nerdexam
Isaca

CISM · Question #473

Senior management is concerned with the increasing integration of AI into applications used by the organization's systems. Which of the following is the BEST approach to ensure AI-integrated…

The correct answer is C. Identify and assess risks involved in using AI-integrated applications. The best approach to ensuring AI-integrated applications can be used securely and effectively is to identify and assess the risks associated with their use. This includes evaluating data privacy concerns, bias in AI models, security vulnerabilities, compliance requirements, and…

Submitted by rachelw· Apr 18, 2026Information Security Risk Management

Question

Senior management is concerned with the increasing integration of AI into applications used by the organization's systems. Which of the following is the BEST approach to ensure AI-integrated applications can be used securely and effectively?

Options

  • AWork with vendors to remediate underlying AI-integrated application vulnerabilities.
  • BUpdate user awareness training for the use of AI-integrated applications.
  • CIdentify and assess risks involved in using AI-integrated applications.
  • DDetermine whether AI-integrated applications are configured appropriately.

How the community answered

(25 responses)
  • A
    4% (1)
  • B
    4% (1)
  • C
    84% (21)
  • D
    8% (2)

Explanation

The best approach to ensuring AI-integrated applications can be used securely and effectively is to identify and assess the risks associated with their use. This includes evaluating data privacy concerns, bias in AI models, security vulnerabilities, compliance requirements, and potential misuse. Once risks are understood, appropriate controls and policies can be implemented. While working with vendors, updating training, and checking configurations are important, they should be based on a comprehensive risk assessment.

Topics

#AI security#Risk assessment#Security strategy#Application security

Community Discussion

No community discussion yet for this question.

Full CISM Practice