April 2026: Key Developments in ISO

April 2026 marks a major acceleration in the standardization of artificial intelligence, while environmental management, resilience, conformity assessment, and organizational governance also move forward.

The strongest signal this month comes from AI. Standardization is moving rapidly beyond general principles and management systems into the harder questions of model safety, frontier AI risk, functional safety, conformity assessment, synthetic data, and the operating context of AI systems.

At the same time, the publication of ISO 14001:2026 reinforces environmental management as a core governance discipline, while new work on climate adaptation, circular economy, sustainability information, occupational health and safety, and sustainable HR shows how sustainability is becoming embedded across organizational functions.

Three themes dominate April:

AI safety moves from governance principles toward engineering and assurance — with new work covering frontier AI risk, AI model and system safety, functional safety, conformity assessment, context, and synthetic data.

Environmental and sustainability management become more integrated with organizational governance — led by ISO 14001:2026 and developments around climate adaptation, circular business models, sustainability information, and sustainable HR.

Resilience, assurance, and operational governance continue to mature — with activity around business continuity, supply-chain security, configuration management, facility management, conformity assessment, and operating management systems.

For top management, April sends an important message: governance increasingly needs to connect policy with evidence. Organizations will be expected not only to establish management systems and principles, but also to demonstrate that technologies, processes, supply chains, people, and sustainability claims actually perform as intended.

Newly published standards

ISO 14001:2026 – Environmental management systems — Requirements with guidance for use
One of the most important management-system developments of the year. The new edition of ISO 14001 reinforces environmental management as a central part of organizational governance and provides the framework through which organizations systematically manage environmental responsibilities and performance.

ISO/IEC/IEEE 12207:2026 – Systems and software engineering — Software life cycle processes
Updates a foundational standard for software lifecycle governance. As software becomes embedded across products, services, infrastructure, and AI-enabled systems, disciplined lifecycle processes become increasingly important for quality, accountability, security, and maintainability.

Final Draft International Standards (FDIS): Editorials before publication

Draft International Standards (DIS): Nearing publication

ISO/DIS 29501 – Operating management systems — Requirements with guidance for use
Develops a structured management-system approach to operational activities — strengthening the connection between organizational governance and operational execution.

ISO/DIS 29502 – Operating management systems — Conformity assessment guidelines and criteria
Complements ISO 29501 by addressing conformity assessment, creating a clearer basis for evaluating whether operating management systems meet defined expectations.

ISO/DIS 41012 – Facility management — Guidance on strategic sourcing and the development of agreements
Strengthens the strategic side of facility management by connecting sourcing, agreements, service relationships, and organizational requirements.

ISO/DTR 24962 – Sampling-based conformity assessment
Addresses the use of sampling within conformity assessment — an important topic wherever organizations need credible assurance without examining every individual product, transaction, or output.

Committee Drafts (CD): Key Standards in Progress

April shows particularly strong activity around AI engineering and assurance.

ISO/IEC CD TS 22440-1 – Artificial intelligence — Functional safety and AI systems — Part 1: Requirements
A significant development in the relationship between AI and functional safety. The work begins translating AI safety concerns into requirements that can be applied when AI functions are part of safety-related systems.

ISO/IEC CD TS 22440-2 – Artificial intelligence — Functional safety and AI systems — Part 2: Guidance
Provides the guidance layer supporting the requirements, helping organizations understand how functional-safety principles can be applied to AI-enabled systems.

ISO/IEC CD TS 22440-3 – Artificial intelligence — Functional safety and AI systems — Part 3: Examples of application
Adds practical examples, showing the increasing maturity of AI safety standardization from principles toward implementation.

Together, the three ISO/IEC 22440 projects signal an important development: AI safety is becoming an engineering discipline, not only a governance discussion.

ISO/CD 28018 – Security and resilience — Security management systems — Guidelines for the application and implementation of ISO 28000 in the supply chain
Extends security management deeper into supply-chain implementation — highly relevant as organizations face cyber risks, geopolitical uncertainty, supplier dependencies, and increasingly interconnected value networks.

ISO/CD 25968 – Accessible Packaging Design — Usability
Brings accessibility and usability into packaging design, reinforcing the broader trend toward human-centered requirements throughout product development and consumer interaction.

New work items and early-stage developments

Several important management and sustainability topics have also entered active development.

ISO/WD 14019-3 – Sustainability information — Part 3: Principles and requirements for validation processes

A notable development for sustainability assurance. As sustainability information becomes more important for reporting, procurement, regulation, and investment, validation processes become essential for establishing confidence in the information being provided.

ISO/WD 59010 – Circular economy — Guidance on the transition of business models and value networks

Shows that circular economy standardization is increasingly focusing on organizational transformation. Circularity is not only about individual products or recycling processes; it increasingly affects business models, partnerships, supply chains, and value networks.

ISO/WD 10007 – Quality management — Guidelines for configuration management

Configuration management remains fundamental as products and systems become more complex, software-driven, configurable, and frequently updated. Maintaining control over versions, components, relationships, and changes is becoming even more important in digital product environments.

ISO/AWI 41020 – Facility management — Performance management framework and measurement

Moves facility management further toward measurable performance, creating stronger links between operational services, organizational objectives, and evidence-based management.

ISO/AWI 30447 – Sustainable Human Resource Management — Guidance

Extends sustainability thinking into human resource management, reinforcing the idea that sustainable organizations need to consider people, capability, organizational practices, and long-term workforce development alongside environmental and financial performance.

