Pass the Isaca AI-Centric Security Management AAISM Questions and answers with CertsForce

Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions
Questions # 11:

A PRIMARY objective of responsibly providing AI services is to:

Options:

A.

Enable AI models to operate autonomously


B.

Ensure the confidentiality and integrity of data processed by AI models


C.

Build trust for decisions and predictions made by AI models


D.

Improve the ability of AI models to learn from new data


Expert Solution
Questions # 12:

Which of the following should be done FIRST when developing an acceptable use policy for generative AI?

Options:

A.

Determine the scope and intended use of AI


B.

Review AI regulatory requirements


C.

Consult with risk management and legal


D.

Review existing company policies


Expert Solution
Questions # 13:

Which of the following BEST reduces the risk of exposing sensitive data through the output of large language models (LLMs) in applications?

Options:

A.

Encrypting data in transit and at rest


B.

Conducting adversarial testing


C.

Implementing data sanitization techniques


D.

Enforcing least privilege access


Expert Solution
Questions # 14:

When integrating AI for innovation, which of the following can BEST help an organization manage security risk?

Options:

A.

Re-evaluating the risk appetite


B.

Seeking third-party advice


C.

Evaluating compliance requirements


D.

Adopting a phased approach


Expert Solution
Questions # 15:

Which of the following BEST represents a combination of quantitative and qualitative metrics that can be used to comprehensively evaluate AI transparency?

Options:

A.

AI system availability and downtime metrics


B.

AI model complexity and accuracy metrics


C.

AI explainability reports and bias metrics


D.

AI ethical impact and user feedback metrics


Expert Solution
Questions # 16:

Which of the following information is MOST important to include in a centralized AI inventory?

Options:

A.

Ownership and accountability of AI systems


B.

AI model use cases


C.

Training data sets


D.

Foundation model and package registry


Expert Solution
Questions # 17:

An organization plans to apply an AI system to its business, but developers find it difficult to predict system results due to lack of visibility to the inner workings of the AI model. Which of the following is the GREATEST challenge associated with this situation?

Options:

A.

Gaining the trust of end users through explainability and transparency


B.

Assigning a risk owner who is responsible for system uptime and performance


C.

Determining average turnaround time for AI transaction completion


D.

Continuing operations to meet expected AI security requirements


Expert Solution
Questions # 18:

An organization is facing a deepfake attack intended to manipulate stock prices. The organization’s crisis communication plan has been activated. Which of the following is MOST important to include in the initial response?

Options:

A.

Conduct employee awareness training on recognizing deepfake videos and audio


B.

Provide clarifying information in a pre-approved public statement


C.

Conduct a detailed forensic analysis to identify the source of the deepfake


D.

Engage with brand monitoring services to track social media activity


Expert Solution
Questions # 19:

When implementing a generative AI system, which of the following approaches will BEST prevent misalignment between the corporate risk appetite and tolerance?

Options:

A.

Ensuring effective AI key performance indicators (KPIs)


B.

Performing an AI impact assessment


C.

Creating and maintaining an AI risk register


D.

Establishing and monitoring acceptable levels of AI system risk


Expert Solution
Questions # 20:

Which of the following key risk indicators (KRIs) is MOST relevant when evaluating the effectiveness of an organization’s AI risk management program?

Options:

A.

Number of AI models deployed into production


B.

Percentage of critical business systems with AI components


C.

Percentage of AI projects in compliance


D.

Number of AI-related training requests submitted


Expert Solution
Viewing page 2 out of 3 pages
Viewing questions 11-20 out of questions