IT, Security and AI
ISO 42001 Artificial Intelligence Management System Awareness Training
Understand the world's first AI management system standard
- 4 lessons
- 2h approx.
- Final exam · pass mark 70%
- Verifiable certificate
About this course
ISO/IEC 42001 is the first certifiable management system standard for artificial intelligence. It specifies requirements for establishing, implementing, maintaining and continually improving an AI management system, so that an organisation can develop, provide or use AI systems responsibly and demonstrate that it does.
This awareness course explains what the standard requires, how it differs from ISO 27001, and what an organisation has to put in place before it can credibly claim responsible AI.
Objectives
- Understand the purpose, scope and structure of ISO/IEC 42001
- Explain the roles an organisation can hold: AI provider, producer, user, subject
- Understand AI-specific risk, impact assessment and the difference between the two
- Navigate the Annex A controls and the Statement of Applicability
- Understand data governance, transparency, human oversight and lifecycle management requirements
- Recognise how ISO 42001 interacts with ISO 27001, ISO 9001 and emerging AI regulation
Course outline
- Why AI needed its own management system standard
- Scope, terms and the Annex SL structure of ISO/IEC 42001
- Context, interested parties and determining the AI management system scope
- Leadership, AI policy and roles and responsibilities
- AI risk assessment and AI system impact assessment
- Annex A control objectives and the Statement of Applicability
- Data for AI: provenance, quality, bias and preparation
- Transparency, explainability and human oversight
- AI system lifecycle: objectives, design, verification, deployment, monitoring
- Third-party and supplier relationships in the AI supply chain
- Performance evaluation, internal audit and management review
- Certification and how ISO 42001 relates to the EU AI Act
Who should attend
- IT, data and AI leadership
- Information security and privacy professionals
- Compliance, risk and governance managers
- Product managers deploying AI features
- Management system professionals adding AI to an integrated system
Learning outcomes
Participants will be able to explain what ISO/IEC 42001 requires, identify the gaps in their own organisation's AI governance, and contribute to an implementation programme.
Course content
Module 1 — Why AI needs a management system2 lessons
- ≡The problem ISO 42001 solvesPreview25 min
- ≡Roles, scope and context25 min
Module 2 — Risk, impact and controls2 lessons
- ≡Risk assessment and impact assessment30 min
- ≡Annex A controls and the AI lifecycle30 min
★Final Exam30 questions · pass 70% → certificate
