AI Exam Guidance - CISSP Practice Question (Domain 3: Security Architecture and Engineering)
A healthcare company deploys a diagnostic AI system that recommends treatment options. Regulators require the organization to explain how the model reaches its conclusions. The security architect proposes encrypting the model's internal weights to protect intellectual property. What concern should the CISO raise FIRST?
A. Encryption at rest is insufficient without also encrypting data in transit between inference nodes
B. Protecting model weights may conflict with the regulatory requirement for explainability
C. The model should be hosted in a secure enclave to prevent adversarial extraction attacks
D. A third-party penetration test should validate the encryption implementation before deployment
Come back for the answer tomorrow, or study more now!
1
23 comments
Vincent Primiani
7
AI Exam Guidance - CISSP Practice Question (Domain 3: Security Architecture and Engineering)
CISSP Study Group
skool.com/cybersecurity-study-group
Share resources, get advice, and connect with peers studying cybersecurity. Join our CISSP study group and connect with fellow professionals today!
Leaderboard (30-day)
Powered by