August 29, 2026

9 min read

What ISO 42001 Certification Actually Proves About an AI Vendor

What ISO/IEC 42001 actually is, and why buyers are suddenly asking about it

ISO/IEC 42001 is a management-system standard for how an organization builds, governs, and maintains AI systems, not a technical spec for how a model performs. It was published in December 2023 as the first international standard of its kind, and it works the same way ISO 9001 works for quality or ISO 27001 works for information security: it audits process, documentation, and accountability, not outcomes.

The reason this is showing up in your vendor questionnaires now is simple math. McKinsey's 2025 State of AI report found that 88% of organizations now use AI in at least one part of their business, and every one of those deployments creates a governance question someone eventually has to answer in a procurement review, an insurance application, or a board meeting. Search interest in "iso 42001 certification" has grown 504% year over year, and "ai governance certification" is up 90%. That's not curiosity. That's procurement teams and legal departments scrambling to figure out what a badge on a vendor's website actually means before they sign.

Here's the problem: almost everything written about ISO 42001 right now is aimed at people trying to get certified, auditors selling training courses, or vendors announcing their own certification. Almost nothing is written for the person on the other side of the table, the buyer trying to decide what the certification should and shouldn't tell them before money changes hands.

What ISO 42001 certification actually proves, and what it doesn't

Certification proves a vendor has a documented, repeatable process for managing AI risk across the model lifecycle: data provenance, bias testing, change management, incident response, and ongoing monitoring. An accredited third-party auditor, firms like Schellman, BSI, or DNV, reviewed that process and signed off. AWS, for example, had its ISO 42001 certification verified by Schellman Compliance, LLC. That's a real, meaningful check. It means someone independent looked under the hood.

What it doesn't prove is that any specific model is accurate, that your data stays where you think it does, that you own anything you paid to build, or that the vendor is complying with a specific law in your jurisdiction. SAP's own compliance team, writing about certifying Joule and SAP AI Core in 2025, put it plainly: certification is "a milestone, not a final goal." They also draw a distinction worth sitting with: there's a real gap between a vendor's self-attestation that it follows responsible AI practices and a third-party certification that an auditor actually verified those practices. Most vendors you'll evaluate this year are still doing the former and calling it the latter.

Scope matters too, and it's the detail most buyers skip. SAP certified specific products, Joule and AI Core, not its entire AI portfolio. If a vendor's certification badge covers one product line and you're buying a different one, the badge tells you nothing about what you're actually getting.

Is ISO 42001 certification mandatory for AI vendors?

No. It's a voluntary standard, and no government requires it. But "voluntary" is doing less work than it used to. In healthcare, public-sector, and increasingly finance procurement, ISO 42001 is becoming a de facto contractual requirement even though no law demands it. Vanta's buyer-facing research notes that its absence is already jeopardizing deals for vendors selling into regulated buyers, because risk and legal teams have started treating it as a baseline rather than a differentiator.

If you're a founder or ops lead evaluating vendors, expect this to keep accelerating. If you're the vendor, or the buyer trying to decide whether to pursue certification for your own AI product, the honest answer is that the market is moving toward expecting it well before regulation does.

ISO 42001 vs. SOC 2 vs. the EU AI Act, how the frameworks actually relate

These three get conflated constantly, and they solve different problems.

  • SOC 2 audits general security controls, confidentiality, availability, processing integrity, across any software system. It says nothing specific about AI.

  • ISO 42001 audits AI-specific lifecycle governance: training data provenance, bias monitoring, model change control, and human oversight. Organizations already ISO 27001-certified typically get there faster because they reuse existing controls (Vanta).

  • The EU AI Act is binding law with real penalties, not a voluntary standard. Vanta is explicit that ISO 42001 does not automatically satisfy the EU AI Act, even though the two overlap enough that most companies pursue them together. A GRC discussion thread that surfaced in mid-2026 summed it up bluntly: "ISO 42001 does not, by itself, cover AI Act conformity," and that correction is coming from compliance practitioners, not skeptics.

If you're selling into or operating in the EU, this distinction is not academic. We covered the compliance timeline in detail in what the EU AI Act's August 2026 high-risk deadline means for US and Singapore companies, and the short version is: certification supports your case, it doesn't make it for you.

