Isaca ISACA Advanced in AI Security Management (AAISM) Exam AAISM Question # 2 Topic 1 Discussion
AAISM Exam Topic 1 Question 2 Discussion:
Question #: 2
Topic #: 1
During the creation of a new large language model (LLM), an organization procured training data from multiple sources. Which of the following is MOST likely to address the CISO's security and privacy concerns?
AAISM guidance highlights data minimization as a critical practice for addressing both security and privacy concerns. By ensuring that only the minimum necessary data is collected and retained, the organization reduces the risk of sensitive information being exposed or misused during training. Data augmentation expands data but does not mitigate privacy risk. Classification organizes data but does not limit exposure. Data discovery helps locate sources but does not directly reduce risks. The control that directly aligns with privacy-by-design principles is data minimization.
[References:, AAISM Exam Content Outline – AI Risk Management (Data Privacy and Minimization), AI Security Management Study Guide – Privacy Safeguards in AI Training, ]
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit