Comply · International standards
ISO/IEC 42006 — AI management system audit bodies
Requirements for AI management system auditors.
ISO/IEC 42006 sets requirements for bodies that audit and certify AI management systems, establishing the competence and process rules that make ISO/IEC 42001 certification credible and consistent across certification bodies.
Who it applies to
Certification and audit bodies; relevant to organizations seeking credible ISO/IEC 42001 certification.
Key obligations
- Meet competence requirements for AIMS auditors
- Follow consistent certification processes
- Ensure impartiality and rigor of audits
How Maetra maps agents to ISO/IEC 42006
Maetra's structured, tamper-evident evidence makes AIMS audits more efficient for both the organization and its certification body. (Licensed standard — activated on demand.)
In practice, Maetra:
- Scans and fingerprints each agent. Discover reads the agent’s code — its tools, data access and sensitivity, actions, model, and environment — into an evidence-backed profile tied to the exact file and commit.
- Decides what applies. That profile determines whether ISO/IEC 42006 is in scope for the agent and which of its requirements apply.
- Auto-detects controls and surfaces gaps. Controls your code already satisfies are detected automatically from the scan; the rest become a clear list of gaps, each tied to the requirement and the evidence it still needs.
- Proves it and keeps it current. Close gaps with linked evidence or generated documents — reused across every framework the same control supports — and Maetra re-checks on each rescan and flags evidence that has gone stale.
Related frameworks
Prove ISO/IEC 42006 compliance with Maetra
Classify your AI agents once and Maetra maps them to ISO/IEC 42006 and every other framework it supports — generating the evidence and documentation, tracking gaps and deadlines, and sealing every decision in an immutable audit trail.