Decision Standards Institute
Why DSI 001 alongside existing frameworks
DSI 001 is not a replacement for ISO 42001, SOC 2, or NIST AI RMF. It adds an independent, deployment-level governance classification those instruments are not designed to produce.
Use each instrument for what it does best
| Instrument | Best use | What it does not provide | Where DSI 001 adds value |
|---|---|---|---|
| ISO/IEC 42001 | Organisation-level AI management controls and governance system assurance. | An independent classification of one specific deployment. | Deployment-level read with dimensional profile and portable GBI result. |
| SOC 2 | Control operating effectiveness over time. | Autonomous decision-governance classification for a defined system. | System-level governance read for reliance decisions by boards and counterparties. |
| NIST AI RMF | Risk management structure and governance program design. | Third-party classification outcome and evidence-tiered score. | Independent assessed classification with clear thresholds and validity windows. |
| Internal self-assessment | Internal preparation and gap discovery. | Authentic external result for reliance by insurers, buyers, investors, or regulators. | Authentic external result issued by an assessor authorised under the DSI 001 scheme. |
What changes for decision-makers
Boards
Move from policy declarations to an independent system-level governance read relevant to oversight duties.
Insurers
Price risk using a comparable classification instead of relying only on bespoke submissions.
Procurement
Evaluate embedded AI vendor governance at deployment level, not only at organisation policy level.
Investors
Use a comparable governance classification in diligence and post-deal monitoring.