What ISO 42001 certification costs, and what that signals about a vendor

Getting certified isn't a form you fill out. It's a gap analysis against the standard's control set, a policy and documentation build-out, a Stage 1 audit (does the documentation exist and hold together), and a Stage 2 audit (does the organization actually operate the way the documentation says it does), all performed by an accredited certification body. That's months of internal work plus external audit fees, and it doesn't stop after the certificate is issued: surveillance audits continue annually to keep it valid.

Here's the buyer-side read on cost. A vendor that invested real time and money into this process is telling you something about organizational maturity: they have a compliance function, they've documented how they handle AI risk, and they were willing to have someone outside the company check their homework. That's worth something. But it's a signal about the vendor's operating discipline, not a warranty on their product. A well-funded vendor with a slick certification can still have a data-retention policy you'd never accept, or a contract that gives them rights to your fine-tuned model weights. Cost and rigor of the audit tell you how seriously they take process. They tell you nothing about the specific terms you're about to sign.

The questions to ask instead of just checking the certification box

We've sat across the table from enough founders and ops leads mid-vendor-selection to know the certification badge gets treated as a finish line when it should be a starting point for five sharper questions:

  • Is the certification scoped to the exact product or module you're buying, or to the vendor's broader portfolio? (Ask for the certificate scope statement, not the marketing page.)

  • Where does your training and inference data physically reside, and does the vendor's answer change if you're in a regulated industry with data-residency rules?

  • Who owns the model weights, fine-tuned artifacts, and prompt libraries you build on their platform, you or them?

  • What happens to your data and your custom configurations on contract termination? Is there a documented exit process, or do you lose everything on day one of a dispute?

  • Is this a self-attestation dressed up as a certification, or did an accredited third party actually audit it? Ask for the auditor's name.

We built a fuller version of this checklist, covering security, IP, and exit terms beyond AI-specific certifications, in what to ask an AI vendor before you sign the contract. ISO 42001 is one input into that evaluation, not a replacement for it. It's also worth reading alongside how underwriters actually assess AI risk, which we covered in AI liability insurance: what your architecture means to an underwriter: insurers and auditors are asking versions of the same five questions, from different angles, and neither one is satisfied by a certificate alone.

When a certified SaaS vendor isn't enough

Certification tells you a vendor runs a disciplined process. It doesn't tell you where your patient records, contract terms, or proprietary catalog data end up, and it doesn't give you a say if the vendor changes its retention policy, gets acquired, or discontinues the product you built your operations around. For a company handling PHI, financial records, or anything with contractual data-residency requirements, that gap is the whole ballgame. We wrote about the same pattern showing up in a different regulated context in what HIPAA-compliant AI actually requires beyond a signed BAA: a compliance artifact that looks sufficient on paper often isn't the thing that actually protects you.

This is the scenario where a self-hosted, custom-built system starts making more sense than another certified SaaS seat. Not because certification is worthless, it isn't, but because owning the system means you control data residency, retention, and IP outright instead of trusting a vendor's policy not to change. It's the same logic behind why Genta AI Solutions runs models on the client's own infrastructure with zero data retention for regulated clients: the point isn't to avoid compliance frameworks, it's to remove the question entirely by owning the thing being audited.

If you're weighing a certified vendor against building and owning the system yourself, that's exactly the decision Genta AI Solutions' enterprise AI work is built around: diagnose the actual data and compliance exposure first, then decide whether renting a certified platform or owning a custom-built one actually solves it.

If you're working through this decision right now, this is exactly what our Discovery phase maps out before anything gets built, and we're happy to compare notes.

Frequently asked questions

Is ISO 42001 certification mandatory for AI vendors?

No, it's a voluntary standard with no legal mandate behind it. That said, healthcare, public-sector, and finance procurement teams increasingly treat it as a baseline requirement in practice, and vendors without it are already losing deals to competitors who have it, even though nothing in law requires it yet.

How much does ISO 42001 certification cost?

Costs vary by organization size and existing maturity, covering gap analysis, documentation build-out, and Stage 1 and Stage 2 audit fees from an accredited body, plus annual surveillance audits after that. Read the cost as a signal of a vendor's operational discipline, not as a guarantee about their product or contract terms.

