AIEF v0.2.5 · Crosswalk registry 1.0.0

AIEF Framework Crosswalks

AIEF defines execution-evidence controls. External frameworks define broader regulatory, governance, risk or assurance requirements. AIEF crosswalks show where execution-integrity capabilities may support those external requirements without claiming equivalence or compliance.

Each crosswalk is authored against a named authoritative source edition and versioned independently of the AIEF assessment itself. Mappings never change what AIEF conformance means, and selecting a framework never changes an AIEF result.

EU AI Act

A horizontal EU regulation establishing risk-based obligations for providers and deployers of AI systems placed on the Union market.

Source version
Regulation (EU) 2024/1689 (OJ L, 12 July 2024)
Crosswalk version
eu-ai-act@1.0.0
Mapped AIEF controls
8
Last reviewed
2026-08-13
View crosswalk

ISO/IEC 42001

A management-system standard specifying requirements for establishing, implementing, maintaining and improving an AI management system (AIMS).

Source version
ISO/IEC 42001:2023
Crosswalk version
iso-iec-42001@1.0.0
Mapped AIEF controls
7
Last reviewed
2026-08-13
View crosswalk

NIST AI Risk Management Framework

A voluntary framework organised around four functions — Govern, Map, Measure, Manage — for managing risks of AI systems.

Source version
NIST AI 100-1, AI RMF 1.0 (January 2023)
Crosswalk version
nist-ai-rmf@1.0.0
Mapped AIEF controls
8
Last reviewed
2026-08-13
View crosswalk

SOC 2 / Enterprise Assurance

An enterprise assurance context, not an AI regulation or AI governance framework. Service organisations are examined against the Trust Services Criteria for security, availability, processing integrity, confidentiality and privacy.

Source version
AICPA Trust Services Criteria (2017, including 2022 revised points of focus)
Crosswalk version
soc2-enterprise-assurance@1.0.0
Mapped AIEF controls
6
Last reviewed
2026-08-13
View crosswalk

What a crosswalk is not

A crosswalk is an execution-evidence relevance map. It is not a compliance mapping, an audit opinion, a certification route or legal advice. AIEF readiness does not establish compliance with any external regulation or standard, and external requirements contain obligations well outside AIEF's execution-integrity scope.

Run an AIEF assessment