Rob van der Veer
Sources: “About the AI Exchange” · LinkedIn
Identity and role
Van der Veer founded the OWASP AI Exchange in 2022. The source states he is Chief AI Officer at Software Improvement Group, lead author of ISO/IEC 5338 (the AI lifecycle standard), and a founding contributor to OpenCRE.1 These claims are the source’s own and are not independently verified here.
Relevance to This Wiki
He is the provenance behind the Exchange’s standards-liaison position. The source states he currently works in ISO/IEC 27090 (AI security) and ISO/IEC 27091 (AI privacy), and on the EU AI Act security work at CEN/CENELEC, where the EU member states elected him co-editor.1
The Exchange states it contributed 70 pages each to prEN 18282 and ISO/IEC 27090.1 Neither figure is verified here, and both run through one named individual rather than an anonymous project. That concentration is why IEC 42001 treats the Exchange’s ISO/IEC 27090 and prEN 18282 contributions as a single source rather than as two independent corroborations of each other.
Outputs
The AI Exchange itself is his principal output: it began as the “AI security and privacy guide” in October 2022 and was rebranded “AI Exchange” a year later to emphasize global collaboration.1 OWASP awarded the project Flagship status in March 2025, alongside the OWASP GenAI Security Project.1
Notable Statements
The source states 34 years of experience in AI and security, attributed to van der Veer without further breakdown.1 No independent biography or CV corroborates the figure or the ISO/IEC 5338 authorship claim in this pass; both are recorded here as the AI Exchange’s own attribution.
Footnotes
-
OWASP AI Exchange, “About the AI Exchange”, retrieved 2026-08-17. Founding in 2022, rebranding a year later, OWASP Flagship status (March 2025), Chief AI Officer at Software Improvement Group, lead author of ISO/IEC 5338, founding contributor to OpenCRE, work on ISO/IEC 27090, ISO/IEC 27091, and the EU AI Act at CEN/CENELEC (elected co-editor by EU member states), 34 years of AI and security experience. ↩ ↩2 ↩3 ↩4 ↩5 ↩6