Is ISO 42001 certification worth it?

For vendors selling into regulated buyers, increasingly yes, it's becoming table stakes rather than a differentiator. For buyers, it's worth using as one input in vendor evaluation alongside data-residency, IP-ownership, and exit-clause questions, not as a substitute for asking them.

What's the difference between ISO 42001 and SOC 2?

SOC 2 audits general security controls (confidentiality, availability, processing integrity) across any software system. ISO 42001 audits AI-specific lifecycle governance: training data provenance, bias monitoring, and model change control. Companies already SOC 2 or ISO 27001 certified typically reach ISO 42001 faster by reusing existing controls.

Does ISO 42001 satisfy EU AI Act requirements?

No. ISO 42001 is a voluntary management-system standard; the EU AI Act is binding law with real penalties. The two overlap enough that most companies pursue certification to support AI Act alignment, but certification alone does not satisfy the Act's legal requirements.

Which companies are ISO 42001 certified?

Microsoft and AWS hold organization-level ISO 42001 certifications, with AWS's verified by Schellman Compliance, LLC. SAP certified specific products, Joule and SAP AI Core, in 2025, illustrating that certification scope often covers particular products rather than a vendor's entire AI portfolio.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

August 29, 2026

9 min read

What ISO 42001 Certification Actually Proves About an AI Vendor

What ISO/IEC 42001 actually is, and why buyers are suddenly asking about it

ISO/IEC 42001 is a management-system standard for how an organization builds, governs, and maintains AI systems, not a technical spec for how a model performs. It was published in December 2023 as the first international standard of its kind, and it works the same way ISO 9001 works for quality or ISO 27001 works for information security: it audits process, documentation, and accountability, not outcomes.

The reason this is showing up in your vendor questionnaires now is simple math. McKinsey's 2025 State of AI report found that 88% of organizations now use AI in at least one part of their business, and every one of those deployments creates a governance question someone eventually has to answer in a procurement review, an insurance application, or a board meeting. Search interest in "iso 42001 certification" has grown 504% year over year, and "ai governance certification" is up 90%. That's not curiosity. That's procurement teams and legal departments scrambling to figure out what a badge on a vendor's website actually means before they sign.

Here's the problem: almost everything written about ISO 42001 right now is aimed at people trying to get certified, auditors selling training courses, or vendors announcing their own certification. Almost nothing is written for the person on the other side of the table, the buyer trying to decide what the certification should and shouldn't tell them before money changes hands.

What ISO 42001 certification actually proves, and what it doesn't

Certification proves a vendor has a documented, repeatable process for managing AI risk across the model lifecycle: data provenance, bias testing, change management, incident response, and ongoing monitoring. An accredited third-party auditor, firms like Schellman, BSI, or DNV, reviewed that process and signed off. AWS, for example, had its ISO 42001 certification verified by Schellman Compliance, LLC. That's a real, meaningful check. It means someone independent looked under the hood.

What it doesn't prove is that any specific model is accurate, that your data stays where you think it does, that you own anything you paid to build, or that the vendor is complying with a specific law in your jurisdiction. SAP's own compliance team, writing about certifying Joule and SAP AI Core in 2025, put it plainly: certification is "a milestone, not a final goal." They also draw a distinction worth sitting with: there's a real gap between a vendor's self-attestation that it follows responsible AI practices and a third-party certification that an auditor actually verified those practices. Most vendors you'll evaluate this year are still doing the former and calling it the latter.

Scope matters too, and it's the detail most buyers skip. SAP certified specific products, Joule and AI Core, not its entire AI portfolio. If a vendor's certification badge covers one product line and you're buying a different one, the badge tells you nothing about what you're actually getting.

Is ISO 42001 certification mandatory for AI vendors?

No. It's a voluntary standard, and no government requires it. But "voluntary" is doing less work than it used to. In healthcare, public-sector, and increasingly finance procurement, ISO 42001 is becoming a de facto contractual requirement even though no law demands it. Vanta's buyer-facing research notes that its absence is already jeopardizing deals for vendors selling into regulated buyers, because risk and legal teams have started treating it as a baseline rather than a differentiator.

