New Year Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

AAISM Exam Dumps - Isaca AI-Centric Security Management Questions and Answers

Question # 54

An organization develops and implements an AI-based plug-in for users that summarizes their individual emails. Which of the following is the GREATEST risk associated with this application?

Options:

A.

Lack of application vulnerability scanning

B.

Data format incompatibility

C.

Insufficient rate limiting for APIs

D.

Inadequate controls over parameters

Buy Now
Question # 55

During the creation of a new large language model (LLM), an organization procured training data from multiple sources. Which of the following is MOST likely to address the CISO's security and privacy concerns?

Options:

A.

Data augmentation

B.

Data minimization

C.

Data classification

D.

Data discovery

Buy Now
Question # 56

Which of the following MOST effectively addresses bias in generative AI models?

Options:

A.

Data minimization

B.

Data augmentation

C.

Adversarial training

D.

Fairness constraints

Buy Now
Question # 57

A global organization experienced multiple incidents of staff pasting confidential data into public chatbots. Which action is MOST important to reduce short-term risk?

Options:

A.

Deliver role-based, scenario-driven AI security training mapped to job functions

B.

Require employees to complete an annual generic phishing and deepfake module

C.

Publish an AI acceptable use policy and collect signatures

D.

Block access to public LLMs at the network perimeter

Buy Now
Question # 58

When preparing for an AI incident, which of the following should be done FIRST?

Options:

A.

Establish recovery processes for AI system models and datasets

B.

Establish a cross-functional incident response team with AI knowledge

C.

Implement a clear communication channel to report AI incidents

D.

Create containment and eradication procedures for AI-related incidents

Buy Now
Question # 59

An organization has requested a developer to apply AI algorithms to existing modules in order to improve customer service quality. At this stage, which of the following should be considered FIRST?

Options:

A.

The developer may need to be held accountable for business inquiries raised by customers

B.

IT management may need to revise the service agreement if AI behavior cannot be predefined

C.

Project sponsors may need to agree on a phased approach in order to ensure safe release

D.

The organization may need to explain the performance of the applied AI algorithm

Buy Now
Question # 60

A large financial services organization is integrating a third-party AI solution into its critical fraud detection system. Which of the following is the BEST way for the organization to reduce risk associated with AI vendor and supply chain dependencies?

Options:

A.

Conducting annual vulnerability assessments of the fraud detection system after integration

B.

Focusing on performance testing to ensure the solution meets operational requirements

C.

Establishing contractual agreements requiring vendors to provide evidence of secure development practices

D.

Implementing isolated virtual environments to validate the integration of the fraud detection system with the solution

Buy Now
Question # 61

A financial organization relies on AI-based identity verification and fraud detection services. Which of the following BEST integrates AI security risk into the business continuity plan (BCP)?

Options:

A.

Using explainable AI to document decision paths

B.

Periodic retraining using pre-labeled data

C.

Including AI model supporting infrastructure in disaster recovery scenarios

D.

Duplicating AI microservices across multiple availability zones

Buy Now
Question # 62

Which BEST describes the role of model cards in AI solutions?

Options:

A.

They visualize AI model performance

B.

They document training data and AI model use cases

C.

They help developers create synthetic data

D.

They automatically fine-tune AI models

Buy Now
Question # 63

Which of the following is MOST important for an organization to consider when implementing a preventive security safeguard into a new AI product?

Options:

A.

Input sanitization

B.

Model output monitoring

C.

Penetration testing

D.

Differential privacy

Buy Now
Exam Code: AAISM
Exam Name: ISACA Advanced in AI Security Management (AAISM) Exam
Last Update: Dec 15, 2025
Questions: 255
AAISM pdf

AAISM PDF

$25.5  $84.99
AAISM Engine

AAISM Testing Engine

$28.5  $94.99
AAISM PDF + Engine

AAISM PDF + Testing Engine

$40.5  $134.99