
ISACAAdvanced in AI Security Management
Domain 2Objective 3
AI Vendor and Supply Chain Management AAISM Practice Questions (Page 2)
Part of the AI Risk Management domain, which accounts for 31% of the AAISM exam.
32questions here
7free pages
7concepts
31%of the exam
Questions 6–10
- 6
Which action is part of a secure data disposal process when terminating a vendor relationship?
Select an answer first - 7
A global bank is evaluating an AI vendor for fraud detection. The vendor uses a third-party data enrichment service that processes customer data. The vendor has a strong security posture but the data enrichment service is located in a country with different data protection laws. The bank's compliance team requires that all customer data be processed in compliance with the bank's data residency requirements. What is the BEST course of action?
Select an answer first - 8
A bank's AI vendor has experienced a data breach that may have exposed customer information. The bank's incident response team needs to coordinate with the vendor to manage the breach. What is the FIRST step the bank should take?
Select an answer first - 9
Which clause is typically included in a vendor contract to address data privacy requirements?
Select an answer first - 10
A financial services firm is evaluating a new AI vendor that will process customer transaction data. The vendor is a startup with a strong product but limited history. The firm's compliance team requires assurance that the vendor can meet regulatory obligations for data protection. Which action should the firm take FIRST?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “AAISM” is a trademark of its owner, used for identification only.