If you're a founder or ops lead evaluating vendors, expect this to keep accelerating. If you're the vendor, or the buyer trying to decide whether to pursue certification for your own AI product, the honest answer is that the market is moving toward expecting it well before regulation does.

ISO 42001 vs. SOC 2 vs. the EU AI Act, how the frameworks actually relate

These three get conflated constantly, and they solve different problems.

  • SOC 2 audits general security controls, confidentiality, availability, processing integrity, across any software system. It says nothing specific about AI.

  • ISO 42001 audits AI-specific lifecycle governance: training data provenance, bias monitoring, model change control, and human oversight. Organizations already ISO 27001-certified typically get there faster because they reuse existing controls (Vanta).

  • The EU AI Act is binding law with real penalties, not a voluntary standard. Vanta is explicit that ISO 42001 does not automatically satisfy the EU AI Act, even though the two overlap enough that most companies pursue them together. A GRC discussion thread that surfaced in mid-2026 summed it up bluntly: "ISO 42001 does not, by itself, cover AI Act conformity," and that correction is coming from compliance practitioners, not skeptics.

If you're selling into or operating in the EU, this distinction is not academic. We covered the compliance timeline in detail in what the EU AI Act's August 2026 high-risk deadline means for US and Singapore companies, and the short version is: certification supports your case, it doesn't make it for you.

What ISO 42001 certification costs, and what that signals about a vendor

Getting certified isn't a form you fill out. It's a gap analysis against the standard's control set, a policy and documentation build-out, a Stage 1 audit (does the documentation exist and hold together), and a Stage 2 audit (does the organization actually operate the way the documentation says it does), all performed by an accredited certification body. That's months of internal work plus external audit fees, and it doesn't stop after the certificate is issued: surveillance audits continue annually to keep it valid.

Here's the buyer-side read on cost. A vendor that invested real time and money into this process is telling you something about organizational maturity: they have a compliance function, they've documented how they handle AI risk, and they were willing to have someone outside the company check their homework. That's worth something. But it's a signal about the vendor's operating discipline, not a warranty on their product. A well-funded vendor with a slick certification can still have a data-retention policy you'd never accept, or a contract that gives them rights to your fine-tuned model weights. Cost and rigor of the audit tell you how seriously they take process. They tell you nothing about the specific terms you're about to sign.

The questions to ask instead of just checking the certification box

We've sat across the table from enough founders and ops leads mid-vendor-selection to know the certification badge gets treated as a finish line when it should be a starting point for five sharper questions:

  • Is the certification scoped to the exact product or module you're buying, or to the vendor's broader portfolio? (Ask for the certificate scope statement, not the marketing page.)

  • Where does your training and inference data physically reside, and does the vendor's answer change if you're in a regulated industry with data-residency rules?

  • Who owns the model weights, fine-tuned artifacts, and prompt libraries you build on their platform, you or them?

  • What happens to your data and your custom configurations on contract termination? Is there a documented exit process, or do you lose everything on day one of a dispute?

  • Is this a self-attestation dressed up as a certification, or did an accredited third party actually audit it? Ask for the auditor's name.

We built a fuller version of this checklist, covering security, IP, and exit terms beyond AI-specific certifications, in what to ask an AI vendor before you sign the contract. ISO 42001 is one input into that evaluation, not a replacement for it. It's also worth reading alongside how underwriters actually assess AI risk, which we covered in AI liability insurance: what your architecture means to an underwriter: insurers and auditors are asking versions of the same five questions, from different angles, and neither one is satisfied by a certificate alone.

When a certified SaaS vendor isn't enough

Certification tells you a vendor runs a disciplined process. It doesn't tell you where your patient records, contract terms, or proprietary catalog data end up, and it doesn't give you a say if the vendor changes its retention policy, gets acquired, or discontinues the product you built your operations around. For a company handling PHI, financial records, or anything with contractual data-residency requirements, that gap is the whole ballgame. We wrote about the same pattern showing up in a different regulated context in what HIPAA-compliant AI actually requires beyond a signed BAA: a compliance artifact that looks sufficient on paper often isn't the thing that actually protects you.

