Professional Track
Professional Track

ISO/IEC 42001 Auditor

Develop the skills to plan, conduct and evaluate audits against ISO/IEC 42001 in real organisational contexts.

Auditor

Artificial Intelligence

ISO/IEC 42001

ISO/IEC 42001 auditor discussing AI governance with an organisational stakeholder, representing assessment of AI management systems beyond formal policies.
ISO/IEC 42001 auditor discussing AI governance with an organisational stakeholder, representing assessment of AI management systems beyond formal policies.

Auditing AI management beyond policies and principles

Auditing AI management beyond policies and principles

A modular training programme for AI governance auditors. Learn to audit ISO/IEC 42001 AI Management Systems by assessing governance, risk management and lifecycle controls in real organisations.

A modular training programme for AI governance auditors. Learn to audit ISO/IEC 42001 AI Management Systems by assessing governance, risk management and lifecycle controls in real organisations.

A modular training programme for AI governance auditors. Learn to audit ISO/IEC 42001 AI Management Systems by assessing governance, risk management and lifecycle controls in real organisations.

Overview

The ISO/IEC 42001 Internal Auditor Track prepares participants to conduct internal audits of AI Management Systems. AI introduces unique risks—bias, drift, data quality issues, explainability limitations, emerging regulatory demands—and internal auditors must understand how these risks are managed across the AI lifecycle.

This programme provides the skills needed to:

  • plan AIMS audits based on the AI lifecycle, risks, and system criticality,

  • audit governance structures, roles, policies and accountability mechanisms,

  • evaluate data management, model development, testing and monitoring processes,

  • assess compliance with transparency, documentation and human oversight requirements,

  • test operational safeguards and incident response mechanisms for AI systems,

  • gather and validate evidence in technical and organisational environments,

  • classify nonconformities and improvement opportunities effectively,

  • and support continual improvement of AI governance and safety practices.

Because many modules are shared across other Halderstone auditor tracks, participants can add further internal auditor qualifications (e.g., ISO 9001 or ISO/IEC 27001) by completing only a few domain-specific modules.

The ISO/IEC 42001 Internal Auditor Track prepares participants to conduct internal audits of AI Management Systems. AI introduces unique risks—bias, drift, data quality issues, explainability limitations, emerging regulatory demands—and internal auditors must understand how these risks are managed across the AI lifecycle.

This programme provides the skills needed to:

  • plan AIMS audits based on the AI lifecycle, risks, and system criticality,

  • audit governance structures, roles, policies and accountability mechanisms,

  • evaluate data management, model development, testing and monitoring processes,

  • assess compliance with transparency, documentation and human oversight requirements,

  • test operational safeguards and incident response mechanisms for AI systems,

  • gather and validate evidence in technical and organisational environments,

  • classify nonconformities and improvement opportunities effectively,

  • and support continual improvement of AI governance and safety practices.

Because many modules are shared across other Halderstone auditor tracks, participants can add further internal auditor qualifications (e.g., ISO 9001 or ISO/IEC 27001) by completing only a few domain-specific modules.

Learning outcomes

After completing this track, participants will be able to:

  • Explain the purpose and scope of ISO/IEC 42001 and its implications for AI governance.

  • Plan internal AIMS audits based on AI lifecycle phases, system criticality and risk.

  • Audit governance, leadership and responsibilities specific to AI systems.

  • Evaluate data governance, model documentation, testing, validation and deployment processes.

  • Assess monitoring mechanisms, incident handling and change control for AI systems.

  • Verify transparency, explainability, human oversight and other trustworthy-AI requirements.

  • Gather and evaluate objective evidence in technical and non-technical settings.

  • Document findings in a clear, structured and actionable form.

  • Perform effective follow-up to verify corrective actions.

After completing this track, participants will be able to:

  • Explain the purpose and scope of ISO/IEC 42001 and its implications for AI governance.

