The customer receives a structured audit report with a rating per criterion, identified process and governance gaps, and recommendations for improvement and risk mitigation. For a Deep Audit, the report also includes evidence-based findings, a gap analysis and an action plan. The audit assesses whether the organization’s processes and management structures are suitable for meeting applicable requirements. It does not assess the quality of individual datasets or the technical properties of specific AI models and does not perform the organization’s risk management activities on its behalf.
The service is available as an Assessment or as a Deep Audit. In the Assessment, the customer completes a structured questionnaire and we review the provided information for plausibility, completeness and consistency. This is suitable for an initial assessment, internal preparation or conformity planning and usually takes 2–4 weeks. In the Deep Audit, we receive access to the model via API or model artifact and perform independent technical tests. This is suitable for high-risk AI systems, external documentation or evidence towards customers, partners or authorities and usually takes 6–12 weeks.
Open for anyone