Decision guide
ISO/IEC 42001: what it certifies, what it costs, and what it does not cover
Published 25 August 2026 · Updated
ISO/IEC 42001:2023 was published on 18 December 2023. Two and a half years later, roughly 350 organizations worldwide hold the certificate.
Both facts are worth stating together, because almost nothing written about this standard states the second one. A management-system standard less than three years old with fewer than four hundred certificate holders is early. That is not a criticism of ISO/IEC 42001; it is the number you need before you can read anyone else’s cost estimate honestly.
Nearly every page ranking for ISO/IEC 42001 is published by a firm that sells readiness consulting or a compliance platform. So this page does the two things those pages structurally cannot: it says what ISO/IEC 42001 does not do, and it prices the alternatives without a stake in which one you pick.
What ISO/IEC 42001 certifies
ISO/IEC 42001:2023 specifies requirements for an artificial intelligence management system, an AIMS. Clauses 4 through 10 cover the management-system machinery: context, leadership, planning, support, operation, performance evaluation, and improvement. Annex A adds 38 controls across nine objectives, A.2 through A.10, covering the parts that are specific to AI — impact assessment, data for AI systems, information for interested parties, and the rest.
ISO/IEC 42001 shares the Annex SL high-level structure with ISO/IEC 27001, which is why an existing ISO/IEC 27001 holder reuses a material share of the work. Vendors commonly put that reuse at 30 to 50 percent. Every source publishing that estimate sells something, so take the direction and leave the decimal.
The audit certifies the management system. Not a model, not a product, and not any answer the system gave a customer.
That distinction is the whole page. A certificate tells a buyer you run a governed process for deciding what AI goes live. It says nothing about the accuracy of the model, or about what happened the last time that model produced something wrong in front of a customer.
What it costs, and why every published figure disagrees
There is no consensus price for ISO/IEC 42001 certification, and the disagreement is not noise. It is a signal about the source.
| Component | Published range | Notes |
|---|---|---|
| Certification audit (Stage 1 and Stage 2) | $5,000–$40,000 | Schellman self-publishes $20k–$40k; compliance-platform vendors quote $5k–$20k. Get three quotes. |
| Annual surveillance audit | $2,500–$20,000 | Years 2 and 3. |
| Recertification (year 3) | 60–70% of initial | Multiple sources agree on this one. |
| Readiness or gap assessment | $3,000–$15,000 | Optional, and the first thing a vendor will sell you. |
| Consultant support | $10,000–$80,000 | The widest range on the table, and the least comparable line item. |
| Internal effort | 150–800+ hours | The number readers underestimate. |
| Document toolkits (the DIY floor) | $199–$1,497 | Sets the floor, and tells you something: the documentation is a commodity. |
Year 1 total for a 200 to 3,000-employee company: roughly $40,000 to roughly $320,000, depending on who you ask. An eight-fold spread is not a range, it is a disagreement, and reporting the midpoint would hide the useful part. The highest published figures come from firms using them to argue that you should outsource the work to them. The lowest come from platform vendors whose product is the documentation layer. Read the number, then read who published it.
One useful negative finding, because SOC 2 and ISO/IEC 27001 muscle memory suggests otherwise: penetration testing is not required for ISO/IEC 42001. If a proposal includes it as a certification prerequisite, that is scope the vendor added.
What ISO/IEC 42001 does not do
This is the section the readiness vendors do not write, and it is the reason to read this page rather than theirs.
The EU AI Act: no presumption of conformity
ISO/IEC 42001 is not a harmonised standard under the EU AI Act. Article 40 of the EU AI Act grants presumption of conformity only to standards developed on a Commission standardisation request, scrutinized, and then cited in the Official Journal of the European Union. Commission request C(2025)3871 tasked CEN-CENELEC JTC 21 with developing prEN 18286 to cover the Article 17 quality management system obligation. That work is not ISO/IEC 42001. Public enquiry on prEN 18286 closed on 22 January 2026, with publication targeted for late 2026.
On timing, use post-Omnibus dates: high-risk obligations under Annex III of the EU AI Act apply from 2 December 2027, and Annex I from 2 August 2028. Even vendors selling ISO/IEC 42001 readiness concede in their own material that it is not a harmonised standard, which tells you the point is settled rather than contested.
