Instructions: Use the drop-down menus to define two appropriate security controls for each component of the AI system. Each control may be used only once.
An engineer is deploying a new AI system and wants to integrate it into the core system through an API.

An AI security architect needs to conduct a security review of a new AI chatbot. Which of the following resources would the architect most likely rely on to perform a threat assessment and ensure comprehensive coverage during the review?
Which of the following International Organization for Standardization (ISO) standards contains compliance requirements for building an AI management system?
Which of the following is required first in order to send a prompt query and response in a language model (LLM) system when authentication is enabled?
A security operations center (SOC) has a very high volume of logs and alerts. The manager proposes the implementation of a machine learning (ML) system to help with triage.
Which of the following tasks is most suitable?
After the deployment of an AI system, an organization is unable to identify who approved the system and the method of validation. Which of the following governance failures occurred?
A security analyst notices that regardless of user-submitted prompts, an AI model always returns unsanitized responses. These responses are then passed to multiple plug-ins. The analyst is concerned with the potential security implications.
Which of the following Open Worldwide Application Security Project (OWASP) categories addresses this vulnerability?
Which of the following job roles in an organizational governance structure develops a model from business use cases?
A management team is concerned about an unexpected cost increase for a public-facing AI chatbot.
Which of the following should a security administrator examine first to determine the root cause?
User experience is declining since the launch of a large language model (LLM) in internal networks.
Which of the following should be the highest priority for the prompt engineers?
For which of the following situations would a human-in-the-loop be most recommended?
Which of the following International Organization for Standardization (ISO) standards should be selected for certification to use for third-party assurance for responsible AI practices?
A team of data scientists is ready to release a model for enterprise use. The team wants to protect the model from unintentional changes or tampering.
Which of the following is the most appropriate action?
Which of the following describes the most significant risk associated with AI agents that make autonomous decisions?
A financial organization implements a new AI-based fraud detection system to flag suspicious transactions. A security analyst discovers that it occasionally blocks legitimate transactions.
Which of the following is the best recommendation?
A recently deployed AI system becomes persistently unavailable. A restart temporarily fixes the issue, but the issue happens again. Upon examination of API logs, an analyst finds that external calls continued to use system resources after the action completed.
Which of the following is the best way to improve availability of the system?
An administrator, who works for a financial institution, is required to implement data security controls for data at rest within AI systems that involve data disclosure.
Which of the following is the most suitable control?
An organization implements a domain-specific AI chatbot. After operating normally for weeks, the model returns contextually incorrect responses — treating ' worm ' as a biological pest rather than a computer worm when answering a cybersecurity question.
Which of the following should the organization do to address the issue?
Which of the following should an auditor reference when reviewing a company ' s human resources AI systems for legal non-compliance?
Which of the following roles best supports the implementation of AI governance, risk, and compliance (GRC)? (Choose two.)
Which of the following controls is the best way to mitigate a denial-of-service (DoS) attack?
A company is adopting AI and wants to create policies and procedures that include a structure for evaluating, publishing, and approving patterns for AI usage.
Which of the following should the company establish to meet this goal?
A data scientist asks about controls for public vs. private models used for training. A security agent responds by listing several factors to evaluate when making that determination. Which of the following is the most critical control?
An organization wants to reduce vulnerabilities after deployment. The organization decides to incorporate an AI-assisted early detection and vulnerability identification process in its development workflow.
Which of the following AI-assisted functions is the best option?
Which of the following describes the number of training cycles used in an AI model for threat detection?
A data scientist investigates reports that a production machine learning (ML) model no longer performs with accuracy.
The data scientist finds the following pipeline log entries:

Which of the following should the security team do to mitigate future occurrences?
A security administrator sees suspicious queries on AI logs.
Which of the following should the administrator implement to address this issue?
An automobile manufacturer implements a chatbot to assist with configuration options for customer automobiles. Given a customer ' s prompt, the chatbot gives offensive responses.
Which of the following describes this behavior?
Which of the following strengthens the performance of a large language model (LLM) for malicious reconnaissance?
A security administrator wants to prevent prompt injection attacks and ensure responses have sanitized output.
Which of the following provides a primary compensating control for these requirements?
An analyst wants to develop a solution to review security information and event management (SIEM) logs for endpoint analytics. Which of the following is a benefit of a small language model (SLM) compared to a large language model (LLM) when cost efficiency is a consideration?
A security administrator must implement security controls for AI systems.
Which of the following access controls should the administrator set up first for authentication?
A security administrator needs to improve an AI model. During an initial investigation, the administrator notices that two successive login failures are recorded every day, and then a successful login occurs after a specific time interval. All the successful login attempts have been during office hours.
Which of the following techniques should the administrator use to improve the AI model ' s security?
Which of the following is the primary purpose of validating data for an AI system?
A customer using a travel chatbot reports that the chatbot responds with the following:
def choose_location(location):
if location == " United States of America " :
print( " You have selected an authorized travel destination " )
elif location == " Europe " :
print( " You have selected an unauthorized travel destination " )
Which of the following remediates this issue?
A healthcare company deploys an AI chatbot that implements retrieval-augmented generation (RAG) using the company ' s historical data set. The chatbot output contains patient information.
Which of the following is the most effective technique to mitigate this vulnerability?
An engineer is analyzing findings from a penetration test that indicate insufficient data encryption. The report also indicates that additional controls must be placed on the data. To protect against loss of intellectual property, the engineer must implement data security.
Part 1: Use drop-down menu to select the most appropriate protocol or cipher for each system component.
Part 2: Use the drop-down menu to select the most appropriate technique to apply to the modified data.

A security architect performs threat modeling of an AI system. The architect needs to determine which attacks can be performed against the system.
Which of the following actions should the architect take next?
An administrator must conduct generative AI cost monitoring for use in the healthcare industry.
Which of the following criteria is the best way to calculate this cost?
Which of the following attacks would be the best to automate with AI during dynamic application software testing (DAST)?
An organization recently created a custom model that integrates with a language model (LLM). The developer notices that the application programming interface (API) costs have increased.
Which of the following is the best control to reduce cost?
A developer is selecting authentication controls for an AI system.
Which of the following is the best way to prevent threat actor replay attacks?