  • Plan internal AIMS audits based on AI lifecycle phases, system criticality and risk.

  • Audit governance, leadership and responsibilities specific to AI systems.

  • Evaluate data governance, model documentation, testing, validation and deployment processes.

  • Assess monitoring mechanisms, incident handling and change control for AI systems.

  • Verify transparency, explainability, human oversight and other trustworthy-AI requirements.

  • Gather and evaluate objective evidence in technical and non-technical settings.

  • Document findings in a clear, structured and actionable form.

  • Perform effective follow-up to verify corrective actions.

Track ID:

HAT-A42001

Duration:

~12 days

Available in:

English

List price:

CHF 10,000

Excl. VAT. VAT may apply depending on customer location and status.

Modular architecture

Two credentials with one track

Halderstone Professional Certificate in Management System Auditing

The Halderstone Professional Diploma in Management Systems Auditing certifies a strong, cross-standard foundation in management system auditing. It focuses on audit principles, methods and judgement that apply consistently across standards such as ISO 9001, ISO 14001, ISO/IEC 27001, ISO 22301 and ISO/IEC 42001.

The diploma demonstrates that you can plan and conduct audits, gather and evaluate objective evidence, assess system effectiveness and formulate clear, defensible audit conclusions. It confirms your ability to audit management systems beyond checklists, with a focus on risk, performance and continual improvement.

This core diploma is shared across all Halderstone Auditor tracks and provides the foundation for adding additional audit specialisations with minimal additional effort.

The Halderstone Professional Diploma in Management Systems Auditing certifies a strong, cross-standard foundation in management system auditing. It focuses on audit principles, methods and judgement that apply consistently across standards such as ISO 9001, ISO 14001, ISO/IEC 27001, ISO 22301 and ISO/IEC 42001.

The diploma demonstrates that you can plan and conduct audits, gather and evaluate objective evidence, assess system effectiveness and formulate clear, defensible audit conclusions. It confirms your ability to audit management systems beyond checklists, with a focus on risk, performance and continual improvement.

This core diploma is shared across all Halderstone Auditor tracks and provides the foundation for adding additional audit specialisations with minimal additional effort.

Halderstone Specialist Certificate in ISO/IEC 42001 Internal Auditing

This specialisation focuses on auditing AI Management Systems under ISO/IEC 42001. Participants learn to evaluate how organisations govern AI, manage AI risks, implement lifecycle controls, and ensure safe, reliable and transparent AI operation.

AI auditing requires an understanding of:

  • data quality and provenance risks,

  • model robustness, performance and drift,

  • transparency, documentation and explainability obligations,

  • misuse, unintended consequences and emergent behaviour risks,

  • supply chain dependencies (e.g., third-party models),

  • monitoring and incident response requirements.

This track teaches auditors how to assess these aspects pragmatically, using evidence-based techniques adapted to the realities of AI development and deployment.

This specialisation focuses on auditing AI Management Systems under ISO/IEC 42001. Participants learn to evaluate how organisations govern AI, manage AI risks, implement lifecycle controls, and ensure safe, reliable and transparent AI operation.

AI auditing requires an understanding of:

  • data quality and provenance risks,

  • model robustness, performance and drift,

  • transparency, documentation and explainability obligations,

  • misuse, unintended consequences and emergent behaviour risks,

  • supply chain dependencies (e.g., third-party models),

  • monitoring and incident response requirements.

This track teaches auditors how to assess these aspects pragmatically, using evidence-based techniques adapted to the realities of AI development and deployment.

Modular architecture

Module recognition across tracks

Previously completed modules are recognized, avoiding duplication when pursuing additional Halderstone tracks.

Core Modules

Specialization Modules

Capstone Project

Final Exam

Core Modules

Specialization Modules

Capstone Project

Final Exam

Core Modules

Specialization Modules

Capstone Project

Final Exam

Core auditing modules are shared with other Halderstone auditor programmes. Participants can expand into ISO 9001, ISO/IEC 27001 or ISO 14001 internal auditing by completing only the respective domain modules—without repeating foundational auditor training. This makes it easy to build auditing competence across integrated management systems.

