In June 2026, the EU Council pushed back the AI Act’s high-risk compliance deadline — but customers and regulators are still asking for AI governance evidence now. This session gives you a clear, vendor-neutral walkthrough of ISO/IEC 42001: what it is, who it applies to, and what happens during an independent assessment.

  • Did the EU AI Act deadline actually move? Yes — the compliance deadline for high-risk systems shifted from August 2026 to December 2027 (standalone) / August 2028 (embedded systems). We’ll cover what that means, and what hasn’t changed.
  • Do we actually need ISO 42001? Applicability depends on whether your organization builds, provides, or uses AI systems — we’ll walk through how scope is determined.
  • How does ISO 42001 relate to ISO 27001 or SOC 2? We’ll cover where the frameworks share ground and where ISO 42001 adds AI-specific requirements.
  • What does an assessment actually evaluate? From Stage 1 documentation review through Stage 2 evidence testing and the ongoing 3-year certification cycle.
  • What’s the difference between getting “audit-ready” and being assessed? Workstreet and Insight Assurance sit on either side of that line — we’ll explain both.

Can’t make it live? Register anyway and we’ll send you the replay.

Who should attend

Security leaders, compliance managers, and risk professionals at organizations that hold or are pursuing ISO 42001 certification and are beginning to evaluate AI governance.

Speakers

ISO 42001 in 2026 What the EU AI Act Delay Means for Certification SPEAKERS (2).png