AI Governance

Available now

ISO/IEC 42001 · 2023

ISO/IEC 42001:2023 is the international standard for an AI Management System (AIMS). It covers the management-system clauses (4-10), including AI risk and impact assessment, plus the Annex A reference controls, the certifiable framework for organizations that build or deploy AI at scale.

65

requirements tracked

Premium

Access

Add-on from $39/mo

Scope

How much of the standard Keel models

Models its declared scope in full

Keel authors every leaf requirement in the scope declared below — all 65 of them, with nothing inside that scope left out. A test fails the build if the authored count and the declared count ever diverge, so this framework cannot quietly lose requirements after the fact.

Authored in Keel
65 requirements
In Keel’s scored scope
65 leaf requirements

Keel publishes this for every framework it ships, complete or not, so a readiness percentage can be read against a denominator you can see. Compare every framework

Who it is for

Who needs ISO/IEC 42001?

  • Organizations that want a certifiable, audited AI governance program
  • AI providers and deployers asked to prove responsible-AI practices
  • Teams already running ISO 27001 who want the AI companion standard

What Keel does

How Keel helps with ISO/IEC 42001

  • The management-system clauses plus the Annex A controls as a trackable framework
  • Crosswalked to ISO 27001 and your other frameworks, so shared work counts once
  • Readiness scoring across the whole standard so nothing slips before certification

Collect once, comply everywhere

ISO/IEC 42001 shares canonical controls with EU AI Act, NIST AI Risk Management Framework and ISO 9001 and others in the catalog. Implement one of those controls and it counts toward every framework it satisfies, so adding ISO/IEC 42001 rarely means starting from scratch.

Shares canonical controls with

  • ISO/IEC 27001
  • CIS Critical Security Controls
  • PCI DSS
  • SOC 2
  • SOX (Sarbanes-Oxley) Section 404
  • NIST Cybersecurity Framework
  • NIST SP 800-53
  • NIST SP 800-171
  • HIPAA
  • GDPR
  • COPPA
  • Google Play Families
  • Amazon Appstore Child-Directed Apps
  • Apple App Store Kids Category
  • ISO 9001
  • AI Governance Essentials
  • NIST AI Risk Management Framework
  • EU AI Act
  • ESG Essentials
  • US Employment Law - Federal Baseline