nerdexam
IsacaIsaca

AAISM · Question #66

AAISM Question #66: Real Exam Question with Answer & Explanation

The correct answer is C: Delivering role-based and scenario-driven AI security training mapped to policy and job functions. AAISM prescribes targeted, role-based, scenario-driven training aligned to policy and job tasks as the highest-impact near-term intervention for human-factor AI risks. By mapping concrete "do/don't" behaviors (e.g., what data may/may not be pasted into public chatbots, required r

AI Security Risk Management

Question

A global organization has experienced multiple incidents of staff copying confidential data into public chatbots and acting on the model outputs. Which of the following is MOST important to reduce short-term risk when launching an AI security awareness initiative?

Options

  • ABlocking access to public large language models (LLMs) at the network perimeter
  • BRequiring employees to complete an annual generic phishing and deepfake awareness module
  • CDelivering role-based and scenario-driven AI security training mapped to policy and job functions
  • DPublishing an AI acceptable use policy and collecting e-signatures of employees

Explanation

AAISM prescribes targeted, role-based, scenario-driven training aligned to policy and job tasks as the highest-impact near-term intervention for human-factor AI risks. By mapping concrete "do/don't" behaviors (e.g., what data may/may not be pasted into public chatbots, required redaction steps, approved tools, verification of outputs) to specific roles, organizations rapidly reduce incident likelihood and harmful actions.

Topics

#AI security awareness#Employee training#Data leakage prevention#Short-term risk reduction

Community Discussion

No community discussion yet for this question.

Full AAISM PracticeBrowse All AAISM Questions