Course Outline
Foundations of AI Security Governance
- Essential principles of AI governance
- Enterprise security frameworks applicable to AI
- Roles and responsibilities of key stakeholders
AI Risk Assessment Methodologies
- Identification and classification of AI security risks
- Threat modeling for AI-enabled systems
- Conducting impact assessments and setting priorities
Designing Secure AI Systems
- Ensuring confidentiality, integrity, and availability in design
- Deploying security controls within AI pipelines
- Considerations for managing the model lifecycle
AI Data Protection and Privacy
- Data governance practices for machine learning
- Handling sensitive and regulated data
- Utilizing privacy-enhancing technologies
Monitoring and Securing AI Operations
- Continuous assessment of AI behavior
- Identifying drift, anomalies, and misuse
- Applying operational threat intelligence to AI systems
Regulatory and Compliance Alignment
- International standards affecting AI security
- Preparing documentation for audits
- Aligning governance with legal obligations
Incident Response for AI Systems
- AI-specific attack vectors and warning signs
- Workflows for responding to compromised models
- Conducting post-incident reviews and remediation
Strategic AI Security Management
- Developing long-term AI security capabilities
- Integrating AI risk into overall enterprise strategy
- Conducting maturity assessments for continuous improvement
Summary and Next Steps
Requirements
- A solid grasp of cybersecurity risk principles
- Practical experience with AI or data-driven systems
- Knowledge of enterprise security governance
Intended Audience
- Security managers overseeing AI initiatives
- Professionals in governance and risk management
- Technical leaders tasked with secure AI adoption
Testimonials (3)
inventory and identifying the different risk exposures within AI
Gary Cook - Cybersecurity and Information Technology Risk Division
Course - Introduction to AI Trust, Risk, and Security Management (AI TRiSM)
I really enjoyed learning about AI attacks and the tools out there to begin practicing and actively using for security testing. I took a lot of knowledge away which I didn't have at the beginning and the course met what I hoped it would be. My favorite part shown from the training was Comet Browser and was amazed at what it could do. Definitely something will be looking into more. Overall it was a great course and enjoyed learning all OWASP GenAI Top 10.
Patrick Collins - Optum
Course - OWASP GenAI Security
The profesional knolage and the way how he presented it before us