
AI Governance Policy Pack
10 editable AI policies aligned to the EU AI Act and NIST AI RMF, plus an AI risk register — govern workplace AI before regulators and clients ask.
New to AI Governance (EU AI Act + NIST AI RMF)? Read our AI Governance (EU AI Act + NIST AI RMF) guide →
What's inside — 10 documents + 2 workbooks
- AI Governance Policy (.docx)
- AI Acceptable Use Policy (.docx)
- AI Risk Assessment Procedure (.docx)
- AI Vendor and Tool Assessment Procedure (.docx)
- AI Data Governance and Privacy Policy (.docx)
- AI Transparency and Disclosure Standard (.docx)
- Human Oversight and Accountability Standard (.docx)
- EU AI Act Readiness Checklist (.docx)
- AI Incident and Model Failure Response Procedure (.docx)
- AI System Inventory and Classification Standard (.docx)
Excel workbooks
- Risk Register (Excel)
- Audit Evidence Checklist (Excel)

See the real content before you buy
We publish genuine excerpts — not marketing mockups. Read the opening sections of the AI Governance Policy exactly as you'll receive it:
Read the free previewFrequently asked questions
- Is this AI governance pack aligned to the EU AI Act and NIST AI RMF?
- Yes. The policies reflect the EU AI Act deployer obligations — including the Article 4 AI-literacy requirement — and the GOVERN function of the NIST AI Risk Management Framework, with an AI risk register and a system inventory standard.
- We only use third-party AI tools like ChatGPT — do we still need AI policies?
- Yes. Most obligations, and the AI questions now appearing in client security questionnaires, apply to organizations that deploy or use AI tools, not only those that build models. This pack governs acceptable use, approval, human oversight and disclosure.
- How is this different from the ISO 42001 toolkit?
- This pack is a focused, fast-to-deploy set of AI policies. The ISO 42001 toolkit is a full AI Management System aligned to ISO/IEC 42001:2023 with an Annex A Statement of Applicability, for organizations pursuing that certification.
- What format are the files and how are they delivered?
- Editable Microsoft Word (.docx) and Excel (.xlsx) files, delivered as an instant download immediately after checkout. Organization-specific values are amber [bracketed placeholders] you replace with find-and-replace.
- What licence do I get?
- A single-organization licence. If you are a consultant or MSP intending to reuse the documents across multiple clients, contact us first for a fair multi-client arrangement.
