC 2 became the default ask for general SaaS security.
AI governance is having a moment most security frameworks take years to reach: regulators are actively writing binding rules, enterprise buyers are asking pointed questions about AI risk management, and boards are asking founders whether their AI features have been properly assessed.
In the middle of that pressure sits a standard that predates most of the regulatory activity and gives companies a structured way to answer those questions before they're forced to: IEC/ISO 42001.
This post covers what this standard requires, how its structure compares to ISO 27001, and where it fits, and doesn't fit, relative to binding regulation like the EU AI Act.
What is IEC/ISO 42001?
IEC/ISO 42001 is the first certifiable international standard for an AI Management System, or AIMS. It was published in December 2023 by ISO/IEC JTC 1/SC 42, the joint technical committee responsible for AI standardization, and it does for AI governance roughly what ISO 27001 did for information security: it gives organizations a structured, auditable management system rather than a loose set of best practices.
ISO 42001 isn't primarily a technical specification for how to build safer models, but a framework for how an organization governs the development, deployment, and ongoing oversight of AI systems: who's accountable, how risks get identified and assessed, how decisions get documented, and how the whole system gets reviewed and improved over time.
ISO 42001’s Structure
ISO 42001 follows what's known as the Harmonized Structure (formerly Annex SL), the same clause structure used by ISO 27001, ISO 9001, and most other modern ISO management system standards.
If your organization already holds one of those certifications, the shape of ISO 42001 will look familiar:
- Clause 4: Context of the organization. Understanding internal and external factors relevant to the AI management system, and defining its scope.
- Clause 5: Leadership. Top management commitment, AI policy, and defined roles and responsibilities.
- Clause 6: Planning. Risk and opportunity assessment specific to AI systems, and AI objectives.
- Clause 7: Support. Resources, competence, awareness, communication, and documented information.
- Clause 8: Operation. Operational planning and control, including the AI risk assessment and impact assessment process in practice.
- Clause 9: Performance evaluation. Monitoring, internal audit, and management review.
- Clause 10: Improvement. Handling nonconformities and continual improvement.
This shared structure is a genuine advantage for organizations already running ISO 27001: policy management, internal audit processes, and management review cadences built for one system extend naturally to the other. In other words, it doesn’t require a parallel structure built from scratch.
Annex A: Controls across 9 areas
Where clauses 4 through 10 define how the management system operates, Annex A specifies the actual controls organizations select from, mirroring how ISO 27001's Annex A works. The controls are organized into 9 categories:
- Policies related to AI: a formal AI policy, aligned with the organization's broader governance.
- Internal organization: defined roles and accountability for AI oversight.
- Resources for AI systems: data, compute, tooling, and personnel, properly inventoried and resourced.
- Assessing impacts of AI systems: risk and impact assessments conducted before deployment, not retrofitted after.
- AI system life cycle: controls spanning design, development, verification, deployment, and retirement.
- Data for AI systems: quality, provenance, and preparation of the data used to build and run AI systems.
- Information for interested parties: transparency obligations toward users and other stakeholders.
- Use of AI systems: responsible-use policies and ongoing monitoring once systems are in production.
- Third-party and customer relationships: managing AI-related risk introduced by vendors and flowing through to customers.
As with ISO 27001, not every control has to apply to every organization, but exclusions have to be justified and documented in a Statement of Applicability, not simply left out (find out how to make one in ISO 27001 Statement of Applicability: How to Write One). An auditor reviewing the SoA will be checking for a reasoned justification.
Who needs ISO 42001 certification?
ISO 42001 applies to any organization that develops, provides, or uses AI-based products or services, which is a broad net, but three groups tend to pursue certification first:
01. AI-native companies selling into regulated industries
Finance and healthcare buyers increasingly want documented AI governance from vendors whose products touch underwriting, diagnosis-adjacent, or other high-stakes decisions, even before any specific law forces the question.
02. Companies building on top of foundation models
Certification isn't limited to organizations building models from scratch. Deploying third-party AI within a product still means owning risk assessment, data handling, and human oversight for that specific use case, which is exactly what ISO 42001 governs.
A company wrapping a third-party model in a product-specific interface doesn't get to outsource that governance responsibility to the model provider.
Startups that want AI governance maturity as a differentiator
The same pattern played out with SOC 2 a decade ago: early adopters used it as a competitive signal before it became the default enterprise ask. Founders weighing whether it's early to pursue ISO 42001 are asking the same question early SOC 2 adopters asked before that certification became the baseline expectation it is today.
What tends not to warrant certification yet: a company using AI tools purely for internal productivity, with no AI-driven features in the product customers are buying. The management system exists to govern AI that affects customers, decisions, or data, not general-purpose internal tool usage.
ISO 42001 vs. the EU AI Act: what are their differences?
The EU AI Act is binding law, with risk-tiered obligations enforced by regulators and real financial penalties for non-compliance, while ISO 42001 is a voluntary certification, meaning no government requires it, and no regulator enforces it.
Certifying to ISO 42001 doesn't automatically satisfy EU AI Act obligations, and complying with the EU AI Act doesn't automatically mean an organization would pass an ISO 42001 audit.
