AIUC-1: Building trust in AI agents
Episode
45 min
Read time
2 min
Topics
Fundraising & VC, Leadership, Marketing
AI-Generated Summary
Key Takeaways
- ✓AIUC-1 Certification Structure: The standard contains 40 mandatory requirements across three layers — organizational governance, infrastructure security, and agentic AI controls. Six of those 40 requirements specifically mandate red teaming. Controls cover hallucination prevention, tool-call restrictions, data access limits, and brand-safe behavior. Vendors pursuing certification submit evidence to accredited auditors like Schellman or Coalfire for third-party validation.
- ✓Red Teaming Process: Certification red teaming generates between 1,000 and 5,000 unique attack scenarios per agent, split across two rounds with a one-to-four-week remediation window between them. Scenarios escalate from benign queries to multi-turn adversarial pressure, authority invocation, and distress manipulation. No agent has ever achieved a 100% pass rate — nondeterministic systems will always carry residual vulnerability under sufficient pressure.
- ✓Severity Grading for Pass/Fail: Red team findings are rated P0 through P4, where P0 is catastrophic and P4 is insignificant. A company cannot pass AIUC-1 with any unmitigated P0 or P1 vulnerabilities. Lower-severity findings appear transparently in the 60-to-100-page audit report, which enterprises use to evaluate vendor risk rather than receiving a falsely clean compliance document.
- ✓Quarterly Recertification Requirement: Maintaining AIUC-1 certification requires a quarterly re-test via API access to the live agent. Each quarter the standard itself is also updated by a 250-member consortium of CISOs, security engineers, and GRC managers. Recent quarterly additions include MCP protocol risk controls and strengthened runtime security requirements, reflecting the pace at which agentic attack surfaces evolve.
- ✓Enterprise Vendor Due Diligence Shortcut: Enterprise procurement teams currently run 100-question security questionnaires for every AI vendor, a process painful on both sides. A completed AIUC-1 audit report functions as a pre-validated answer set, accelerating vendor onboarding. Companies like Fin — acquired by Salesforce for $3.6 billion — and UiPath pursued certification specifically to unblock enterprise deals rather than for marketing purposes.
What It Covers
Emil Lawson, standards lead at the AI Underwriting Company, explains how AIUC-1 — a certification standard for agentic AI — uses a three-part flywheel of standards, audits, and insurance to help AI vendors pass enterprise security reviews and build verifiable trust in deployed agent systems.
Key Questions Answered
- •AIUC-1 Certification Structure: The standard contains 40 mandatory requirements across three layers — organizational governance, infrastructure security, and agentic AI controls. Six of those 40 requirements specifically mandate red teaming. Controls cover hallucination prevention, tool-call restrictions, data access limits, and brand-safe behavior. Vendors pursuing certification submit evidence to accredited auditors like Schellman or Coalfire for third-party validation.
- •Red Teaming Process: Certification red teaming generates between 1,000 and 5,000 unique attack scenarios per agent, split across two rounds with a one-to-four-week remediation window between them. Scenarios escalate from benign queries to multi-turn adversarial pressure, authority invocation, and distress manipulation. No agent has ever achieved a 100% pass rate — nondeterministic systems will always carry residual vulnerability under sufficient pressure.
- •Severity Grading for Pass/Fail: Red team findings are rated P0 through P4, where P0 is catastrophic and P4 is insignificant. A company cannot pass AIUC-1 with any unmitigated P0 or P1 vulnerabilities. Lower-severity findings appear transparently in the 60-to-100-page audit report, which enterprises use to evaluate vendor risk rather than receiving a falsely clean compliance document.
- •Quarterly Recertification Requirement: Maintaining AIUC-1 certification requires a quarterly re-test via API access to the live agent. Each quarter the standard itself is also updated by a 250-member consortium of CISOs, security engineers, and GRC managers. Recent quarterly additions include MCP protocol risk controls and strengthened runtime security requirements, reflecting the pace at which agentic attack surfaces evolve.
- •Enterprise Vendor Due Diligence Shortcut: Enterprise procurement teams currently run 100-question security questionnaires for every AI vendor, a process painful on both sides. A completed AIUC-1 audit report functions as a pre-validated answer set, accelerating vendor onboarding. Companies like Fin — acquired by Salesforce for $3.6 billion — and UiPath pursued certification specifically to unblock enterprise deals rather than for marketing purposes.
Notable Moment
Lawson argues that a spotless AI audit report is actually a red flag, not a mark of quality. Because agentic systems are nondeterministic by design, any vendor claiming zero vulnerabilities has likely crippled the agent's functionality to the point where it can no longer perform its intended task.
