AAISM · Question #159
A global organization experienced multiple incidents of staff pasting confidential data into public chatbots. Which action is MOST important to reduce short-term risk?
The correct answer is A. Deliver role-based, scenario-driven AI security training mapped to job functions. AAISM states that the most effective short-term mitigation for unintentional data leakage into public AI tools is targeted, role-based AI security awareness, focused on: - what data cannot be entered - consequences of leakage - real-world scenarios employees face An…
Question
A global organization experienced multiple incidents of staff pasting confidential data into public chatbots. Which action is MOST important to reduce short-term risk?
Options
- ADeliver role-based, scenario-driven AI security training mapped to job functions
- BRequire employees to complete an annual generic phishing and deepfake module
- CPublish an AI acceptable use policy and collect signatures
- DBlock access to public LLMs at the network perimeter
How the community answered
(45 responses)- A44% (20)
- B13% (6)
- C33% (15)
- D9% (4)
Explanation
AAISM states that the most effective short-term mitigation for unintentional data leakage into public AI tools is targeted, role-based AI security awareness, focused on: - what data cannot be entered - consequences of leakage - real-world scenarios employees face An acceptable-use policy (C) is necessary but insufficient alone. Blocking LLMs (D) may reduce access but does not change user behavior and may cause shadow AI usage. Generic phishing training (B) does not address AI misuse risks.
Topics
Community Discussion
No community discussion yet for this question.