Track composition
Track composition
Track composition

Full curriculum

Core modules

Shared foundations common to all tracks

System Foundations

Understand organisational context, stakeholders, and system boundaries

7 h

System Foundations

Understand organisational context, stakeholders, and system boundaries

7 h

System Foundations

Understand organisational context, stakeholders, and system boundaries

7 h

Risk Management Foundations

Learn the fundamentals of identifying, evaluating, treating, and monitoring risks and opportunities across management systems.

7 h

Risk Management Foundations

Learn the fundamentals of identifying, evaluating, treating, and monitoring risks and opportunities across management systems.

7 h

Risk Management Foundations

Learn the fundamentals of identifying, evaluating, treating, and monitoring risks and opportunities across management systems.

7 h

Objectives & Performance Foundations

Learn the fundamentals of objective setting, KPI definition, and KPI governance for management systems

7 h

Objectives & Performance Foundations

Learn the fundamentals of objective setting, KPI definition, and KPI governance for management systems

7 h

Objectives & Performance Foundations

Learn the fundamentals of objective setting, KPI definition, and KPI governance for management systems

7 h

Management Review Foundations

Learn the fundamentals of planning, conducting, and documenting management reviews using integrated inputs and decision-focused outputs

7 h

Management Review Foundations

Learn the fundamentals of planning, conducting, and documenting management reviews using integrated inputs and decision-focused outputs

7 h

Management Review Foundations

Learn the fundamentals of planning, conducting, and documenting management reviews using integrated inputs and decision-focused outputs

7 h

Improvement Management

Understand corrective actions, root cause analysis, action tracking, and effectiveness verification in management systems

7 h

Improvement Management

Understand corrective actions, root cause analysis, action tracking, and effectiveness verification in management systems

7 h

Improvement Management

Understand corrective actions, root cause analysis, action tracking, and effectiveness verification in management systems

7 h

Audit Foundations

Core audit mindset, evidence logic, materiality-based focus, and audit test plan design.

7 h

Audit Foundations

Core audit mindset, evidence logic, materiality-based focus, and audit test plan design.

7 h

Audit Foundations

Core audit mindset, evidence logic, materiality-based focus, and audit test plan design.

7 h

Audit Execution: Communication & Interviewing

Interview planning, questioning, and conversation control for reliable audit evidence

7 h

Audit Execution: Communication & Interviewing

Interview planning, questioning, and conversation control for reliable audit evidence

7 h

Audit Execution: Communication & Interviewing

Interview planning, questioning, and conversation control for reliable audit evidence

7 h

Audit Reporting & Follow-up

Understand how to write evidence-based findings, structure audit reports, and follow up agreed actions to verified closure.

7 h

Audit Reporting & Follow-up

Understand how to write evidence-based findings, structure audit reports, and follow up agreed actions to verified closure.

7 h

Audit Reporting & Follow-up

Understand how to write evidence-based findings, structure audit reports, and follow up agreed actions to verified closure.

7 h

Audit Programme Management

Understand audit programme governance, risk-informed audit portfolios, supplier audit integration, resourcing, and programme-level reporting

7 h

Audit Programme Management

Understand audit programme governance, risk-informed audit portfolios, supplier audit integration, resourcing, and programme-level reporting

7 h

Audit Programme Management

Understand audit programme governance, risk-informed audit portfolios, supplier audit integration, resourcing, and programme-level reporting

7 h

Supplier Audit Execution

Plan and conduct supplier audits using contract-based criteria, evidence targets, and disciplined audit documentation.

7 h

Supplier Audit Execution

Plan and conduct supplier audits using contract-based criteria, evidence targets, and disciplined audit documentation.