This is the scenario where a self-hosted, custom-built system starts making more sense than another certified SaaS seat. Not because certification is worthless, it isn't, but because owning the system means you control data residency, retention, and IP outright instead of trusting a vendor's policy not to change. It's the same logic behind why Genta AI Solutions runs models on the client's own infrastructure with zero data retention for regulated clients: the point isn't to avoid compliance frameworks, it's to remove the question entirely by owning the thing being audited.

If you're weighing a certified vendor against building and owning the system yourself, that's exactly the decision Genta AI Solutions' enterprise AI work is built around: diagnose the actual data and compliance exposure first, then decide whether renting a certified platform or owning a custom-built one actually solves it.

If you're working through this decision right now, this is exactly what our Discovery phase maps out before anything gets built, and we're happy to compare notes.

Frequently asked questions

Is ISO 42001 certification mandatory for AI vendors?

No, it's a voluntary standard with no legal mandate behind it. That said, healthcare, public-sector, and finance procurement teams increasingly treat it as a baseline requirement in practice, and vendors without it are already losing deals to competitors who have it, even though nothing in law requires it yet.

How much does ISO 42001 certification cost?

Costs vary by organization size and existing maturity, covering gap analysis, documentation build-out, and Stage 1 and Stage 2 audit fees from an accredited body, plus annual surveillance audits after that. Read the cost as a signal of a vendor's operational discipline, not as a guarantee about their product or contract terms.

Is ISO 42001 certification worth it?

For vendors selling into regulated buyers, increasingly yes, it's becoming table stakes rather than a differentiator. For buyers, it's worth using as one input in vendor evaluation alongside data-residency, IP-ownership, and exit-clause questions, not as a substitute for asking them.

What's the difference between ISO 42001 and SOC 2?

SOC 2 audits general security controls (confidentiality, availability, processing integrity) across any software system. ISO 42001 audits AI-specific lifecycle governance: training data provenance, bias monitoring, and model change control. Companies already SOC 2 or ISO 27001 certified typically reach ISO 42001 faster by reusing existing controls.

Does ISO 42001 satisfy EU AI Act requirements?

No. ISO 42001 is a voluntary management-system standard; the EU AI Act is binding law with real penalties. The two overlap enough that most companies pursue certification to support AI Act alignment, but certification alone does not satisfy the Act's legal requirements.

Which companies are ISO 42001 certified?

Microsoft and AWS hold organization-level ISO 42001 certifications, with AWS's verified by Schellman Compliance, LLC. SAP certified specific products, Joule and SAP AI Core, in 2025, illustrating that certification scope often covers particular products rather than a vendor's entire AI portfolio.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

August 29, 2026

9 min read

What ISO 42001 Certification Actually Proves About an AI Vendor

What ISO/IEC 42001 actually is, and why buyers are suddenly asking about it

ISO/IEC 42001 is a management-system standard for how an organization builds, governs, and maintains AI systems, not a technical spec for how a model performs. It was published in December 2023 as the first international standard of its kind, and it works the same way ISO 9001 works for quality or ISO 27001 works for information security: it audits process, documentation, and accountability, not outcomes.

The reason this is showing up in your vendor questionnaires now is simple math. McKinsey's 2025 State of AI report found that 88% of organizations now use AI in at least one part of their business, and every one of those deployments creates a governance question someone eventually has to answer in a procurement review, an insurance application, or a board meeting. Search interest in "iso 42001 certification" has grown 504% year over year, and "ai governance certification" is up 90%. That's not curiosity. That's procurement teams and legal departments scrambling to figure out what a badge on a vendor's website actually means before they sign.

Here's the problem: almost everything written about ISO 42001 right now is aimed at people trying to get certified, auditors selling training courses, or vendors announcing their own certification. Almost nothing is written for the person on the other side of the table, the buyer trying to decide what the certification should and shouldn't tell them before money changes hands.

What ISO 42001 certification actually proves, and what it doesn't

Certification proves a vendor has a documented, repeatable process for managing AI risk across the model lifecycle: data provenance, bias testing, change management, incident response, and ongoing monitoring. An accredited third-party auditor, firms like Schellman, BSI, or DNV, reviewed that process and signed off. AWS, for example, had its ISO 42001 certification verified by Schellman Compliance, LLC. That's a real, meaningful check. It means someone independent looked under the hood.

