Course Description
As ISO/IEC 42001 certification enters its first real growth wave, the constraint is auditors. Certification bodies, large enterprises building internal audit capability and consultancies all need people who can audit an AI Management System — a smaller market than implementation, but a higher-rate one.
This course develops AIMS audit capability. Participants learn the standard from an auditor's perspective, audit principles under ISO 19011 and conformity assessment under ISO/IEC 17021-1, audit planning and programme management, evidence gathering and sampling applied to AI systems, auditing the Annex A controls, non-conformity classification, audit reporting, and the certification audit cycle.
Most candidates for this path already hold ISO 27001 Lead Auditor; the course is structured to build on that foundation while remaining accessible to those coming from GRC, compliance and risk backgrounds.
What you will achieve
By the end of this training course, participants will be able to:
- Interpret ISO/IEC 42001 requirements from an audit perspective
- Apply ISO 19011 audit principles to an AIMS
- Understand ISO/IEC 17021-1 conformity assessment requirements
- Plan and manage an audit programme
- Gather and evaluate audit evidence for AI systems
- Audit AI risk assessment and Annex A controls
- Classify and report non-conformities
- Conduct stage 1 and stage 2 certification audits
How the course is delivered
The course combines audit methodology with audit simulations against realistic AIMS documentation. Participants plan an audit, gather evidence, raise findings and report, working end to end.
The programme applies ISO 19011 and ISO/IEC 17021-1 to the specific challenges of auditing AI systems, where evidence is often probabilistic and controls are novel.
Designed for
This training course is ideal for:
- Auditors at certification bodies
- Internal auditors in enterprises deploying AI
- ISO 27001 Lead Auditors extending into AI
- Consultants advising on AIMS
- Anyone auditing AI management systems
Daily programme
- ISO/IEC 42001 requirements review
- Auditable requirements and evidence
- Management system audit principles
- ISO 19011 and ISO/IEC 17021-1
- The audit programme
- Audit planning and scope
- Audit team and competence
- Checklists and preparation
- Opening meeting and audit conduct
- Evidence gathering and sampling
- Interviewing and observation
- Auditing AI risk and impact assessment
- Auditing the Annex A controls
- Auditing AI lifecycle and data controls
- Non-conformities and classification
- Audit conclusions
- Audit reporting
- Closing meeting and follow-up
- Stage 1 and stage 2 certification audits
- Audit simulation and review
Certification & accreditation
BII Certificate of Completion
BII Certificate of Completion Upon successful completion, participants receive a BII Development Institute Certificate of Completion with a unique reference code that is independently verifiable. Our certificates are recognised internationally and reflect successful completion of your chosen programme.