
ISACAAdvanced in AI Security Management
Domain 2Objective 2
AI Threat and Vulnerability Management AAISM Practice Questions (Page 7)
Part of the AI Risk Management domain, which accounts for 31% of the AAISM exam.
38questions here
8free pages
11concepts
31%of the exam
Questions 31–35
- 31
A security architect is creating a threat model for an AI system that uses a public dataset for training and is deployed in a containerized environment. The architect wants to identify the most critical attack surface. Which element should be considered the highest-risk attack surface?
Select an answer first - 32
A multinational corporation is implementing a vulnerability management program for its AI systems. The program must comply with GDPR and industry regulations. Which practice is most important to include?
Select an answer first - 33
A healthcare startup uses a proprietary diagnostic model hosted as a public API. A competitor launches a similar service, and the startup suspects model extraction. The startup's security team must respond without disrupting clinical operations. Which response is most appropriate?
Select an answer first - 34
What is the purpose of risk scoring in AI vulnerability management?
Select an answer first - 35
Which factor is typically considered when prioritizing AI vulnerabilities?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “AAISM” is a trademark of its owner, used for identification only.