EU AI Regulatory Framework · Readiness Diagnostic

Is your organisation
EU AI-ready?

35 questions across 7 domains. Scored against EU AI Act 2024, GDPR Art. 22, ePrivacy Directive 2002/58/EC, ISO/IEC 42001:2023, and NIS2 — with sector benchmarks in EUR.

35
Questions
7
Domains
6
Frameworks
5 min
To complete
SBA 8(a)
Sole Source Eligible
EDWOSB
Women-Owned SB
Azure
Solutions Architect
CyberAB
Registered Practitioner
ISO 27001
Aligned
CAGE 7DBB9
Active Contractor
Trusted by teams at: Microsoft · IBM · EY · PwC · McKesson · GE Power · bp · Eli Lilly · NTT Data · Hitachi
EU Regulatory Landscape

Every question maps to a statute

No proprietary frameworks. Every gap finding cites the exact European regulation your organisation must address.

AI Regulation · Enforced Now
EU AI Act 2024
Mandatory AI disclosure before interaction, prohibited practices banned since Feb 2025, high-risk system classification, conformity assessment, CE marking. Full enforcement August 2026.
EU AI Act Art. 5, 6, 13, 50 • Annex III • Recital 58
Data Protection · Enforced
GDPR Art. 22 + Art. 5
Automated decision-making rights, human review obligation, right to explanation and contest. Applies to any AI influencing decisions about individuals. Penalties up to €20M or 4% global turnover.
GDPR Art. 5, 13, 22, 25, 35 • Recital 71 • ICO/CNIL guidance
Electronic Communications · Enforced
ePrivacy Directive 2002/58/EC
Explicit informed consent before recording. Strict opt-in for automated marketing calls. Separate consent for voice biometric processing. Recording without active consent is illegal in most EU member states.
ePrivacy Dir. Art. 5(1), 13 • GDPR Art. 9 • Member state implementations
AI Management System · International
ISO/IEC 42001:2023
First certifiable AI management system standard. Primary conformity mechanism referenced by EU AI Act notified bodies. EU enterprise procurement increasingly requires ISO 42001 certification or documented equivalence.
ISO/IEC 42001 §4.2 §5.2 §6.1.2 §8.2 §8.4 §9.1 §10.2
AI Risk Management · International
NIST AI RMF 2.0 (Mar 2025)
March 2025 update added model provenance, third-party AI supply chain risk, and deployer responsibility. Deploying organisations bear full liability for third-party AI components regardless of vendor contracts.
NIST AI 100-1 • AI RMF 2.0 Mar 2025 • GOVERN 1.5 • MEASURE 2.2
Network Security · Enforced
NIS2 Directive 2022/2555
AI-related incident reporting for essential and important entities. 24-hour notification to national CSIRT. Covers energy, transport, banking, health, digital infrastructure. Board-level accountability required.
NIS2 Art. 20, 21, 23 • ENISA guidance • National transpositions Oct 2024
Sector-Specific Regulators Also Covered
EU AI Act Annex III High-Risk GDPR Art. 35 DPIA EBA AI Guidelines EIOPA AI Principles ESMA AI Use Policy ISO/IEC 42001:2023 ISO/IEC 27001:2022 EU Data Act 2023
35 Questions · 7 Domains · 7 Minutes

EU AI Readiness Assessment

Answer 35 yes/partial/no questions. Get a scored report with gaps mapped to specific Indian statutes and a recommended engagement path — in Indian Rupees.

AI Disclosure
5 questions
Automated Decisions
5 questions
Recording & Consent
5 questions
Risk Classification
5 questions
AI Governance
5 questions
Supply Chain
5 questions
Incident & NIS2
5 questions — NIS2 Art. 21/23 incident reporting, CSIRT notification, AI risk assessment, continual improvement
35 questions · No login · Results in 7 minutes
EU Engagement Pricing

Priced in Euros

Three paths from diagnostic to EU AI-ready. Scoped to your organisation, priced for the European market.

EU Quick Scan
€3,500
/10 hrs
Live AI system diagnostic scored against all six EU frameworks. Scored gap report with statutory citations and priority remediation order.
Includes
✓ EU AI Act Art. 50 disclosure audit
✓ GDPR Art. 22 automated decision review
✓ ePrivacy consent gap assessment
✓ Executive briefing deck
✓ 90-day remediation roadmap
MOST POPULAR
EU Readiness Sprint
€12,000
/30 hrs
Stakeholder interviews, EU AI Act risk classification, ISO 42001 control mapping, GDPR Art. 22 review, NIS2 obligations assessment, board-ready governance deck.
Includes
✓ Everything in Quick Scan
✓ ISO/IEC 42001:2023 control mapping
✓ High-risk classification (EU AI Act Annex III)
✓ Technical documentation framework (Art. 11)
✓ NIS2 incident reporting obligations review
✓ Board-ready governance deck
EU AI Launchpad
€6,500
/mo
Ongoing EU AI compliance operations: monthly EU AI Act monitoring, DPO advisory, GDPR Art. 22 reviews, ISO 42001 continual improvement cycle, and staff training.
Includes
✓ Everything in Readiness Sprint
✓ Copilot Studio agent deployment
✓ Monthly EU AI Act enforcement monitoring
✓ DPO advisory (GDPR Art. 22)
✓ Staff training on EU AI regulations
✓ Dedicated engagement manager
Work With Us

Ready to get EU AI-ready?

Tell us about your organisation. We respond within one business day.