Question 1
An enterprise CISO is establishing accountability for AI security across business units. Which approach BEST aligns with ISO/IEC 42001 (AI Management System) and NIST AI RMF Govern function expectations?
Correct Answer:
Establish a documented AI security charter with executive sponsorship, defined roles, and an AI governance committee that reports to senior leadership
Question 2
Which of the following is the PRIMARY purpose of an AI security policy within an enterprise security program?
Correct Answer:
To translate executive risk appetite for AI into mandatory rules, roles, and acceptable-use boundaries enforced across the AI lifecycle
Question 3
An AI security committee is being formed. Which membership composition BEST supports cross-functional governance of AI risk?
Correct Answer:
CISO, Chief Data/AI Officer, Privacy/DPO, Legal, Risk, and a business sponsor with documented escalation authority
Question 4
A model card for a deployed customer-service LLM lists training data sources, intended use, and known limitations but omits any security review notes. From an AAISM perspective, what is the MOST significant gap?
Correct Answer:
It does not record adversarial-testing results, prompt-injection mitigations, or sensitive-data handling rules, so security stakeholders cannot verify residual risk
Question 5
An organization is choosing a baseline AI management framework. Which standard formally defines an AI Management System (AIMS) with certification scheme?
Correct Answer:
ISO/IEC 42001
Question 1
Exam overview

About this Exam

Prepare with the AAISM Practice Questions - ISACA Advanced in AI Security Management (AAISM) Exam practice quiz. This question bank includes 100 questions covering risk, security, model, enterprise, and program. Use it to review important concepts, identify knowledge gaps, and build confidence for the related exam, course, or assessment.

More details

Additional Information

AAISM Practice Questions - ISACA Advanced in AI Security Management (AAISM) Exam

This practice set contains 100 questions from the matching question bank and focuses on risk, security, model, enterprise, and program. Work through each question carefully, review the provided solutions, and revisit topics that need more study before your next attempt.

This is an independent study resource intended for practice and review; it is not an official examination or an endorsement by any organization named in the title.

Quiz information

Frequently Asked Questions

The complete question count is available after full access is unlocked.
No fixed duration is currently configured for this quiz.
Question explanations are included where they are available in the quiz content, helping you review the reasoning after answering.
Yes. You can retake the practice test again as you continue studying during your available access period.
After your access is confirmed, you can continue into the complete practice exam from this quiz flow.
Unless explicitly stated otherwise, this page provides independent practice material for study and exam preparation and is not the official examination itself.
Keep studying

Related Questions