What it doesn't prove is that any specific model is accurate, that your data stays where you think it does, that you own anything you paid to build, or that the vendor is complying with a specific law in your jurisdiction. SAP's own compliance team, writing about certifying Joule and SAP AI Core in 2025, put it plainly: certification is "a milestone, not a final goal." They also draw a distinction worth sitting with: there's a real gap between a vendor's self-attestation that it follows responsible AI practices and a third-party certification that an auditor actually verified those practices. Most vendors you'll evaluate this year are still doing the former and calling it the latter.

Scope matters too, and it's the detail most buyers skip. SAP certified specific products, Joule and AI Core, not its entire AI portfolio. If a vendor's certification badge covers one product line and you're buying a different one, the badge tells you nothing about what you're actually getting.

Is ISO 42001 certification mandatory for AI vendors?

No. It's a voluntary standard, and no government requires it. But "voluntary" is doing less work than it used to. In healthcare, public-sector, and increasingly finance procurement, ISO 42001 is becoming a de facto contractual requirement even though no law demands it. Vanta's buyer-facing research notes that its absence is already jeopardizing deals for vendors selling into regulated buyers, because risk and legal teams have started treating it as a baseline rather than a differentiator.

If you're a founder or ops lead evaluating vendors, expect this to keep accelerating. If you're the vendor, or the buyer trying to decide whether to pursue certification for your own AI product, the honest answer is that the market is moving toward expecting it well before regulation does.

ISO 42001 vs. SOC 2 vs. the EU AI Act, how the frameworks actually relate

These three get conflated constantly, and they solve different problems.

  • SOC 2 audits general security controls, confidentiality, availability, processing integrity, across any software system. It says nothing specific about AI.

  • ISO 42001 audits AI-specific lifecycle governance: training data provenance, bias monitoring, model change control, and human oversight. Organizations already ISO 27001-certified typically get there faster because they reuse existing controls (Vanta).

  • The EU AI Act is binding law with real penalties, not a voluntary standard. Vanta is explicit that ISO 42001 does not automatically satisfy the EU AI Act, even though the two overlap enough that most companies pursue them together. A GRC discussion thread that surfaced in mid-2026 summed it up bluntly: "ISO 42001 does not, by itself, cover AI Act conformity," and that correction is coming from compliance practitioners, not skeptics.

If you're selling into or operating in the EU, this distinction is not academic. We covered the compliance timeline in detail in what the EU AI Act's August 2026 high-risk deadline means for US and Singapore companies, and the short version is: certification supports your case, it doesn't make it for you.

What ISO 42001 certification costs, and what that signals about a vendor

Getting certified isn't a form you fill out. It's a gap analysis against the standard's control set, a policy and documentation build-out, a Stage 1 audit (does the documentation exist and hold together), and a Stage 2 audit (does the organization actually operate the way the documentation says it does), all performed by an accredited certification body. That's months of internal work plus external audit fees, and it doesn't stop after the certificate is issued: surveillance audits continue annually to keep it valid.

Here's the buyer-side read on cost. A vendor that invested real time and money into this process is telling you something about organizational maturity: they have a compliance function, they've documented how they handle AI risk, and they were willing to have someone outside the company check their homework. That's worth something. But it's a signal about the vendor's operating discipline, not a warranty on their product. A well-funded vendor with a slick certification can still have a data-retention policy you'd never accept, or a contract that gives them rights to your fine-tuned model weights. Cost and rigor of the audit tell you how seriously they take process. They tell you nothing about the specific terms you're about to sign.

The questions to ask instead of just checking the certification box

We've sat across the table from enough founders and ops leads mid-vendor-selection to know the certification badge gets treated as a finish line when it should be a starting point for five sharper questions:

  • Is the certification scoped to the exact product or module you're buying, or to the vendor's broader portfolio? (Ask for the certificate scope statement, not the marketing page.)

  • Where does your training and inference data physically reside, and does the vendor's answer change if you're in a regulated industry with data-residency rules?