The NIST AI RMF: the question is malformed
You cannot be certified against the NIST AI RMF, because there is nothing to certify against. NIST AI RMF 1.0, published 26 January 2023, is voluntary and has no certification mechanism: no accreditation scheme, and no certificate to issue. What you can do is claim alignment with NIST AI RMF 1.0, and then be asked to evidence the claim. NIST AI RMF is also currently being revised under the White House AI Action Plan, so it is a moving target and any mapping you build against it needs a review date on it.
US state law: the Colorado safe harbor was repealed
ISO/IEC 42001 is named in the text of no US state law currently in force.
Colorado SB 24-205 did name it, and granted a rebuttable presumption of compliance to organizations following a recognized framework. That provision no longer exists. Colorado SB 26-189, signed 14 May 2026 and effective 1 January 2027, removed it entirely. Any page telling you ISO/IEC 42001 gives you safe harbour in Colorado is citing a repealed statute, and several still do.
Two adjacent claims are worth getting right at the same time. The Texas Responsible Artificial Intelligence Governance Act, TRAIGA, provides an affirmative defense that names the NIST AI RMF and gestures at “a similar framework” — NIST AI RMF, not ISO/IEC 42001. And Washington’s bill naming ISO/IEC 42001 is proposed, not enacted. A proposed bill is not a compliance argument.
Customer security questionnaires: partially
ISO/IEC 42001 certification closes “do you have AI governance?” in one move, and it earns a clean line on a trust page. It does not produce the model cards, the provenance records, the 90 days of output-evaluation logs, or the subprocessor lists that the detailed questions in a vendor security review ask for. Those are separate artifacts with separate owners, and you will build them whether or not you certify.
The alternatives, compared
There are five options on the table, and they answer different questions. Before reading the table, one caution I put on the framework crosswalk I published in July 2026, which applies here without modification: “Mappings are conceptual correspondences for board explanation, not certified equivalences.”
| Option | Cost | Time | The question it answers | Certifiable |
|---|---|---|---|---|
| ISO/IEC 42001 | $40k–$320k Year 1 (contested) | 4–9 months; 4–6 with ISO/IEC 27001 in place | “Has an accredited third party checked that you govern AI?” | Yes — the only one here |
| NIST AI RMF 1.0 and the Generative AI Profile | Free framework; internal effort only | Weeks to months | “Do you follow a recognized risk framework?” NIST AI RMF 1.0 is the framework named in the Texas TRAIGA affirmative defense. | No |
| EU AI Act conformity route | Per system, not per organization | Gated on prEN 18286 | “Is this system lawful to place on the EU market?” | Yes, but the harmonised standard does not exist yet |
| SOC 2 | Standard SOC 2 cost | Standard cycle | “Are your controls operating?” Now a baseline that no longer differentiates. | Attestation |
| Published AI governance statement | Drafting cost | Days to weeks | “What is your AI policy?” Closes the easy question and nothing else. | No |
On SOC 2 and AI, state this plainly, because the market does not: the AICPA has published nothing. The current Trust Services Criteria remain the 2017 TSC with the 2022 revised points of focus, last updated 30 September 2023, and there is no mention of artificial intelligence anywhere in them. There is no “SOC 2 for AI.” Everything marketed under that name is auditors applying the existing criteria to systems that happen to contain AI.
When ISO/IEC 42001 is worth it
Three conditions, and one of them has to be true before the spend makes sense.
- A named enterprise customer or a certifying body has asked for ISO/IEC 42001 by name. Not “buyers are asking about AI governance” — a named account, in writing.
- You already hold ISO/IEC 27001. The Annex SL structure is shared, so the management-system work is largely done and the timeline compresses to four to six months.
- You sell AI features into regulated buyers, where an accredited third-party certificate shortens every procurement cycle rather than one.
It is not worth it as a substitute for the four artifacts a customer questionnaire actually asks for. Certify or do not certify; you build those either way, and they are the cheaper half of the work.
Before you sign with a certification body
Ask any prospective certification body two questions, and get the answers in writing.
- Which accreditation body accredits you for ISO/IEC 42001? Named accreditors include ANAB in the United States, UKAS in the United Kingdom, RvA in the Netherlands, and IAS.
- Was our certificate issued under ISO/IEC 42006:2025, or under an earlier draft-based scheme? ISO/IEC 42001 published on 18 December 2023. ISO/IEC 42006, the standard setting the rules for who may audit against it, published on 7 July 2025. In that 20-month gap, certificates were issued against draft rules.
