Guides · Explainers · Career
Learn how AI governance is actually done.
Written for the person who has to produce the deliverable: the risk assessment, the inventory, the board memo. Every guide ends with something you can use.
PathStart here
Level 1 · Foundations
What AI governance is
The vocabulary, the frameworks, and how AI risk differs from the IT risk you already manage.
Level 2 · PractitionerBuild the program
Inventories, intake, risk assessment, vendor review, and the committee that keeps it alive.
Level 3 · RegulatedProve it to a regulator
EU AI Act obligations, ISO/IEC 42001 evidence, and the documentation an auditor will ask for.
-

EU AI Act: Provider vs Deployer Obligations Explained
-

Are We Using Automated Decision making Technology (ADMT)? A 10-Question Test for California Employers
-

ISO 42001 certification
-

EU AI Act: what applies to you and when.
-

Prove It to a Regulator: The Evidence an AI Audit
-

What AI Governance Actually Is?(And How It Differs From the Risk You Already Manage)
-

How to Build an AI System Inventory
-

How to Conduct an AI Security Risk Assessment: A Practical Guide for Organizations
-

What Can We Learn from OpenAI, Anthropic, and Google’s Approach to AI Governance?
Skip the blank page
The templates behind these guides.
The guides show the method. The document set gives you the files — policies, registers, and assessments, tailored to your organization.
