Activity
Mon
Wed
Fri
Sun
Mar
Apr
May
Jun
Jul
Aug
Sep
Oct
Nov
Dec
Jan
Feb
What is this?
Less
More

Memberships

CyberMAYnia CAREER

226 members • Free

CISSP Study Group

1.9k members • Free

40 contributions to CISSP Study Group
CISSP Practice Question (Domain 2: Asset Security)
An organization allows multiple business units to deploy their own AI agents using shared enterprise data lakes. Each unit claims ownership of its AI outputs, while data sources remain centrally managed. A dispute arises after an AI-generated report exposes sensitive correlations between departments. What is the MOST appropriate action to take FIRST? A. Reclassify the AI-generated outputs under the highest data sensitivity level B. Clarify and formally assign data ownership and stewardship for AI-derived assets C. Segregate AI workloads by business unit to prevent cross-correlation D. Implement stronger access controls on the shared data lake Come back for the answer tomorrow, or study more now!
0 likes • 6d
B
CISSP Practice Question (Domain 1: Security and Risk Management)
An organization deploys an AI system that recommends layoffs and budget cuts based on financial and productivity data. Executives approve its use but do not fully understand its decision logic. The recommendations align with profits but raise ethical and reputational concerns internally. What is the MOST appropriate action for the security leader? A. Require human review of all AI-generated workforce decisions B. Document the risk acceptance and ethical considerations in governance records C. Suspend the AI system until explainability requirements are met D. Conduct a privacy impact assessment focused on employee data Come back for the answer tomorrow, or study more now!
1 like • 9d
For me it’s C) Suspend the AI system until explainability requirements are met This will address the governance failure. If executives don’t understand the AI decision logic, the organisation cannot demonstrate accountability, fairness, or ethical compliance. Suspending the system until explainability is achieved is the only viable way forward.
CISSP Practice Question (Domain 3: Security Architecture and Engineering)
A financial services company needs to share highly sensitive customer transaction data with a third-party analytics provider. The company's legal department mandates that the third-party must be able to perform statistical analysis on the data, but the data must remain encrypted at all times, including while it is being processed by the provider's algorithms to ensure the company never loses control over the plaintext. What is the MOST appropriate cryptographic solution to meet this requirement? A. Symmetric encryption using AES-256 with a managed Key Vault B. Asymmetric encryption using RSA-4096 with Perfect Forward Secrecy C. Homomorphic encryption D. Quantum-resistant cryptography
1 like • 11d
C homomorphic. Provides encryption is in use.
CISSP Practice Question (Domain 1: Security and Risk Management)
A business unit deploys an AI agent that autonomously negotiates vendor contracts within predefined spend limits. The agent improves efficiency but occasionally commits the company to unfavorable terms. Executives want to continue using it. What is the MOST appropriate action for the security leader? A. Disable autonomous execution and require human approval for commitments B. Update the organization’s risk register to reflect agent decision authority C. Require explainability reports for every AI-driven contract decision D. Transfer contractual risk to vendors through revised legal language Come back for the answer tomorrow, or study more now!
1 like • 12d
@Vivek Sridhar I kind of see your logic, but can’t get my head around it. You’d still be using the AI to do the negotiation stuff just not allowing it sign off the deal. What am I missing?
1 like • 12d
@Vivek Sridhar I understand, I took the executives want too flippantly. Thanks for explaining it again.
The Modern Cybersecurity Guide
as we all know, cybersecurity is racing ahead of us and 2026 looks to be a huge year for continual learning and cyber defence. A friend sent me this Magazine, I think you’ll all find it of interest.
1-10 of 40
Allison Regan
4
66points to level up
@allison-regan-1007
Electronics engineer working on transitioning into the cybersecurity field. Proud to have passed, CompTIA Security+, ISC2 CC, CSA CCSK & CCZT CCEP

Active 6d ago
Joined Nov 15, 2025
Scotland. United Kingdom
Powered by