Article 31 — Requirements Relating to Notified Bodies
Requirements relating to notified bodies 1. A notified body shall be established under the national law of a Member State and shall have legal personality. 2. Notified bodies shall satisfy the organisational, quality management, resources and process requirements that are necessary to fulfil their tasks, as well as suitable cybersecurity requirements. 3. The organisational structure,...
necessary to fulfil their tasks, as well as suitable cybersecurity requirements.
ensure confidence in their performance, and in the results of the conformity assessment activities that the notified bodies
conduct.
EN OJ L, 12.7.2024
conformity assessment activities. Notified bodies shall also be independent of any other operator having an economic
interest in high-risk AI systems assessed, as well as of any competitors of the provider. This shall not preclude the use of
assessed high-risk AI systems that are necessary for the operations of the conformity assessment body, or the use of such
high-risk AI systems for personal purposes.
conformity assessment tasks shall be directly involved in the design, development, marketing or use of high-risk AI systems,
nor shall they represent the parties engaged in those activities. They shall not engage in any activity that might conflict with
their independence of judgement or integrity in relation to conformity assessment activities for which they are notified.
This shall, in particular, apply to consultancy services.
their activities. Notified bodies shall document and implement a structure and procedures to safeguard impartiality and to
promote and apply the principles of impartiality throughout their organisation, personnel and assessment activities.
subcontractors and any associated body or personnel of external bodies maintain, in accordance with Article 78, the
confidentiality of the information which comes into their possession during the performance of conformity assessment
activities, except when its disclosure is required by law. The staff of notified bodies shall be bound to observe professional
notifying authorities of the Member State in which their activities are carried out.
directly responsible for the conformity assessment.
bodies themselves or on their behalf and under their responsibility.
external parties on their behalf. The notified body shall have permanent availability of sufficient administrative, technical,
legal and scientific personnel who possess experience and knowledge relating to the relevant types of AI systems, data and
data computing, and relating to the requirements set out in Section 2.
directly, or be represented in, European standardisation organisations, or ensure that they are aware and up to date in
respect of relevant standards.
Related Articles in This Chapter
Related Blog Articles
How Annex III employment use cases trigger high-risk obligations and what HR teams should impleme...
Many companies are closer to Annex III obligations than they think. Here is how to assess your ex...
What a Fundamental Rights Impact Assessment includes, when it applies, and how SMEs can run FRIA ...
Machen Sie unsere kostenlose Risikobewertung
Finden Sie in 2 Minuten heraus, wo Ihr Unternehmen unter der EU-KI-Verordnung steht.
Quiz starten