  • Who owns the model weights, fine-tuned artifacts, and prompt libraries you build on their platform, you or them?

  • What happens to your data and your custom configurations on contract termination? Is there a documented exit process, or do you lose everything on day one of a dispute?

  • Is this a self-attestation dressed up as a certification, or did an accredited third party actually audit it? Ask for the auditor's name.

We built a fuller version of this checklist, covering security, IP, and exit terms beyond AI-specific certifications, in what to ask an AI vendor before you sign the contract. ISO 42001 is one input into that evaluation, not a replacement for it. It's also worth reading alongside how underwriters actually assess AI risk, which we covered in AI liability insurance: what your architecture means to an underwriter: insurers and auditors are asking versions of the same five questions, from different angles, and neither one is satisfied by a certificate alone.

When a certified SaaS vendor isn't enough

Certification tells you a vendor runs a disciplined process. It doesn't tell you where your patient records, contract terms, or proprietary catalog data end up, and it doesn't give you a say if the vendor changes its retention policy, gets acquired, or discontinues the product you built your operations around. For a company handling PHI, financial records, or anything with contractual data-residency requirements, that gap is the whole ballgame. We wrote about the same pattern showing up in a different regulated context in what HIPAA-compliant AI actually requires beyond a signed BAA: a compliance artifact that looks sufficient on paper often isn't the thing that actually protects you.

This is the scenario where a self-hosted, custom-built system starts making more sense than another certified SaaS seat. Not because certification is worthless, it isn't, but because owning the system means you control data residency, retention, and IP outright instead of trusting a vendor's policy not to change. It's the same logic behind why Genta AI Solutions runs models on the client's own infrastructure with zero data retention for regulated clients: the point isn't to avoid compliance frameworks, it's to remove the question entirely by owning the thing being audited.

If you're weighing a certified vendor against building and owning the system yourself, that's exactly the decision Genta AI Solutions' enterprise AI work is built around: diagnose the actual data and compliance exposure first, then decide whether renting a certified platform or owning a custom-built one actually solves it.

If you're working through this decision right now, this is exactly what our Discovery phase maps out before anything gets built, and we're happy to compare notes.

Frequently asked questions

Is ISO 42001 certification mandatory for AI vendors?

No, it's a voluntary standard with no legal mandate behind it. That said, healthcare, public-sector, and finance procurement teams increasingly treat it as a baseline requirement in practice, and vendors without it are already losing deals to competitors who have it, even though nothing in law requires it yet.

How much does ISO 42001 certification cost?

Costs vary by organization size and existing maturity, covering gap analysis, documentation build-out, and Stage 1 and Stage 2 audit fees from an accredited body, plus annual surveillance audits after that. Read the cost as a signal of a vendor's operational discipline, not as a guarantee about their product or contract terms.

Is ISO 42001 certification worth it?

For vendors selling into regulated buyers, increasingly yes, it's becoming table stakes rather than a differentiator. For buyers, it's worth using as one input in vendor evaluation alongside data-residency, IP-ownership, and exit-clause questions, not as a substitute for asking them.

What's the difference between ISO 42001 and SOC 2?

SOC 2 audits general security controls (confidentiality, availability, processing integrity) across any software system. ISO 42001 audits AI-specific lifecycle governance: training data provenance, bias monitoring, and model change control. Companies already SOC 2 or ISO 27001 certified typically reach ISO 42001 faster by reusing existing controls.

Does ISO 42001 satisfy EU AI Act requirements?

No. ISO 42001 is a voluntary management-system standard; the EU AI Act is binding law with real penalties. The two overlap enough that most companies pursue certification to support AI Act alignment, but certification alone does not satisfy the Act's legal requirements.

Which companies are ISO 42001 certified?

Microsoft and AWS hold organization-level ISO 42001 certifications, with AWS's verified by Schellman Compliance, LLC. SAP certified specific products, Joule and SAP AI Core, in 2025, illustrating that certification scope often covers particular products rather than a vendor's entire AI portfolio.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.

Tell us where the manual work hurts

We’ll tell you straight whether AI can fix it, what it costs, and what it should return. Whatever we build, you own.