Online, nationwide and international AI compliance firms
Advisors and certification bodies that serve clients remotely, including firms outside the US that specialize in the EU AI Act.
Slalom
Slalom's AI consulting spans six practice areas including 'Strategic Alignment & Governance' and 'Trust & Security,' covering AI governance model design, guardrails, and compliance monitoring for client AI systems. The firm also partners with AI governance vendors such as Credo AI on joint delivery.
TechGDPR
Berlin-based GDPR and data governance consultancy serving tech-centric organizations since 2018 (fintech, blockchain, health-tech, SaaS), offering DPO-as-a-service and a dedicated 'Artificial Intelligence Ethics and Compliance' service.
Troutman Pepper Locke
Troutman Pepper Locke (formed via 2026 mergers including Pepper Hamilton and Locke Lord) runs a dedicated AI industry practice helping clients manage business and legal risk from AI adoption, spanning privacy, cybersecurity, IP, regulatory compliance, and litigation, supplemented by in-house GenAI tools.
Vanta
Compliance automation platform whose AI governance product helps companies inventory and govern AI tools and agents as they are adopted, alongside framework support that includes ISO 42001 and the NIST AI RMF.
Wavestone
Wavestone, a Paris-headquartered consultancy, runs a Data Governance & AI Trust practice that helps enterprises set target operating models for AI, build ethics frameworks addressing bias and transparency, and align AI policies with regulations such as the EU AI Act and GDPR. Its AI teams operate across the US, UK, France and Switzerland supporting multinational clients.
West Monroe
West Monroe's AI Strategy & Governance service helps clients align AI initiatives to business goals and put governance structures, policies and controls in place, supported by its Intellio Policy tool for tracking evolving AI legislation. Consultants stay engaged after design to ensure governance plans hold up operationally.
Zendata
Zendata pairs an AI governance and risk-management platform with advisory consulting, offering a 'Trustworthy AI Scorecard,' continuous monitoring and stakeholder reporting alongside data-privacy guidance. The site also references dedicated AI advisory services for organizations building out governance programs.
Preamble
AI security company providing independent AI security assessments, red teaming, patent-backed prompt-injection defense, and fractional AI security leadership for organizations deploying AI agents.
Fiddler AI
AI observability platform used to monitor, explain and evaluate models and LLM applications in production, marketed as the evidence layer for responsible AI and AI governance programs.
CBIZ Pivot Point Security
Cybersecurity consultancy offering ISO 42001 gap assessment and implementation guidance, mapping AI governance work to the EU AI Act and the NIST AI Risk Management Framework as well as ISO 27001 and ISO 27701.
Deloitte & Touche LLP
Big Four professional services firm whose Deloitte & Touche LLP practice advises organizations on NYC Local Law 144 bias-audit preparedness, AEDT governance, model development/testing review, and ongoing monitoring of algorithmic decision systems.
LatticeFlow AI
Swiss AI risk platform, developed with ETH Zurich and INSAIT, that provides technical AI Assessments and the open COMPL-AI framework used to evaluate generative AI models against EU AI Act requirements and other governance benchmarks.
Modulos
Zurich-based AI governance platform (Modulos AG) whose agents discover AI systems, check controls and keep risk assessments current against frameworks including the EU AI Act, ISO/IEC 42001, NIST AI RMF and NYC Local Law 144.
Optro (formerly FairNow)
Enterprise AI governance platform, rebranded from FairNow and used by over half of the Fortune 500, that inventories AI and agentic systems and automates compliance with 25+ frameworks including the EU AI Act and ISO 42001.
Saidot
AI governance platform built on a knowledge graph that connects an organization's AI inventory to risks, policies, models and controls, helping teams govern AI systems and agents against frameworks such as the EU AI Act.
Drata
Compliance automation platform that supports AI-related frameworks including the NIST AI Risk Management Framework and ISO 42001, automating control monitoring and audit evidence collection.
BD Emerson
Consulting firm offering ISO 42001 advisory from initial assessment through certification and ongoing maintenance, as part of a wider compliance, privacy and AI governance practice.
Relyance AI
Platform that maps how data actually moves through code and systems and uses that map to govern privacy and AI risk, rather than relying on questionnaires and manual inventories.
GTISEC
Consultancy that helps organizations build an auditable AI management system to ISO/IEC 42001:2023, covering model risk management and Annex A controls through to certification.
Secureframe
Compliance automation platform that helps organizations build and maintain an AI management system to ISO/IEC 42001, including policy setup and ongoing evidence collection.
Diligent
Governance software company whose AI Risk Essentials product sits in its risk portfolio alongside enterprise risk, IT and cyber risk and third-party risk management.
Kiwa
International testing, inspection and certification group that offers ISO/IEC 42001 certification for AI management systems through its business assurance division.
Arthur
Platform for monitoring and evaluating production AI systems, positioned to support AI governance work including EU AI Act obligations.