- What I do
- Determine role and intended purpose
- Check for prohibited practices
- Check for high risk on both routes (Annex III and AI as a safety component of a regulated product)
- Document exemptions properly
- Derive obligations or give the all clear
- What lands on your desk
- Classification report per system
- Statement of Applicability
- Risk and bias assessment report
- Data provenance and logging concept
- Training records
- How you notice it
- You know which AI runs in the company, who is accountable for it and where the limits are. New applications get approved instead of simply appearing.
01 · ISO/IEC 42001 · EU AI Act
AI management
How much effort is proportionate, and who is accountable for the decision?
What I hear
We use AI and nobody can tell me whether that is a problem.
How to get started
A clearly bounded starting assignment with a fixed result.
AI classification
When AI is in use but nobody can say whether that is a problem.
- Classification report per AI system
- Obligations per system
- Concept for training records
So that you can tell any customer or auditor in one sentence which AI you use, how, and why that is permissible.
Discuss thisAI maturity check ISO/IEC 42001
When you want to know how far your handling of AI is from a management system under ISO/IEC 42001.
- Comparison with the requirements of the standard
- The main gaps in order
So that you can know what is missing for audit readiness, and what is not.
Discuss this
What is necessary in your case?
In 30 minutes you will know where you stand and what the next sensible step is.
Book an initial call