The timeline matters commercially. Schellman was the first body ANAB-accredited for ISO/IEC 42001, on 24 September 2024; BSI completed ANAB accreditation only on 10 March 2026. A certificate issued before your body was accredited is worth exactly what the buyer’s counsel decides it is worth, and that conversation is better had now than during a security review.
Questions people actually ask
Does ISO 42001 certification make us EU AI Act compliant?
No. ISO/IEC 42001 is not a harmonised standard under the EU AI Act, so it carries no presumption of conformity. Article 40 of the EU AI Act grants that status only to standards developed on a Commission standardisation request, scrutinized, and cited in the Official Journal. The Commission request C(2025)3871 tasked CEN-CENELEC JTC 21 with prEN 18286 for the Article 17 quality management system, and that standard is still in development. ISO/IEC 42001 certification is useful evidence of governance maturity; it is not a compliance route.
How much does ISO 42001 certification actually cost?
Published Year 1 figures for a company of 200 to 3,000 employees run from roughly $40,000 to roughly $320,000, and the spread tracks who is publishing. Certification audit quotes alone range from $5,000 to $40,000 depending on whether the source is an audit firm or a compliance platform. The line most people underestimate is internal effort at 150 to 800 or more hours. Get three quotes and treat any single published total as marketing until you have them.
Can we be NIST AI RMF certified?
No. NIST AI RMF 1.0, published 26 January 2023, is voluntary and has no certification mechanism. There is no accreditation scheme and no certificate to issue. You can claim alignment with NIST AI RMF 1.0 and you can be asked to evidence that claim. NIST AI RMF is also currently being revised under the White House AI Action Plan, so any alignment mapping you build should carry a review date.
We have ISO 27001. How much of that carries over?
A material share, because ISO/IEC 42001 and ISO/IEC 27001 share the Annex SL high-level structure, so clauses 4 through 10 map closely and the management-system machinery is reusable. Vendors commonly estimate 30 to 50 percent reuse, and every source publishing that estimate is selling readiness services, so treat it as directional. What does not carry over is Annex A: ISO/IEC 42001 has 38 controls across nine objectives that are specific to AI systems and have no ISO/IEC 27001 equivalent.
Does ISO 42001 answer a customer's AI security questionnaire?
Partially. ISO/IEC 42001 certification closes the question “do you have AI governance?” in one move and earns a line on a trust page. It does not by itself produce the model cards, provenance records, 90 days of output-evaluation logs, or subprocessor lists that the detailed questions demand. Those are separate artifacts, and you will build them whether or not you certify — see answering the AI section of a customer security questionnaire.
Sources. ISO/IEC 42001:2023 published 18 December 2023, 51 pages (iso.org/standard/42001). ISO/IEC 42006:2025 published 7 July 2025 (iso.org/standard/42006). Approximately 350 certified organizations worldwide as of spring 2026 (Atoro, 2 July 2026); BCG described itself as “among the first 100” (bcg.com, 27 January 2026). EU AI Act Article 40 and the prEN 18286 Article 17 route: Cloud Security Alliance research note, 28 April 2026. EU AI Act Annex III high-risk obligations from 2 December 2027 and Annex I from 2 August 2028: Gibson Dunn, 27 May 2026. Colorado SB 26-189 signed 14 May 2026, effective 1 January 2027, removing the framework presumption granted by SB 24-205: Seyfarth, 22 May 2026. Texas TRAIGA affirmative defense naming the NIST AI RMF: Skadden, 23 June 2025. NIST AI RMF 1.0 published 26 January 2023, voluntary, no certification mechanism, currently under revision (nist.gov). AICPA Trust Services Criteria last updated 30 September 2023 with no AI language (aicpa-cima.com). Cost ranges are compiled from published vendor and audit-firm figures; the disagreement between them is reported rather than averaged.
If you are weighing ISO/IEC 42001 against a named customer requirement rather than against a market trend, that is a decision worth an hour before it becomes a budget line. How I work with boards and executive teams.
Related
Answering the AI section of a customer security questionnaire — the four artifacts buyers actually ask for, and why three of them move in days while one needs 90.
EU AI Act × NIST AI RMF × ISO 42001: the verified crosswalk — every cell of the columns grid mapped to the article numbers that apply, with confidence stated per framework.
The Governance Memo carries this work monthly for boards and CISOs — one breach post-mortem and two or three governance items.