ISO/AWI 45009 – Occupational health and safety management — Leadership and governance in an occupational health and safety management system — Top management guidance

Places occupational health and safety explicitly in the leadership and governance agenda. The work emphasizes the role of top management rather than treating health and safety primarily as an operational or specialist function.

New work items and early-stage developments

April’s earliest projects provide perhaps the clearest indication of where standardization is heading next.

1. AI safety becomes a complete assurance ecosystem

ISO/IEC PWI 26751 – Information Technology — Artificial intelligence — Safety of AI models, systems and applications

A potentially important new piece of the AI safety landscape. Its scope points beyond individual algorithms toward safety across AI models, complete systems, and their applications.

ISO/IEC PWI 25512 – Information Technology — Artificial intelligence — Frontier Al risk management and impact assessment

Signals the emergence of standardization specifically addressing risks associated with frontier AI. This is particularly significant because it connects advanced AI capabilities with structured risk management and impact assessment.

ISO/IEC NP 26582 – Artificial intelligence — Conformity assessment for the functional correctness of an AI system

One of the most strategically important developments this month. AI governance increasingly needs mechanisms for demonstrating that systems actually function as intended. Conformity assessment could become a key bridge between AI requirements, technical testing, assurance, and regulatory expectations.

Together with the ISO/IEC 22440 series, these projects suggest the emergence of a broader AI assurance architecture: risk management defines what needs to be controlled; safety standards define expectations; engineering standards translate them into systems; and conformity assessment provides evidence that requirements have been met.

2. AI context and data become formal governance concepts

ISO/IEC PWI 26750 – Information technology — Artificial intelligence — Context for AI systems

Context is fundamental to understanding AI performance and risk. An AI system cannot necessarily be evaluated independently of where, how, by whom, and for what purpose it is used.

Formalizing context could therefore become increasingly important for AI risk assessment, lifecycle management, documentation, assurance, and governance.

ISO/IEC CD TR 42103 – Overview of synthetic data in the context of AI systems

The parallel work on synthetic data reinforces the same development: AI governance increasingly depends on understanding not only the system itself, but also the data and environment surrounding it.

3. Climate and environmental governance enter a new phase

ISO/PWI 14090 – Adaptation to climate change — Principles, requirements and guidelines

Work toward a second edition signals continued development of climate adaptation as an organizational management discipline.

Combined with ISO 14001:2026, this creates an increasingly comprehensive environmental governance landscape in which organizations need to consider both their environmental impacts and their ability to adapt to changing climate conditions.

ISO/WD 59010 – Circular economy — Guidance on the transition of business models and value networks

Circular economy work strengthens the same direction. Environmental management is expanding from controlling impacts toward redesigning the underlying systems through which organizations create and retain value.

4. Resilience becomes embedded in operating models

ISO/AWI 22313 – Security and resilience — Business continuity management systems — Guidance on the use of ISO 22301

The revision of ISO 22313 accompanies broader activity around business continuity and organizational resilience.

Resilience increasingly needs to be embedded into normal management rather than activated only during disruption. This means connecting continuity planning with strategy, supply-chain management, technology, facilities, people, and operational decision-making.

ISO/CD 28018 – Security management systems — Guidelines for the application and implementation of ISO 28000 in the supply chain

Supply-chain security reinforces this trend by extending resilience beyond the boundaries of the individual organization.

5. Customer experience and service ecosystems become more structured

ISO/AWI 18295-1 – Customer contact centres — Part 1: Requirements for customer contact centres

ISO/AWI 18295-2 – Customer contact centres — Part 2: Requirements for clients using the services of customer contact centres

The revision of the ISO 18295 series shows continued professionalization of customer contact operations.

This becomes particularly interesting as contact centres increasingly combine people, automation, AI agents, outsourced services, customer data, and digital platforms. Requirements for service quality and responsibility will therefore increasingly intersect with AI governance, privacy, workforce management, and customer experience.

A lifecycle change in risk management

IWA 31:2020 – Risk management — Guidelines on using ISO 31000 in management systems have been withdrawen during April.

The change is worth noting alongside the wider development of risk and resilience standards. Even as individual documents move through or out of their lifecycle, the underlying principle remains increasingly important: risk management needs to be integrated into organizational management rather than operated as a separate discipline.

Looking Ahead

April 2026 shows standardization moving from broad governance frameworks toward operational assurance.

This is clearest in artificial intelligence.

The conversation is no longer only about responsible AI principles or AI management systems. Standards are increasingly addressing the individual layers needed to make AI governable in practice: context, data, models, risk, functional safety, system safety, impact assessment, and conformity assessment.

A similar development can be seen elsewhere. Environmental management is connecting with climate adaptation and circular business models. Sustainability information is connecting with validation. Business continuity is connecting with supply-chain resilience. Occupational health and safety is connecting with top-management governance. Facility management is connecting with measurable performance. Software governance is connecting with increasingly complex digital systems.

For top management, the emerging challenge is therefore not simply to adopt more standards.

It is to understand how these standards fit together into an assurance architecture — where governance defines expectations, management systems establish control, technical standards shape implementation, measurements provide evidence, and conformity assessment creates trust.

The organizations best prepared for the next phase of digital and sustainable transformation will be those capable of connecting these layers.

At StandardsHero, we will continue translating these developments into actionable leadership guidance — helping organizations understand not only which standards are changing, but how the emerging standards landscape is reshaping governance, technology, sustainability, risk, and organizational performance.