• • • AI • • •
Systems must not only be secure and reliable, but also explicable, unbiased and aligned with societal values. Trust by Design calls for governance and continuous assurance across the entire AI lifecycle, proactively engineering trust into AI systems from day one, rather than retrofitting it later. ISO/IEC 42001 provides a concrete framework to meet those challenges by defining requirements for establishing an effective AI governance programme. It guides organisations in managing the whole AI lifecycle and ensuring responsible AI use that is aligned with emerging regulatory requirements. With an AI Management System certified according to the international standard ISO/IEC 42001, legal requirements can be better understood and implemented. By aligning closely with Trust by Design principles, the standard enables companies to ‘build trust by design’ in a systematic and certifiable way.
A structured framework At its core, ISO/IEC 42001 provides a structured framework for establishing, implementing, maintaining and continuously improving an AI management system. Rather than prescribing specific technical solutions, it outlines what processes, controls and monitoring need to be in place for responsible AI management. In addition, the companion standard ISO42005 helps organisations systematically evaluate, document and manage the potential benefits and risks of AI on individuals, groups and society across the entire lifecycle.
validates an organisation’s commitment to trustworthy AI and adherence to international best practices.
Companies already familiar with implementing ISO standards will find a common high-level structure, including clauses on context, leadership, planning, support, operation, performance evaluation and continual improvement. This means it can be integrated into existing corporate governance systems
The standard’s structure addresses AI technical controls, and the organisational processes and cultural elements required for trust. Its key components, governance, impact assessment, risk management, security, monitoring oversight, third- party management, incident handling and improvement, provide a multi-dimensional assurance framework.
Beyond compliance Adopting a Trust by Design approach through the implementation of ISO/IEC 42001 extends beyond compliance, as by building trustworthiness into their AI systems and processes, companies can achieve strategic, financial and operational advantages.
Stepped change programme Implementing Trust by Design goals with ISO/IEC 42001 should be approached as a clear sequence of steps, as a change programme involving people, processes and technology. The implementation pathway goes beyond achieving a certification tick-box, to embedding a sustainable capability for trustworthy AI. This will allow electrical engineers to confidently pursue AI innovations. Following the pathway, organisations create a virtuous cycle, leadership and stakeholders define trust goals, those goals translate into processes and controls, the controls are executed by teams, outcomes are monitored and fed back into improvements.
at each step. Trust by Design builds on the legacy of ‘Secure by Design’ and ‘Privacy by Design’, both approaches that shifted security and privacy considerations to the earliest design stages and expands them to a broader mandate of trustworthiness. It recognises that trust in AI is both a technical and sociological outcome.
electricalengineeringmagazine.co.uk
Overall, ISO/IEC 42001 provides a holistic governance framework for AI, ensuring that an organisation addresses all the key dimensions of trustworthy AI: ethical use, risk management, security/ privacy, transparency, human oversight and compliance. This set of requirements and certification by an accredited body externally
By establishing requirements for Artificial Intelligence Management Systems, the ISO/IEC 42001 provides organisations with a structured framework for responsible AI implementation and governance. As it also aligns with existing management system standards like ISO 9001, ISO/IEC 27001, and ISO/IEC 27701, this makes it easier for organisations to extend already familiar governance processes. As ISO/IEC 42001 incorporates AI-specific requirements for data management, lifecycle oversight and regulatory compliance, its systematic approach delivers structure to AI governance. This helps organisations to improve performance through responsible AI practices and efficient resource utilisation. However, there is no need to implement ISO/IEC 42001 in a single step, since a staged approach can deliver early successes and valuable insights that help to inform a wider deployment in the future. Many organisations begin with a pilot scheme or concentrate on a high-impact AI system to establish their governance framework, before extending it progressively across other projects.
https://www.tuvsud.com/en-gb ELECTRICAL ENGINEERING • MAY 2026 29
Page 1 |
Page 2 |
Page 3 |
Page 4 |
Page 5 |
Page 6 |
Page 7 |
Page 8 |
Page 9 |
Page 10 |
Page 11 |
Page 12 |
Page 13 |
Page 14 |
Page 15 |
Page 16 |
Page 17 |
Page 18 |
Page 19 |
Page 20 |
Page 21 |
Page 22 |
Page 23 |
Page 24 |
Page 25 |
Page 26 |
Page 27 |
Page 28 |
Page 29 |
Page 30 |
Page 31 |
Page 32 |
Page 33 |
Page 34 |
Page 35 |
Page 36 |
Page 37 |
Page 38 |
Page 39 |
Page 40