ISO-IEC-42001-LEAD-AUDITOR · Question #115
A financial institution has integrated AI systems into its operations and has adopted risk management principles from an internationally recognized standard to specifically mitigate AI- related…
The correct answer is A. ISO 31000. ISO 31000:2018 ?Risk Management ?Guidelines provides high-level principles and a generic framework for identifying, assessing, and mitigating risks -- including those emerging from AI While ISO/IEC 27005 focuses on information security risk (related to ISO/IEC 27001), ISO 31000…
Question
A financial institution has integrated AI systems into its operations and has adopted risk management principles from an internationally recognized standard to specifically mitigate AI- related risks effectively. Which standard has the institution applied in this case?
Options
- AISO 31000
- BISO/IEC 27005
- CISO/IEC 23895
How the community answered
(54 responses)- A72% (39)
- B17% (9)
- C11% (6)
Explanation
ISO 31000:2018 ?Risk Management ?Guidelines provides high-level principles and a generic framework for identifying, assessing, and mitigating risks -- including those emerging from AI While ISO/IEC 27005 focuses on information security risk (related to ISO/IEC 27001), ISO 31000 is broader and commonly adopted by organizations for all types of operational and strategic risk management -- including ethical, legal, and technical AI risks. ISO/IEC 42001 references ISO 31000 as the baseline standard for managing AI-related risks.
Topics
Community Discussion
No community discussion yet for this question.