Episode Transcript
Welcome to the Practical AI podcast, where we break down the real world applications of artificial intelligence and how it's shaping the way we live, work, and create. Our goal is to help make AI technology practical, productive, and accessible to everyone. Whether you're a developer, business leader, or just curious about the tech behind the buzz, you're in the right place. Be sure to connect with us on LinkedIn, x, or Blue Sky to stay up to date with episode drops, behind the scenes content, and AI insights. You can learn more at practicalai.fm. Now onto the show. Welcome to to another episode of the Practical AI podcast. I'm Daniel Whitenak. I am CEO at Prediction Guard, and I'm really excited today to have, an amazing guest that, I'm personally interested in asking a bunch of selfish questions too because I'm I'm so interested in the topic. But we have Emil Lawson, who's the standards lead at the artificial intelligence underwriting company. Welcome. How how are you doing? Thanks, Daniel. Thanks for having me. I'm doing great. How are you? I I'm I'm doing well. Actually, you know, today in the Midwest, everyone's concerned about tornadoes and talking about hail and and some things like insurance and other things. So it's a a whole other other world, of course, but, obviously, the AI underwriting company, way way more than thinking about insurance, but thinking about standards, certification around AI and agents. I'm wondering how, you personally, just to give the audience a a little bit about you personally, how did you end up at this intersection of standards, certification, AI agents? How how did that come about? Yeah. So I I don't think I had a clearer path as as the classic standards lead where you work as a, say, security engineer for ten years and then learn the technical craft and then come together. My journey has been very entrepreneurial always. I started my first company with actually the CEO of artificial intelligence company, Veronique West, ten years ago. There was a nonprofit back then helping students from low income backgrounds get into top universities. And I think what I took away from that was both the very entrepreneurial journey, but also desire to move fast on some of the challenges that society is facing. I then moved in and and had my first interaction with standards at my my second company, a real estate company back in Denmark, where we developed an impact management system that both had to navigate a lot of national legislation, local legislation, EU legislation, voluntary frameworks, investor demands. And and so had my first interaction with one of these, these quite, complex markets of of different, measurements and targets you wanted to get to, a very technical sector as well where, like, building codes, for example, require a lot of thinking through how you do things the right way. So spent four years building up a real estate company that today is …
Get the full transcript (8,554 words) + summary by email — free
One-time email with the complete transcript and AI summary of this episode. No account needed.
One email, no spam. We’ll also show you what SignalCast does.
You just read a 3-minute summary of a 42-minute episode.
Get Practical AI summarized like this every Monday — plus up to 2 more podcasts, free.
Pick Your Podcasts — FreeKeep Reading
More from Practical AI
Models, Harnesses, and Multi-Agent Systems
Aug 6 · 49 min
Cognitive Revolution
Underwriting Superintelligence: How AIUC is using Insurance, Standards, and Audits to Accelerate Adoption while Minimizing Risks
Nov 30
More from Practical AI
Reconstructing how OpenAI agents attacked Hugging Face
Jul 30 · 44 min
Beyond Biotech
Turning cancer cell dependencies into targeted therapies
Jul 10
Books, tools, and gear mentioned in this episode
SignalCast may earn commission on purchases via these links.
Tools
- AIUC-1By guest
by AI Underwriting Company
“Emil Lawson, standards lead at the AI Underwriting Company, explains how AIUC-1 — a certification standard for agentic AI — uses a three-part flywheel of standards, audits, and insurance to help AI vendors pass enterprise security reviews and build verifiable trust in deployed agent systems.”
“SPONSORS: Framer (https://framer.com/practicalai)”
“SPONSORS: Prediction Guard (https://predictionguard.com/practicalai)”
company
“Vendors pursuing certification submit evidence to accredited auditors like Schellman or Coalfire for third-party validation.”
“Vendors pursuing certification submit evidence to accredited auditors like Schellman or Coalfire for third-party validation.”
“Companies like Fin — acquired by Salesforce for $3.6 billion — and UiPath pursued certification specifically to unblock enterprise deals rather than for marketing purposes.”
“Companies like Fin — acquired by Salesforce for $3.6 billion — and UiPath pursued certification specifically to unblock enterprise deals rather than for marketing purposes.”
More from Practical AI
We summarize every new episode. Want them in your inbox?
Models, Harnesses, and Multi-Agent Systems
Reconstructing how OpenAI agents attacked Hugging Face
Surviving the New Economics of a Post-Agentic World
The Future of AI Infrastructure with CoreWeave
Building Durable AI Agents
Similar Episodes
Related episodes from other podcasts
Cognitive Revolution
Nov 30
Underwriting Superintelligence: How AIUC is using Insurance, Standards, and Audits to Accelerate Adoption while Minimizing Risks
Beyond Biotech
Jul 10
Turning cancer cell dependencies into targeted therapies
Odd Lots
May 21
Why Cerebras CEO Andrew Feldman Built The World's Largest Computer Chip
In Good Company with Nicolai Tangen
May 6
IBM CEO: Transforming a Tech Giant, AI Bets and Quantum Computing
Beyond Biotech
Apr 30
How Epic Bio is leveraging CRISPR without cutting DNA
Explore Related Topics
This podcast is featured in Best AI Podcasts (2026) — ranked and reviewed with AI summaries.
You're clearly into Practical AI.
Every Monday, we deliver AI summaries of the latest episodes from Practical AI and 192+ other podcasts. Free for one show.
Start My Monday DigestNo credit card · Unsubscribe anytime