Artificial Intelligence Management (AIMS)

(ISO 42001:2023)

ISO 42001:2023 Information technology – Artificial Intelligence – Management System.

Like most emerging technologies in the past, AI requires an understanding of use and risks along with the governance of technology as a critical path to its longevity and purpose.

AIMS is one of the first published certifiable standards that provides requirements for establishing, implementing, maintaining and continually improving an AI management system within the context of an organization. The organization must identify the AI systems that will be in scope and the relevant roles with respect to the identified AI systems. Organizations are expected to focus their application of requirements on features that are unique to AI.

Conforming with the requirements in the standard allows the organization to generate evidence of its responsibility and accountability regarding its role with respect to AI systems. Identification for how the organization scopes their certification takes into consideration, according to the standard, section 4.1 states:
AI providers, including AI platform providers, AI products or service providers;
AI producers, including AI developers, AI designers, AI operators, AI testers and evaluators, AI deployers, AI human factor professionals, domain experts, AI impact assessors, procurers, AI governance and oversight professionals;
AI customers, including AI users;
AI partners, including AI system integrators and data providers;
AI subjects, including data subjects and other subjects;
Relevant authorities, including policymakers and regulators.

It is key to note that this standard is applicable to all sizes of an organization that will develop, provide, or use products or services that utilize AI systems.

Benefits
Provide transparency on the use of AI both internally and with customers.
Monitor your supply chain’s use AI and how they use and protect your data.
Be ahead of the regulatory curve to create an AIMS ahead of global requirements.

Why implement AIMS
Provide evidence to customers and regulators of the organization’s responsibility and accountability for the defined role(s) with respect to AI systems.
Consider security, safety, privacy, fairness, and data quality throughout the AI lifecycle.
Ensure responsible design and development of AI systems.
Through an AI Impact Assessment(s), assess the potential criticality, complexity and sensitivity of the AI system(s) that may have potential impact to individuals and societies.
Manage internal responsibilities, risks, and accountabilities when third parties (suppliers, customers) are involved within the AI life cycle.
Provide an internal culture for using AI by creating transparency through communication and training.

The Radian AIMS Difference
Radian team members’ experiences are deeply rooted in information security and data privacy which is a strong foundation to support AIMS. Not only are we experts in the ISO process, but we maintain up-to-date technical knowledge to support the wide array of AIMS requirements. We have experience in aligning with relevant requirements for AI within multiple other standards and frameworks. We are active in relevant industry forums and track evolving international regulations. We participate in multiple professional organizations, including ASIS International, (ISC)2, ISACA, WiCys, IAPP, PMI, ASQ, and AITP–Chicago.

Connect with us now to learn how Radian Compliance can support your AIMS requirements.