nerdexam
IsacaIsaca

AAISM · Question #53

AAISM Question #53: Real Exam Question with Answer & Explanation

The correct answer is A: Confirm tool capabilities align with the control objectives.. The highest-priority fit criterion for introducing a new AI security capability is alignment to the organization's established control objectives and program architectures. Control objectives encode what must be achieved (e.g., detection coverage, response timeliness, accountabil

AI Security Strategy and Governance

Question

When evaluating a new AI tool for intrusion prevention, which of the following is the MOST important consideration to ensure the tool fits within the existing program architecture?

Options

  • AConfirm tool capabilities align with the control objectives.
  • BSelect a tool that integrates with the existing SIEM.
  • CPrioritize a tool that offers real-time anomaly detection.
  • DEnsure automated response orchestration.

Explanation

The highest-priority fit criterion for introducing a new AI security capability is alignment to the organization's established control objectives and program architectures. Control objectives encode what must be achieved (e.g., detection coverage, response timeliness, accountability, auditability) and are the basis for requirements traceability across governance, risk, and technical controls. Ensuring the tool's capabilities directly satisfy those objectives provides architectural fit, policy conformance, and measurable assurance. While integration (e.g., SIEM), detection features (e.g., real-time anomaly detection), and orchestration are important, they are secondary to proving the tool maps to--and can be verified against--the control objectives that define the program's intended outcomes.

Topics

#AI tool evaluation#Control objectives#Program architecture#Strategic alignment

Community Discussion

No community discussion yet for this question.

Full AAISM PracticeBrowse All AAISM Questions