Consultancy in AI governance, risk and compliance

AI moves forward.
So must governance.

We help you reduce the risk of penalties by turning governance, risk and compliance obligations into clear, practical measures.

Tell us your challenge
EU AI ActISO/IEC 42001AI riskTraceability

Govern to move forward

You cannot govern AI you do not know. Identify it, assess its risks and assign accountability.

Professional team reviewing documentation and making decisions

What we do

Five areas of work.

They can be commissioned independently or combined according to each organisation's starting point.

AI governance and compliance

We design AI governance frameworks with clear responsibilities, policies and decision criteria.

  • Governance framework and responsibilities.
  • Policies and principles of use.
  • Committees and oversight processes.

ISO/IEC 42001 implementation

We support ISO/IEC 42001 adoption from the initial assessment through to audit readiness.

  • Assessment and gap analysis.
  • AIMS design and implementation.
  • Audit readiness.

AI systems audit

We assess governance, risks, controls and evidence with independent judgement.

  • Internal AI audit.
  • Independent second opinion.
  • Readiness assessment.

AI risk management and assessment

We identify, assess and prioritise risks to define proportionate measures.

  • AI systems inventory.
  • Risk classification and assessment.
  • Mitigation measures and monitoring.

Documentation and evidence

We create the documentation and records needed to demonstrate control and traceability.

  • Policies and procedures.
  • Records and traceability.
  • Audit and certification evidence.

Our pricing

A level of support for every starting point. From a free assessment to continuous governance.

View pricing and options

How we work

Structure for decisions. Judgement to move forward.

A system proportionate to each organisation's context, risk and actual capacity.

  1. 01

    Understand

    Systems, uses, records and starting point.

  2. 02

    Prioritise

    Obligations, risks and critical gaps.

  3. 03

    Structure

    Controls, processes, evidence and roadmap.

  4. 04

    Support

    Implementation, monitoring and readiness for review.

Free resource

Compliance starts with knowing where you stand.

Complete an initial maturity assessment across five areas of governance, risk and compliance. Receive an indicative report to prioritise your next steps.

Start assessment
5areas
35questions
10–15 minapproximately
PDFpersonalised

Indicative result only: it is not an audit, certification, conformity assessment, legal advice or specialist technical advice.

From scattered obligations to governable decisions.

About Céntrika

Governing from the centre.

Céntrika helps organisations place governance, risk and compliance at the centre of their artificial intelligence decisions.

We turn AI regulation and standards into clear assessments, actionable priorities and roadmaps for moving forward with confidence.

Meet Rubén on LinkedIn

A clear professional relationship

A clear focus. The right expertise.

Our focusGovernance, compliance, risk, documentation and readiness for AI and records management systems.

Coordinated workLegal, certification, cybersecurity or specialist privacy matters are addressed with competent professionals whenever the project requires it.

Professional team reviewing a PDCA cycle applied to AI governance under ISO/IEC 42001

Let's talk

Does your organisation use AI but cannot yet demonstrate how it is governed?

Controller: Céntrika (Rubén Cordero Garzón). Purpose: to respond and manage the requested relationship. Lawful basis: your request and, where applicable, pre-contractual steps. Retention: up to 12 months after the last communication unless a legal duty or contract requires longer. Rights: contacto@centrika.es. Privacy policy.

contacto@centrika.es

Your questions answered

Frequently asked questions

Clear answers before taking the next step.

What types of organisations can work with Céntrika?

Public or private organisations that use artificial intelligence or are considering introducing it.

Is the initial AI GRC maturity assessment free?

Yes. The initial assessment is free and provides an indicative view of the organisation's maturity in AI governance, risk and compliance. You will receive a report outlining the main gaps and priorities. The results are indicative and do not replace an audit or legal advice.

Do I need technical knowledge to work with Céntrika?

No. We translate technical and regulatory requirements into clear, practical measures for your organisation.

Does Céntrika develop artificial intelligence systems?

No. We specialise in the governance, risk, compliance, documentation and traceability of artificial intelligence systems.

How long does a project take?

It depends on the scope, the number and complexity of the AI systems and the availability of information. Our pricing includes indicative timescales for each level of support.

Do you work on site or remotely?

We can work remotely and combine this with on-site sessions when the nature of the project requires it.

Can you help us with the EU AI Act and ISO/IEC 42001?

Yes. We analyse gaps, define measures and prepare documentation and evidence. Céntrika is not a certification body and does not replace legal advice.

How can we determine where to start?

The free assessment helps establish your starting point and identify the next steps without obligation.