Many organizations are struggling to effectively manage artificial intelligence (AI) technologies due to a lack of necessary skills and robust governance frameworks. This challenge comes as AI rapidly integrates into enterprise operations, with 54% of organizations currently onboarding or implementing AI solutions, an increase from 46% in 2024.
In response to this growing skills gap, ISACA, a training and certification body, is set to launch an AI governance certification in early 2027. This new credential, currently in its beta phase, will complement ISACA's existing suite of AI-focused certifications, which include Advanced in AI Audit (AAIA), Advanced in AI Security Management (AAISM), and Advanced in AI Risk (AAIR).
ISACA's research indicates a significant deficit in AI governance, with only 32% of digital trust professionals believing their organizations adequately address AI-related risks such as privacy, bias, and security, despite the widespread adoption of AI in the workplace.
Chris Dimitriadis, ISACA's chief global strategy officer, emphasized the importance of the governance certification, describing it as an "umbrella" for professionals across various domains, including cybersecurity, audit, and risk management. He stated that the goal is to help individuals control and govern AI rather than allowing it to operate unchecked.
Uptake for ISACA's AI training programs has been positive, particularly in regions like Europe, the US, and Asia, which are at the forefront of AI adoption. However, a 2025 ISACA AI Pulse Poll, which surveyed over 3,000 digital trust professionals, revealed that 32% of organizations provide no AI training to their employees.
Dimitriadis underscored the need for more specialized and holistic AI training across various professional roles, including auditors, cyber professionals, risk managers, project managers, and IT managers involved in AI governance. He highlighted the importance of incorporating soft skills to ensure professionals can succeed in their roles.
ISACA's 2026 research predicts that AI will increasingly handle technical and orchestration tasks, allowing professionals to focus on activities requiring context, intuition, and communication. These critical human-centric tasks include governance, AI configuration and monitoring, and final decision-making. The report also identified key security skills needed, such as threat detection and response, identity and access management, vulnerability management, data security, and incident response.






