An AI Governance Framework helps organisations manage AI risk, strengthen accountability, and prepare for evolving regulatory expectations. This resource page brings together official guidance, practical reference material, and ISO/IEC 42001 context to support more structured, defensible AI governance.
Official guidance from DSIT, ICO, NCSC and the international standard ISO/IEC 42001 to help boards understand AI risks, regulatory expectations, and how to build practical, defensible governance.
Practical guidance on embedding assurance techniques into organisational risk management across the AI lifecycle. Ideal for executives building trustworthy AI systems.
Addresses novel security risks unique to AI and provides secure-by-design principles for the full development lifecycle.
The foundational document outlining the UK’s five cross-sector principles: Safety & robustness, Transparency & explainability, Fairness, Accountability & governance, Contestability & redress.
Guidance on applying the five principles in practice – essential for organisations aligning internal governance.
Updated practical guidance with 10 principles for safe, effective and secure AI use – highly adaptable for private sector organisations.
ISO/IEC 42001:2023 is the world’s first international standard for Artificial Intelligence Management Systems (AIMS). It provides a structured, auditable framework using the Plan-Do-Check-Act cycle, directly supporting the UK’s principles-based approach.
The full standard is available for purchase via BSI or ISO. AvertAI provides practical interpretation, gap analysis, and implementation support focused on real governance outcomes.
Unmanaged AI creates silent exposure. These resources, combined with structured implementation of ISO/IEC 42001, help leadership teams reduce regulatory, operational and reputational risk while building durable accountability.
Reduced regulatory exposure
Audit-ready evidence base
Clear board-level assurance
Certification pathway (ISO 42001)