7 h

Supplier Audit Execution

Plan and conduct supplier audits using contract-based criteria, evidence targets, and disciplined audit documentation.

7 h

Third-party Auditing Context

Understand the accreditation–certification ecosystem, certification audit lifecycle, impartiality boundaries, and decision interfaces.

7 h

Third-party Auditing Context

Understand the accreditation–certification ecosystem, certification audit lifecycle, impartiality boundaries, and decision interfaces.

7 h

Third-party Auditing Context

Understand the accreditation–certification ecosystem, certification audit lifecycle, impartiality boundaries, and decision interfaces.

7 h

Specialization modules

Role-specific modules that deepen your expertise in ISO/IEC 42001 Internal Auditing

AI Fundamentals 1

Learn core AI concepts, AI system types, and the technical building blocks that underpin modern AI-enabled products and services

7 h

AI Fundamentals 1

Learn core AI concepts, AI system types, and the technical building blocks that underpin modern AI-enabled products and services

7 h

AI Fundamentals 1

Learn core AI concepts, AI system types, and the technical building blocks that underpin modern AI-enabled products and services

7 h

AI Fundamentals 2

Understand AI uncertainty, limitations, and common failure modes across predictive and generative AI systems

7 h

AI Fundamentals 2

Understand AI uncertainty, limitations, and common failure modes across predictive and generative AI systems

7 h

AI Fundamentals 2

Understand AI uncertainty, limitations, and common failure modes across predictive and generative AI systems

7 h

AI System Scope, Lifecycle & Inventory

Define AI system scope, lifecycle boundaries, and a maintained AI system inventory aligned to ISO/IEC 42001

7 h

AI System Scope, Lifecycle & Inventory

Define AI system scope, lifecycle boundaries, and a maintained AI system inventory aligned to ISO/IEC 42001

7 h

AI System Scope, Lifecycle & Inventory

Define AI system scope, lifecycle boundaries, and a maintained AI system inventory aligned to ISO/IEC 42001

7 h

AI Risk, Impact & Harm Assessment

Understand how to assess AI impacts and harms, document results, and connect them to risk decisions in an AI management system

7 h

AI Risk, Impact & Harm Assessment

Understand how to assess AI impacts and harms, document results, and connect them to risk decisions in an AI management system

7 h

AI Risk, Impact & Harm Assessment

Understand how to assess AI impacts and harms, document results, and connect them to risk decisions in an AI management system

7 h

Operational Control of AI Systems

Understand how to define, implement, and maintain operational controls for AI systems across deployment, change, and monitoring

7 h

Operational Control of AI Systems

Understand how to define, implement, and maintain operational controls for AI systems across deployment, change, and monitoring

7 h

Operational Control of AI Systems

Understand how to define, implement, and maintain operational controls for AI systems across deployment, change, and monitoring

7 h

Capstone project and final exam

Practical and theoretical demonstration of your acquired competence in ISO/IEC 42001 Internal Auditing

The programme concludes with a written exam covering ISO/IEC 42001 requirements and AI-specific auditing principles, and a practical audit assignment in which participants audit selected AIMS elements or lifecycle phases. Evidence evaluation, classification of findings and improvement recommendations form the core of the exercise.

Successful participants receive the Halderstone Professional Certificate in Internal Auditing and the Halderstone Specialist Certificate in ISO/IEC 42001 Internal Auditing.

Office scene with people standing, walking and sitting

Ready to achieve mastery?

Bring ISO requirements into everyday practice to reduce avoidable issues and strengthen the trust of your customers and stakeholders.

Office scene with people standing, walking and sitting

Ready to achieve mastery?

Bring ISO requirements into everyday practice to reduce avoidable issues and strengthen the trust of your customers and stakeholders.

Office scene with people standing, walking and sitting

Ready to achieve mastery?

Bring ISO requirements into everyday practice to reduce avoidable issues and strengthen the trust of your customers and stakeholders.