Does ISO/IEC 38507 Governance of AI require Human Oversight?

OECD • voluntary

Yes — 1 provision

Requirements at a glance

This regulation imposes 6 specific requirements for Human Oversight across 1 provision:

Board-Level AI Governance #

Obligation:
Human Oversight
enforcing
Effective:
Apr 1, 2022
Risk tier:
all
Scope:
deployers
cross-domain
ISO/IEC 38507 is the only international standard specifically addressed to governing bodies (boards, executives) rather than technical teams — directing boards to evaluate, direct, and monitor AI use. As regulators increasingly hold organisations accountable at the board level for AI governance, this standard defines what board-level AI oversight looks like.

Requirements

RequirementDetails
Governing body responsibilityBoards and governing bodies must evaluate, direct, and monitor the organisation's use of AI
Effective useEnsure AI is used effectively to fulfil organisational objectives
Efficient useEnsure AI use delivers value proportionate to resources and risks
Acceptable useEnsure AI use complies with applicable laws, regulations, and ethical expectations
AI governance frameworkEstablish governance structures for oversight of AI across the organisation
Accountability assignmentAssign clear accountability for AI-related decisions and outcomes at executive level

Penalties

ViolationFine
Non-complianceVoluntary — no binding enforcement mechanism
View full regulation View obligation Obligation matrix