Domain 1 Part D: AI Security Program Development and Management Flashcards

(21 cards)

1
Q

What is “AI security”?

A

Systematic management of risks to ensure AI systems are robust, reliable, and resilient against threats

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is the acronym to remember the 8 protocols and practices for an AI security program?

A

STDDDAMP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the 8 protocols/practices for an AI security program?

A
  1. Societal adaptation
  2. Trust but verify
  3. Design AUP
  4. Designate AI lead
  5. Develop set of AI ethics
  6. Adapt cyber program
  7. Mandate audits and traceability
  8. Perform a cost analysis
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the idea behind “trust but verify”?

A

Outputs must be constantly validated

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are 3 prominent models for AI ethics?

A
  • UNESCO, Recommendation on the Ethics of AI
  • IBM, “What are AI Ethics?”
  • U.S. Department of Defense
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are 8 categories of AI metrics?

A
  1. Accountability
  2. Fairness
  3. Human well-being
  4. Performance
  5. Privacy and data governance
  6. Robustness and digital security
  7. Safety
  8. Transparency and explainability
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the mnemonic device to remember the 8 categories of AI metrics?

A

FASTHRPP

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

As a metric, what does accountability mean?

A
  • Obligation to ensure systems operate in ethical, fair, transparent, and compliant manner
  • Ensures outputs traceable to responsible party
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

As a metric, what does fairness mean?

2

A

Systems should be designed to:

  • Avoid bias
  • Ensure equitable outcomes
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

As a metric, what does well-being mean?

A

Enhance human flourishing while respecting human rights and fundamental freedoms

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

As a metric, what does performance mean?

A

Achieve intended purpose effectively and efficiently

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

As a metric, what does privacy and data governance mean?

A

Respect privacy rights and ensure secure and ethical management of data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

As a metric, what does robustness and digital security mean?

A

Resilient and secure against adversarial threats and errors

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

As a metric, what does safety mean?

A

Minimize risk to people, property, and the environment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

As a metric, what does transparency and explainability mean?

A

Rationale behind outputs should be understandable and accessible

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What are 5 AI security use cases?

A
  • Log analysis
  • APT malware detection
  • Behaviorial AI
  • Threat intelligence
  • Phishing detection
17
Q

What actions does AI-enabled log analysis take?

2

A
  • Capture and pair errors with knowledge base
  • Create new error and suggest solution
18
Q

What is an APT?

2

A
  • Sophisticated, targeted long-term cyber attack
  • Long-term unauthorized access without detection
19
Q

How does APT malware detection work?

A
  • Performs probabilistic inference on unknown PowerShell commands
  • Implicitly learns nonlinear combinations/patterns
20
Q

What does Behavioral AI focus on?

A

Human behavior to detect anomalies/threats

21
Q

How does AI-enabled threat intelligence work?

2

A
  • Existing tools + GenAI
  • Provides insights on new patterns, detection