About a-team Marketing Services
The knowledge platform for the financial technology industry
The knowledge platform for the financial technology industry

A-Team Insight Briefs

ISITC Europe and Genbounty Partner to Offer Independent Audits Aligned with EU AI Act

Subscribe to our newsletter

In a move to support regulated firms across Europe, ISITC Europe CIC has forged a partnership with AI compliance platform Genbounty to deliver third-party AI audits and accreditation. The objective: help organizations build credible AI governance programs and ensure alignment with evolving regulatory standards.

Tackling the AI Governance Gap

As AI deployments proliferate in financial services and capital markets, many firms struggle to translate high-level rules into operational controls. While the EU AI Act defines a compliance baseline, supervisory expectations vary across jurisdictions. In the UK, the FCA’s stated approach is technology agnostic and outcomes-focused, applying existing regulatory frameworks to firms’ use of AI rather than creating AI-specific rules. This stance is reflected across its AI Update, press material and speeches—and operationalised via initiatives like AI Live Testing.

Gary Wright, Director of Industry Affairs and one of ISITC Europe’s founders, underscores the challenge. He argues that firms need clarity on how their AI components affect risk, controls, and accountability. Under this partnership, “ISITC Europe as a not-for profit community interest company will act as an independent resource for members to help manage their AI components and ensure compliance.” The offering will include audits, access to verified AI testers, workshops, benchmark reports, and post-market monitoring.

From Genbounty’s side, co-founder Rob Morel positioned the platform’s role as providing ongoing regulatory insight. He explained that the system will keep users apprised of changes and help them understand “AI components utilised across enterprises.” Through the MOU, Genbounty’s tools and vetted testers will be made available to ISITC Europe’s membership.

What This Enables — and What Still Must Be Built

This collaboration is not simply a new service launch, but a signal of maturation in the AI compliance space. By offering independent assessments, it helps fill a gap between regulation and implementation, particularly for institutions lacking internal AI expertise.

Still, several challenges lie ahead:

  • Operationalizing audits. Translating compliance results into practical remediation plans will require domain experience in AI, model risk management, and financial workflows.
  • Maintaining independence. As audits are performed by a provider with commercial ties, perceptions of impartiality must be managed.
  • Evolving rules. The EU AI Act itself is dynamic; firms will need to continually adapt their controls as standards are refined.

Nonetheless, for firms seeking credible third-party validation of AI governance, this new path offers a clearer route than doing so in isolation.

Subscribe to our newsletter

Related content

WEBINAR

Recorded Webinar: Best Practices for Managing Trade Surveillance

The surge in trading volumes combined with the emergence of new digital financial assets and geopolitical events have added layers of complexity to market activities. Traditional surveillance methods often struggle to keep pace with these changes, leading to difficulties in detecting sophisticated market abuses and increased regulatory risk. To address these challenges, financial institutions are...

BLOG

From Archive to Insight – Smarsh Unveils OpenAPI Platform for EComms Governance

On 4 June 2025, Smarsh unveiled what it calls its “largest platform refresh in years,” layering next generation artificial intelligence, a Copilot ready capture service and an open API suite onto the company’s cloud compliance stack. The launch positions the Portland based vendor to help banks and brokers contend with the coming wave of generative...

EVENT

RegTech Summit New York

Now in its 9th year, the RegTech Summit in New York will bring together the RegTech ecosystem to explore how the North American capital markets financial industry can leverage technology to drive innovation, cut costs and support regulatory change.

GUIDE

The DORA Implementation Playbook: A Practitioner’s Guide to Demonstrating Resilience Beyond the Deadline

The Digital Operational Resilience Act (DORA) has fundamentally reshaped the European Union’s financial regulatory landscape, with its full application beginning on January 17, 2025. This regulation goes beyond traditional risk management, explicitly acknowledging that digital incidents can threaten the stability of the entire financial system. As the deadline has passed, the focus is now shifting...