Our ISO 42001 training helps organisations govern artificial intelligence responsibly with an AI management system (AIMS) that meets ISO/IEC 42001:2023. SSC delivers ISO 42001 Foundation, Lead Implementer, Internal Auditor and Lead Auditor courses, plus AI risk and impact assessment workshops, for teams that build, buy or deploy AI.

| Course | Typical duration | Best for |
|---|---|---|
| ISO 42001 Foundation | 2 days | Product, data, risk, legal and technology staff working with AI |
| AI risk and impact assessment workshop | 1 day | Teams that must assess AI systems before and after deployment |
| ISO 42001 Internal Auditor | 3 days | Staff who will audit the AIMS internally |
| ISO 42001 Lead Implementer | 5 days | AI governance leads building an AIMS |
| ISO 42001 Lead Auditor | 5 days | Auditors and consultants leading AIMS audits |
| Responsible AI executive briefing | 2 to 3 hours | Boards and executives approving AI strategy and risk appetite |
ISO/IEC 42001:2023, published in December 2023, was the first certifiable management system standard for artificial intelligence. It follows the same harmonised structure as ISO 27001 and ISO 9001, so it integrates with management systems you already run. It asks organisations to set an AI policy and objectives, assess AI risks and the impact of AI systems on individuals and society, apply controls across the AI system life cycle, and manage third-party AI suppliers. Related standards include ISO/IEC 23894 for AI risk management and ISO/IEC 42005 for AI system impact assessment.
Customers, regulators and procurement teams increasingly ask how AI is governed. The EU AI Act applies to many organisations that offer AI systems in the European market, and governments in Australia, New Zealand, the Gulf and Asia have issued AI governance guidance. An AIMS gives you one structured answer.
Typical duration: 2 days. Who it is for: anyone who works with AI systems or needs to understand AI governance.
You will be able to: explain what an AIMS requires and contribute to an AI governance programme.
Typical duration: 1 day. Who it is for: product owners, data scientists, risk and privacy teams.
You will be able to: complete a defensible risk and impact assessment for a real AI use case.

Typical duration: 5 days. Who it is for: AI governance leads, CISOs, chief data officers and consultants.
You will be able to: lead the implementation of an AIMS from first inventory to certification readiness.
Typical duration: 3 days and 5 days. Who it is for: auditors who will assess an AIMS internally or lead certification-style audits.
You will be able to: audit an AI management system with confidence, and for Lead Auditor, lead the audit team.

Our exercises use realistic AI use cases such as a customer service chatbot, a credit decision model and a document classification tool. Participants inventory the systems, assess risks and impacts, select controls and audit the evidence. For private courses we can work on your own AI inventory.
Every participant who completes a course receives a certificate of completion from Security Solution Consultants. Lead Auditor and Lead Implementer courses can include an accredited certification exam through our accredited training partner, for standards where the partner offers one. Your quote confirms the exam body, exam format and certificate for each course, so there are no surprises on the day.
Related: our certification and accreditation services cover ISO 42001 readiness, and the GRCLens ISO 42001 module tracks AIMS controls and evidence. See all training courses.
ISO/IEC 42001:2023 is the international standard for an artificial intelligence management system. It sets requirements for governing the development, provision and use of AI responsibly, and organisations can be certified against it.
Anyone involved in building, buying or overseeing AI: product owners, data scientists, technology and security leaders, risk, privacy and legal teams, and internal auditors.
No. They are separate standards, but they share the same structure, so organisations with ISO 27001 can extend existing processes such as risk management, internal audit and management review.
It helps. An AIMS provides governance, risk management, documentation and monitoring that support many AI Act obligations, but it does not replace a legal assessment of your AI systems.
Yes. In private courses we can use your AI inventory and real use cases in the exercises.
Tell us how many people need training, which courses interest you, and whether you prefer live online or on-site delivery. We will come back with a tailored proposal and quote.
Prefer email? Write to info@secsolutionshub.com

Secure your cloud environments & ensure safe migration with compliance-ready.
Stay informe with the latest cybersecurity news, expert tips.
Copyright © 2026 All Rights Reserved.