AIRiskAware
AI Governance Glossary
Governance Practice

What Is ISO 31000?

ISO 31000 is the international standard providing principles and general guidelines for risk management across any type of organisation or risk.

Definition

ISO 31000 โ€” the international standard providing principles and general guidelines for risk management across any type of organisation or risk.

ISO 31000:2018 is the foundational, technology-neutral risk management standard that most enterprise risk frameworks build on. It is not AI-specific, but it underpins AI-specific standards such as ISO/IEC 23894 (AI risk management), so organisations with mature ISO 31000-based risk processes have a natural backbone onto which AI risk can be integrated.

Source: ISO 31000:2018

Plain-language explanation

ISO 31000:2018 is the foundational, technology-neutral risk management standard that most enterprise risk frameworks build on. It is not AI-specific, but it underpins AI-specific standards such as ISO/IEC 23894 (AI risk management), so organisations with mature ISO 31000-based risk processes have a natural backbone onto which AI risk can be integrated.

Primary source: ISO 31000:2018

Related terms

ISO/IEC 42001 ISO/IEC 23894 AI Risk Management Model Risk Management

See where you stand on AI governance

Take the free 7-question maturity assessment and get a personalised action plan.

Free assessment โ€” 3 minutes โ†’