EU AI Act · ISO/IEC 42001 · NIST AI RMF
Know exactly where your organization stands on AI governance, and what to fix next.
Is your organization compliant with the EU AI Act, ISO/IEC 42001 and the NIST AI RMF? Do you know which control or article you have a gap in, and what it takes to fix it? If those are the questions on your mind, this is the assessment to take.
Questions every AI-using organization is asking
- ?Are we compliant with the EU AI Act, ISO/IEC 42001 and the NIST AI RMF?
- ?Which specific control or article do we have a gap in?
- ?What exactly should we do to close that gap?
If these are the questions on your mind, this assessment answers them across all three frameworks, down to the individual control.
Three frameworks, one assessment
EU AI Act
Risk-tiered obligations for AI systems on the EU market
ISO/IEC 42001
The AI management system standard
NIST AI RMF
Govern, Map, Measure and Manage AI risk
How it works
- Step 1
Assess
Answer a guided questionnaire mapped across all three frameworks. Progress saves as you go.
- Step 2
Report
Get a compliance report scoring what you meet, where the gaps are, and your risk areas.
- Step 3
Remediate
Turn gaps into a prioritized roadmap your team can act on, ordered by risk and effort.
Why teams use the portal
One assessment, three frameworks
An organization-level assessment, cross-mapped so a single pass shows your governance standing against the EU AI Act, ISO 42001 and NIST AI RMF.
Compliance-first report
Clear view of met requirements, gaps and risk areas, not just a score.
Prioritized roadmap
Remediation steps ordered by risk and effort so you know what to do first.
Editable templates
Tune questions, thresholds and mappings to match your organization.
Multi-tenant & private
Assessments and reports are isolated per organization behind authentication.
Fast time-to-value
Most teams complete an initial assessment in under an hour.
Frequently asked questions
- What does the AI Governance Portal do?
- It runs a structured, organization-level gap analysis of your AI governance against major frameworks, then produces a compliance report and a prioritized remediation roadmap so you know exactly what to fix and in what order. It assesses your organization's governance posture as a whole — not individual AI systems or use cases.
- Which frameworks does it cover?
- The EU AI Act, ISO/IEC 42001 (the AI management system standard) and the NIST AI Risk Management Framework. Questions are mapped across all three so a single assessment shows where you stand against each.
- Do I need ISO/IEC 42001 if I'm already complying with the EU AI Act?
- They serve different purposes. The EU AI Act is binding law for AI systems placed on the EU market, while ISO/IEC 42001 is a voluntary management-system standard you can certify against. Many organizations use ISO 42001 as the operating system that helps them demonstrate EU AI Act compliance, but one does not replace the other.
- How long does a gap analysis take?
- Most teams complete an initial assessment in under an hour. The portal walks you through the questions, saves progress as you go, and generates the report immediately when you finish.
- Who is the portal for?
- Compliance and risk leads, CISOs, legal/privacy teams, and AI/ML engineering leads who need to understand and close governance gaps across the EU AI Act, ISO/IEC 42001 and the NIST AI RMF.
- Where is my assessment data stored and is it private?
- Your assessments and reports are scoped to your organization and are not shared with other tenants. Access requires authentication, and data is isolated per organization.
- How is the compliance report generated?
- Your answers are scored against each framework's controls. The report highlights met requirements, gaps, and risk areas, and turns the gaps into a prioritized remediation roadmap you can act on.
See where your organization stands on AI governance.
Start a gap analysis and get your compliance report and remediation roadmap.