AAISM · Question #104
Which of the following BEST enables an organization to strengthen information security controls around the use of generative AI applications?
The correct answer is B. Monitoring AI outputs against policy. For generative AI, the primary enterprise security exposure is data and content exfiltration or policy violations at output, including leakage of sensitive data, toxic content, or regulatory non- compliance. AAISM prescribes policy-aligned output monitoring (e.g., DLP checks…
Question
Which of the following BEST enables an organization to strengthen information security controls around the use of generative AI applications?
Options
- AEnsuring controls exceed industry benchmarks
- BMonitoring AI outputs against policy
- CValidating AI model training data
- DImplementing a kill switch
How the community answered
(21 responses)- A10% (2)
- B81% (17)
- C5% (1)
- D5% (1)
Explanation
For generative AI, the primary enterprise security exposure is data and content exfiltration or policy violations at output, including leakage of sensitive data, toxic content, or regulatory non- compliance. AAISM prescribes policy-aligned output monitoring (e.g., DLP checks, PII/PHI detection, toxicity/safety filters, watermark/attribution checks) integrated into inference gateways to enforce organizational policies and evidence compliance.
Topics
Community Discussion
No community discussion yet for this question.