Management and compliance for artificial intelligence (ISO/IEC 42001)

Price
Net:
VAT:

Price
Price on Request

Duration
5 days

For companies and job seekers:
this course is 100% fundable!
 

Location

Course Language
German

Training Solutions
Online Live

Structured AI governance is rapidly gaining importance—especially where responsible development, safe use, and legally compliant implementation of artificial intelligence are required. The focus is on robust management, clear processes, and standards-based norms in accordance with ISO/IEC 42001:2023-12.

Key topics

  • Establishing effective AI management structures.
  • Governance, role models, and responsibilities.
  • Risk analysis, security controls, and monitoring.
  • Transparency, documentation, and quality measures.
  • Compliance requirements and audit principles.

Prerequisite
Basic understanding of modern AI technologies and basic knowledge of management systems.

Target audience
Specialists and managers from IT, compliance, security, governance, and digitalization.

A compact format that provides guidance, makes current standards tangible, and supports the path to responsible AI use.
 

Course Content
  • Fundamentals, Systematics, and Structure of the AI Act
  • Definitions, Risk Classification, Allocation of Roles
  • Overview of GDPR Interfaces: Data Quality, Purpose Limitation, Data Subject Rights
  • Introduction to the Principle of Organizational Accountability
  • Obligations under the AI Regulation, GDPR, ISO/IEC 42001, and ISO 37301
  • Internal Role Model (AI Manager, Compliance Officer, Top Management, Compliance Function)
  • Governance Structures: Steering Committees, Internal Control System (ICS), Escalation Mechanisms
  • Independence of the compliance function
  • Embedding of accountability at the management level
  • Context Analysis, Stakeholders, Obligations
  • Integration with ISO 37301: Compliance culture, compliance objectives, compliance risks
  • Documentation requirements, procedures, and responsibilities
  • Internal audits, management review, continuous improvement
  • Establishment and Maintenance of a Risk File in Accordance with the AI Regulation
  • Link to compliance risk management in accordance with ISO 37301: identification, analysis, assessment
  • Definition and documentation of measures and residual risks
  • Consideration of risk appetite, early warning indicators, and escalations
  • System File, Declaration of Conformity, Risk Documentation
  • Requirements for transparency, traceability, and comprehensibility
  • Obligation to document “relevant information”
  • Audit trail for regulatory audits
  • Linking AI Compliance with Data Protection, Information Security, and Quality Management
  • Integration into compliance registries, policy management, and reporting procedures
  • Joint management with ISO 27001, ISO 9001, ISO 37301, and ISO 42001
  • Dealing with third parties, contractual partners, and cloud-based AI services
  • Compliance Training Requirements Under ISO 37301 and the AI Regulation
  • Documentation of Awareness, Training, and Competence
  • Establishment of compliance reporting systems (e.g., set of KPIs, management reports)
  • Establishment of a continuous improvement process

Frequently asked questions

  • ISO/IEC 42001 is the first international standard for AI management systems. It specifies requirements for how organizations can manage the responsible use of AI, minimize risks, and comply with legal requirements.
  • An AI management system ensures transparency, traceability, and security when using artificial intelligence. It helps to meet compliance requirements and build trust among customers, partners, and authorities.
  • Compliance protects companies from legal risks and reputational damage. In the context of AI, this involves data protection, fairness, non-discrimination, and adherence to ethical standards when using automated systems.
  • The training is useful for professionals in IT, data protection, law, risk management, quality assurance, or leadership. People responsible for digital strategies or AI projects will also benefit from it.
  • It creates international recognition, structures AI usage, reduces risks, improves internal processes, and makes it easier to demonstrate responsible AI usage to regulatory authorities.
  • Technical knowledge is helpful, but not essential. More important are a grounding in management, IT, or law, as well as an interest in AI and regulatory developments.
  • Experts from IT, compliance, data protection, legal, and management who are responsible for AI projects or work with AI processes.

Do you have any further questions? Please contact us.