ISO/IEC 42001 AI Management System Auditor
Governance, Risk & Compliance Professional
Become a certified auditor of the world's first AI management system standard.
Designed and delivered under United Nations ESCAP regional AI governance initiatives
Course Details
Funding Support
NTUC members enjoy 50% unfunded course fee support for approved training under UTAP, capped at S$500 per calendar year (S$250 for members below 40, S$500 for members 40 and above under the Enhanced UTAP scheme). Learner pays KKA the full course fee and claims reimbursement via NTUC U Portal within 6 months of course completion.
Per calendar year
View termsMeet Your Trainer

Mr Timothy Tay Huey En
AI Governance Consultant, Auditor & Trainer (United Nations ESCAP)
Timothy is a seasoned expert with over 40 years of experience in AI governance, ethics, and risk management. He has trained and consulted at international organisations and certification bodies, and specialises in standards, governance frameworks, and sustainable digital transformation.
Credentials
- UN ESCAP AI Governance Consultant
- Certified ISO/IEC 42001 Internal Auditor & Trainer
- GRC & Cybersecurity — CISSP · CISM · CISA
Course Overview
What you'll learn
- Structure and intent of ISO/IEC 42001:2023
- Risk-based thinking applied to AI systems
- Planning, conducting and reporting internal audits of an AIMS
- Linkage to ISO 9001, ISO 27001 and the EU AI Act
Curriculum
Day 1 — Foundations
- The AI governance landscape and regulatory drivers
- Clause-by-clause walkthrough of ISO/IEC 42001
- Establishing AI policy, objectives and roles
Day 2 — Audit Practice
- Audit programme planning under ISO 19011
- Evidence gathering and nonconformity write-up
- Live audit simulation and reporting
Who should attend
Compliance leads, risk officers, quality managers, AI/ML engineers, product managers and internal auditors adopting AI governance.
Course Objectives
What You Will Learn
Learning Outcomes
Trustworthy AI & Governance
- Understand AI and Generative AI risks
- Apply principles and best practices
- Conduct AI risk and impact assessment
ISO/IEC 42001 Implementation
- AIMS structure and PDCA model
- Clauses 4–10 and Annex A controls
- Define scope, lifecycle, and governance
GRC Competences
- Plan and conduct internal audits
- Evaluate and evidence collection
- Support continual improvement
2-Day Programme
From Trustworthy AI foundations, to ISO/IEC 42001 requirements, to ISO 19011 internal audit competence.
Trustworthy AI Fundamentals
- AI governance, ethics, and human rights
- Generative AI risks and controls
- Apply Trustworthy AI principles and best practices
- AI Impact Assessment (AIIA) methodology
- Case study: HERO system
ISO/IEC 42001 Implementation
- AIMS structure and PDCA model
- Clauses 4–10 walkthrough with worked examples
- Annex A controls — design, deployment, operation
- Risk management and continual controls
- Define scope, lifecycle, and governance
Learning Approach
Expert-Led Sessions
Interactive Workshops
Real-World Case Studies
Hands-On Risk Exercises
Audit Simulation
Internal Auditor Certificate
Who Should Attend
AI Auditors / Internal Auditors
AI Ethics & Compliance Officers
GRC Professionals
Legal & Regulatory Professionals
Data Protection Officers
AI Project Managers / Product Owners
GRC & Digital Transformation Professionals