LIVE WEBINAR | Wed 8/12 @ 1pm EST
AIUC-1: AIUC-1 vs. ISO 42001 (Part 3)
Organizations pursuing AIUC-1 may already have much of the foundation they need within an existing ISO 42001 program. The challenge is understanding what can be reused, where AIUC-1 requires deeper agent-specific controls, and how the evidence expectations differ between the two standards.
Join experts from risk3sixty and Schellman for a practical comparison of ISO 42001 and AIUC-1. They will examine how the standards overlap, where AIUC-1 goes further into areas such as agent behavior, guardrails, runtime monitoring, and adversarial testing, and how organizations can build on existing governance work rather than starting over.
The session will combine risk3sixty’s implementation perspective with Schellman’s auditor perspective to help teams determine the right path toward certification.
What You’ll Learn
- How ISO 42001 and AIUC-1 differ in scope, control structure, and evidence expectations
- Which ISO 42001 controls, processes, and evidence can be reused or adapted for AIUC-1
- Where organizations commonly need additional agent-specific testing, monitoring, and guardrails
- How to sequence a gap assessment, control mapping, remediation, and certification readiness effort
Register to save your seat, get the recording, and access Parts 1 & 2.
LIVE WEBINAR
AIUC-1: AIUC-1 vs. ISO 42001 (Part 3)
Organizations pursuing AIUC-1 may already have much of the foundation they need within an existing ISO 42001 program. The challenge is understanding what can be reused, where AIUC-1 requires deeper agent-specific controls, and how the evidence expectations differ between the two standards.
Join experts from risk3sixty and Schellman for a practical comparison of ISO 42001 and AIUC-1. They will examine how the standards overlap, where AIUC-1 goes further into areas such as agent behavior, guardrails, runtime monitoring, and adversarial testing, and how organizations can build on existing governance work rather than starting over.
The session will combine risk3sixty’s implementation perspective with Schellman’s auditor perspective to help teams determine the right path toward certification.
What You’ll Learn
- How ISO 42001 and AIUC-1 differ in scope, control structure, and evidence expectations
- Which ISO 42001 controls, processes, and evidence can be reused or adapted for AIUC-1
- Where organizations commonly need additional agent-specific testing, monitoring, and guardrails
- How to sequence a gap assessment, control mapping, remediation, and certification readiness effort
Register to save your seat, get the recording, and access Parts 1 & 2.
Meet the Presenters
Grace Pfohl
Senior Consultant & AI Advisory Team Lead
Grace Pfohl is a Senior Consultant on risk3sixty’s ethOS Compliance Consulting team and serves as the AI Advisory Team Lead. She leads AI governance, security, and privacy engagements, helping organizations implement ISO/IEC 42001 programs as part of broader compliance initiatives through audits, risk assessments, and AI management system implementations.
With a strong technical background and deep specialization in AI governance, Grace has played a key role in helping organizations achieve some of the earliest ISO/IEC 42001 certifications. She works closely with clients to implement AI management systems aligned with emerging global standards, translating regulatory requirements into practical, risk‑based governance programs.
Grace holds both BS and MS degrees in Computer Science from the Georgia Institute of Technology, with a specialization in Human‑Computer Interaction. She is a certified ISO 42001 Lead Auditor and Implementer and regularly guides organizations through ISO 42001 implementations and internal audits, helping operationalize responsible AI practices at scale. She is also an active member of the WiCyS community, sharing applied perspectives on AI governance and responsible AI.
Joe Sigman
senior manager, schellman
Joe Sigman is a Manager with Schellman based in Denver, Colorado. Prior to joining Schellman in 2021, Joe worked as a Senior Associate at a management consulting firm specializing in IT strategy and compliance, solution architecture, and enterprise digital transformation.
Joe has led and supported AI Assessments, Cybersecurity Assessments, Information Security Architecture Solutioning, Information Technology Gap Analysis, and Cloud Migration Roadmaps.
Joe has over 6 years of experience comprised of serving clients in various industries, including Information Technology, Professional Services, Healthcare, and Energy. Joe is now focused primarily on ISO Certifications for organizations across various industries.