ISACA Advanced in AI Security Management (AAISM) - AAISM Exam Practice Test

An organization is commissioning a third-party AI system using sensitive data. Which metric is MOST important to consider?
Correct Answer: C Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
An attacker crafts inputs to a large language model (LLM) to exploit output integrity controls.
Which of the following types of attacks is this an example of?
Correct Answer: B Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
When preparing for an AI incident, which of the following should be done FIRST?
Correct Answer: B Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
An AI system sponsored by an organization has expanded by connecting with an increased number of third-party systems. Which of the following would be an information security manager's BEST recommendation in this situation?
Correct Answer: C Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
Which of the following AI system use cases would present the GREATEST regulatory compliance risk for an organization expanding into foreign markets?
Correct Answer: B Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
Which of the following key risk indicators (KRIs) is MOST relevant when evaluating the effectiveness of an organization's AI risk management program?
Correct Answer: A Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
How can an organization best remain compliant when decommissioning an AI system that recorded patient data?
Correct Answer: D Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
Which of the following is the BEST source of information for AI developers to review when selecting an appropriate machine learning (ML) model and identifying key risk?
Correct Answer: A Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
Before using data from public domain sources to train generative AI models, it is MOST important to verify that the data source site:
Correct Answer: C Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
When using third-party pre-trained AI models for customer due diligence in a highly regulated financial industry, which of the following is the PRIMARY security concern?
Correct Answer: C Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
Which risk is BEST mitigated by automatically clearing in-memory state at the end of each agent application session?
Correct Answer: B Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
Which of the following involves documenting and monitoring the complete journey of data as it flows through an AI system?
Correct Answer: D Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).
Which of the following testing techniques is BEST for determining how an AI model makes decisions?
Correct Answer: B Vote an answer
Explanation: Only visible for PassTestking members. You can sign-up / login (it's free).