Assurance
Evidence-driven assessment, conformance and continuous assurance for GAISSF implementation.
Assurance model
GAISSF assurance evaluates whether applicable controls are appropriately designed, implemented, operating and supported by sufficient evidence within a defined scope and period.
Evidence
Evidence principles, integrity, traceability, sufficiency and maintenance.
Review evidence guidance →Assessment methodology
Scoping, readiness, testing, findings, remediation and assessment outcomes.
Review assessment methodology →Conformance
Conformance profiles, applicability, claims discipline and limitations.
Review conformance →Crosswalks
Public mappings to external standards, regulations and knowledge bases.
Browse crosswalks →What drives assurance scope
Assessment scope is not a preference; it follows from the system under review. Three drivers determine which controls apply and which evidence an assessor will request: the AI system's capability and exposure (autonomy, external facing or internal, data and tool access, modality), its architecture and data flow, and the conformance tier the organization is pursuing (Foundational Attestation, Operational Certification or Optimized Certification). See Scoping your first assessment for the questions to resolve before an assessor is engaged.
Certification status
Questions
Common assurance, evidence and certification questions are answered in the Frequently Asked Questions.