nerdexam
Isaca

AAISM · Question #192

When evaluating a new AI tool for intrusion prevention, which is MOST important to ensure fit within the existing program architecture?

The correct answer is C. Confirm tool capabilities align with control objectives. Confirming that a tool's capabilities align with the organization's defined control objectives is the foundational evaluation step - it ensures the tool solves the right problem within the security program. All other features are only valuable if this alignment exists…

AI Security Strategy and Governance

Question

When evaluating a new AI tool for intrusion prevention, which is MOST important to ensure fit within the existing program architecture?

Options

  • AEnsure automated response orchestration
  • BPrioritize real-time anomaly detection
  • CConfirm tool capabilities align with control objectives
  • DSelect a tool that integrates with the SIEM

How the community answered

(40 responses)
  • A
    8% (3)
  • B
    15% (6)
  • C
    73% (29)
  • D
    5% (2)

Explanation

Confirming that a tool's capabilities align with the organization's defined control objectives is the foundational evaluation step - it ensures the tool solves the right problem within the security program. All other features are only valuable if this alignment exists. Automated response orchestration (A) and real-time anomaly detection (B) are desirable technical features but secondary to whether the tool meets the control objective. SIEM integration (D) is an important operational consideration but is still a technical integration concern subordinate to the question of whether the tool actually fulfills its intended security function.

Topics

#AI tool evaluation#Security program integration#Control objectives alignment#Intrusion prevention systems

Community Discussion

No community discussion yet for this question.

Full AAISM Practice