Assurance Platform
The methodology every engagement runs on
Structured assessment frameworks mapped to ISO/IEC 42001, the NIST AI RMF, and the EU AI Act — so a finding means the same thing across teams, sectors, and years.
Capabilities
What this module provides
Framework library
Maintained assessment frameworks per system class: predictive models, language model applications, agentic systems, and embedded AI in purchased software.
Control mappings
Each criterion mapped to the clauses of the standards it satisfies, so one piece of evidence can serve several obligations.
Severity model
A published severity scale tied to consequence, applied consistently rather than negotiated per engagement.
Versioning
Frameworks are versioned. Every report records the version it was assessed under, so historical findings remain interpretable.
Applied consistently
The same criteria, whoever performs the assessment
Assessors work from the framework, not from memory. Every judgement call that is not fully determined by the criteria is recorded as such, so a reader can see where discretion was exercised.
- Documented criteria
- Recorded discretion
- Peer review
- Calibration exercises
- Dispute procedure
- Published change log
Standards
Anchored to published criteria
- ISO/IEC 42001:2023
- Artificial intelligence management system (AIMS) — the certifiable organisational standard for governing AI.
- NIST AI RMF 1.0
- The Govern, Map, Measure, Manage functions, plus the Generative AI Profile (NIST AI 600-1).
- EU AI Act
- Regulation (EU) 2024/1689 — the first comprehensive, risk-tiered statutory regime for AI.
- prEN 18286
- The draft European harmonised standard for AI quality management systems under the AI Act.
Other platform modules
Deploy AI with confidence.
Start with an independent assessment of your highest-stakes AI system.