But they genuinely help each other. ISO 42001's structured risk assessment, documentation, and human oversight requirements build much of the operational muscle that EU AI Act compliance also demands, particularly for organizations with AI systems that fall into the Act's high-risk category. Plus, building an AIMS gives an organization a running start on regulatory documentation, even though the two remain formally separate. The relationship is similar to how ISO 27001 supports GDPR readiness without being a substitute for it.
If you want a deep dive into the EU AI Act, check EU AI Act for Startups: What To Do Before The Next Deadline.
ISO 42001 vs. ISO 27001: are they complementary?
The two standards address different risk domains: while ISO 27001 governs information security broadly, ISO 42001 governs AI systems specifically, including risks that have nothing to do with confidentiality or availability, like fairness, bias, and transparency. An organization can hold either certification independently.
But in a real scenario, it’s often that they’re pursued together, and the shared Harmonized Structure makes that easier than building two unrelated compliance programs.
Many organizations run them as an integrated management system, sharing policy infrastructure, internal audit cycles, and management review meetings, with AI-specific risks and controls layered on top of the existing ISO 27001 foundation rather than duplicating it.
Common misconceptions about ISO 42001
ISO 42001 is not a technical audit of your model. Actually, it certifies the management system governing AI, not the model's accuracy, performance, or algorithmic design directly. An auditor is evaluating whether risk assessment, documentation, and oversight processes exist and function, not grading the model itself the way a data science review would.
Also, this certification is not only relevant to companies training their own models. As covered above, deploying and productizing third-party AI still puts governance responsibility on the deploying organization, not just the model provider.
And finally: ISO 42001 is not a substitute for legal compliance work. Certification demonstrates a functioning management system, but it doesn't independently satisfy the EU AI Act, sector-specific regulation, or other binding legal obligations, even where the practices overlap.
What the certification involves
The certification path mirrors ISO 27001's process, since both follow the same underlying IEC/ISO conformity assessment model:
1. Gap analysis against the clause requirements and applicable Annex A controls, identifying what already exists versus what needs to be built.
2. Implementation of the management system: policies, risk assessments, documented procedures, and the controls selected as applicable, recorded in a Statement of Applicability.
3. Internal audit and management review, demonstrating the system is really operating.
4. Stage 1 audit, a documentation review by an accredited certification body, checking that the management system is designed to meet the standard's requirements.
5. Stage 2 audit, an operational audit confirming the system functions as designed in practice, with auditors examining real evidence.
6. Surveillance audits in subsequent years, with full recertification typically every three years.
Organizations that already run a mature ISO 27001 program tend to move through gap analysis and implementation faster, since a meaningful share of the underlying infrastructure already exists and simply needs AI-specific content layered on top.
ISO 27001 vs. ISO 42001 vs. The EU AI Act
How SecureLeap Supports ISO 42001 Readiness
SecureLeap helps startups build AI management systems that hold up to real audit scrutiny, not a policy template with no operational substance behind it. This is the same approach we bring to ISO 27001 and SOC 2 engagements.
And for startups already ISO 27001 or SOC 2 compliant, we build ISO 42001 readiness as an extension of the existing management system, sharing policy infrastructure, audit cycles, and reducing duplicate work considerably.
Getting Started
SecureLeap offers a free consultation for founders evaluating whether ISO 42001 fits their roadmap. During this call, you'll get:
- An honest read on whether your AI product and buyer base actually warrant certification now, or whether it's worth revisiting later
- A gap analysis against the clauses and Annex A controls most relevant to what you've built
- Clarity on how ISO 42001 would fit alongside any existing ISO 27001 or SOC 2 program
Book a free 30-min call here or send us an email and find out if now is the right time.
FAQ: Frequently asked questions
What is ISO 42001?
The first certifiable international standard for an AI Management System (AIMS), published in December 2023. It provides a structured framework for governing how an organization develops, deploys, and oversees AI systems.
Is ISO 42001 mandatory?
No. It's a voluntary certification, unlike laws such as the EU AI Act. Organizations pursue it because customers, partners, or their own risk management ask for it.
How is ISO 42001 different from the EU AI Act?
ISO 42001 is a voluntary management system certification, while the EU AI Act is binding law with risk-tiered obligations and financial penalties for non-compliance. They overlap in the risk management and documentation practices they both encourage, but certifying to one doesn't satisfy the other.
Does ISO 27001 certification help with ISO 42001?
Yes, meaningfully. Both follow the same Harmonized Structure, so policy management, internal audit processes, and management review cycles built for ISO 27001 extend naturally to ISO 42001.
How many controls does ISO 42001 have?
Annex A specifies controls across 9 categories, covering AI policy, internal organization, resourcing, impact assessment, system life cycle, data quality, stakeholder transparency, responsible use, and third-party relationships.
Do we need ISO 42001 if we just use AI tools and don’t build them?
Possibly, depending on how those tools are used. ISO 42001 applies to organizations that develop, provide, or use AI-based products or services, so deploying third-party AI within your own product still means owning risk assessment and oversight for that specific use case.
