International AI Standards: ISO, OECD, and UN
International standards bodies — ISO, IEC, OECD, and UN agencies — are the primary source of AI governance frameworks that apply across national borders without binding legal force. ISO/IEC 42001:2023 is the first international standard for AI management systems, providing an auditable framework organizations can certify against. ISO/IEC 23894 covers AI risk management. ISO/IEC 24028 addresses AI trustworthiness and bias. Together, these form a coherent suite for organizations that need a governance posture independent of any single jurisdiction's law.
The OECD AI Principles, originally adopted in 2019 and updated in 2024, are the most influential normative framework in global AI policy. They are integrated into the national AI strategies of more than 40 countries and have directly informed both the EU AI Act and the NIST AI RMF. The OECD's AI Incidents Monitor and AI Policy Observatory provide ongoing data that regulators and standards bodies use to track AI risk in practice.
ISO 42001 certification is increasingly valuable for organizations managing compliance across multiple jurisdictions simultaneously. The standard maps well to both the EU AI Act's governance requirements and the NIST AI RMF's Govern function, allowing a single certification effort to support compliance documentation across markets. For multinationals or organizations in early-stage regulatory environments, ISO 42001 alignment provides a defensible baseline that regulators recognize.
Key themes
- 1.ISO/IEC 42001:2023 — the primary certifiable AI management standard
- 2.ISO/IEC 23894 for AI risk management
- 3.OECD AI Principles as cross-border normative baseline
- 4.Framework interoperability with EU AI Act and NIST AI RMF
Regulatory frameworks and guidance(9)
Five Eyes Guidance on the Careful Adoption of Agentic AI Services
This joint Five Eyes advisory addresses enterprises and public bodies deploying autonomous AI agents. It covers agents taking independent actions, accessing systems, or interacting with other agents. The guidance calls for low-risk tasks, minimum necessary access, and integration into existing security governance.
ISO/IEC 42001:2023 - Artificial Intelligence Management System
ISO and IEC published ISO/IEC 42001:2023 in December 2023 as the first international AI management system standard. It sets requirements for establishing, maintaining, and improving an AI Management System. Organizations developing or using AI products and services can seek independent certification.
ISO/IEC 23894 AI Risk Management
ISO/IEC 23894 explains how to integrate AI risks into enterprise risk management. It adapts ISO 31000 risk terms and processes to traits specific to AI. These include unexpected behavior, reliance on data, hard-to-explain decisions, and complex effects on people and organizations.
ISO/IEC 24028 AI Trustworthiness
ISO/IEC 24028:2020 explains AI trustworthiness concepts, characteristics, and threats. It provides technical and organizational approaches for assessing and improving trustworthiness throughout an AI system's life.
ISO/IEC 24029 Robustness of Neural Networks
ISO/IEC 24029 covers mathematical proof methods and practical assessments of artificial neural network robustness (how reliably a network performs when its inputs are unusual or manipulated). Its parts address deliberately misleading inputs, shifts in real-world data, and other failure modes relevant to trustworthy deployment.
OECD AI Principles
The OECD AI Principles were the first intergovernmental AI standard. They set five values-based principles and five government recommendations supporting trustworthy AI, human rights, and democratic values.
OECD Report: Governing with Artificial Intelligence
This OECD report examines government AI use across member and partner countries. Public-service improvements account for 57% of documented applications, while 45% support administrative decisions. Identified risks include biased data used to train systems, limited transparency, and overreliance on automated outputs.
UN Independent International Scientific Panel on AI: Preliminary Report on Agentic AI Governance
The UN Independent International Scientific Panel on AI issued preliminary governance expectations for AI agents taking consequential actions. The report covers autonomous and semi-autonomous deployments. It calls for documented intervention thresholds, standardized incident registers, audit trails, and verifiable provenance (origin records) for decision outputs.
UNESCO Recommendation on the Ethics of Artificial Intelligence: 2026 Implementation Tools Update
UNESCO has released a new set of implementation tools extending its 2021 Recommendation on the Ethics of Artificial Intelligence (AI), announced at the Global Forum on the Ethics of AI held in Riyadh, Saudi Arabia. The tools are designed to help governments, enterprises, and AI deployers put the Recommendation's ethical principles into operational practice. Organizations using or developing AI systems are the primary audience, with particular emphasis on ethics review processes, responsible AI documentation, and oversight controls for AI model deployment.
