ISACA AAISM Exam Prep
ISACA Advanced in AI Security Management (Page 4 )

Updated On: 13-Sep-2026

Which of the following is the MOST critical key risk indicator (KRI) for an AI system?

  1. The amount of data in the model
  2. The rate of drift in the model
  3. The accuracy rate of the model
  4. The response time of the model

Answer(s): B

Explanation:

Model drift - changes in data patterns or the model’s behavior over time - directly affects the reliability, fairness, and safety of an AI system. Monitoring the rate of drift is critical because it signals when the model may no longer perform as intended, posing operational, ethical, or regulatory risks.



How can an organization BEST protect itself from payment diversions caused by deepfake attacks impersonating management?

  1. Require mandatory deepfake detection training for all employees.
  2. Implement resilient payment approval processes.
  3. Mandate that payments be sent only once per week.
  4. Issue a security policy on deepfakes.

Answer(s): B

Explanation:

Resilient payment approval processes - such as multi-step verification, dual authorization, and out-of-band confirmation - provide strong safeguards against deepfake impersonation attacks. These controls reduce the risk of fraudulent payments by ensuring that no single communication or request, even if convincingly impersonated, can authorize a financial transaction.



Which of the following technologies can be used to manage deepfake risk?

  1. Adaptive authentication
  2. Multi-factor authentication (MFA)
  3. Systematic data tagging
  4. Blockchain

Answer(s): D

Explanation:

Blockchain can help manage deepfake risk by providing a tamper-evident, verifiable record of media origin and modifications. By ensuring content authenticity and traceability, organizations can detect and prevent the misuse of deepfakes in critical communications and transactions.



An organization is facing a deepfake attack intended to manipulate stock prices. The organization's crisis communication plan has been activated.
Which of the following is MOST important to include in the initial response?

  1. Engage with brand monitoring services to track social media activity.
  2. Conduct a detailed forensic analysis to identify the source of the deepfake.
  3. Provide clarifying information in a pre-approved public statement.
  4. Conduct employee awareness training on recognizing deepfake videos and audio.

Answer(s): C

Explanation:

During a crisis such as a deepfake attack affecting stock prices, the immediate priority is to communicate accurate, authoritative information to the public and stakeholders. A pre-approved statement ensures timely, consistent messaging that mitigates misinformation and reputational damage, stabilizing market and public response while further investigations proceed.



Which of the following BEST reduces the risk of exposing sensitive data through the output of large language models (LLMs) in applications?

  1. Enforcing least privilege access
  2. Conducting adversarial testing
  3. Encrypting data in transit and at rest
  4. Implementing data sanitization techniques

Answer(s): D

Explanation:

Data sanitization removes or obfuscates sensitive information from datasets and model outputs. For LLM applications, this practice directly reduces the risk of inadvertently exposing confidential or personal data through generated responses, ensuring privacy and regulatory compliance.



Viewing page 4 of 76
Viewing questions 16 - 20 out of 371 questions


Post your Comments and Discuss ISACA AAISM exam prep with other Community members:

AI Tutor AI Tutor 👋 I’m here to help!