Course Outline
Foundations of AI Security Governance
- Essential principles of AI governance
- Enterprise security frameworks applicable to AI
- Roles and responsibilities of key stakeholders
Methodologies for AI Risk Assessment
- Recognizing and classifying AI security risks
- Threat modeling for systems enabled by AI
- Assessing impact and prioritizing actions
Secure Design of AI Systems
- Designing for confidentiality, integrity, and availability
- Integrating security controls within AI pipelines
- Considerations for managing the model lifecycle
AI Data Protection and Privacy
- Data governance specific to machine learning
- Handling sensitive and regulated data
- Utilization of privacy-enhancing technologies
Monitoring and Securing AI Operations
- Ongoing evaluation of AI behavior
- Identification of drift, anomalies, and misuse
- Operational threat intelligence for AI systems
Regulatory and Compliance Alignment
- Global standards influencing AI security
- Preparing documentation and audits
- Aligning governance with legal obligations
Incident Response for AI Systems
- AI-specific attack vectors and indicators
- Response protocols for compromised models
- Post-incident analysis and remediation
Strategic AI Security Management
- Developing long-term AI security capabilities
- Integrating AI risk into enterprise strategy
- Conducting maturity assessments and continuous improvement
Summary and Next Steps
Requirements
- A solid grasp of cybersecurity risk fundamentals
- Hands-on experience with AI or data-centric systems
- Knowledge of enterprise security governance practices
Target Audience
- Security managers overseeing AI initiatives
- Governance and risk professionals
- Technical leaders accountable for secure AI adoption
Testimonials (3)
inventory and identifying the different risk exposures within AI
Gary Cook - Cybersecurity and Information Technology Risk Division
Course - Introduction to AI Trust, Risk, and Security Management (AI TRiSM)
I really enjoyed learning about AI attacks and the tools out there to begin practicing and actively using for security testing. I took a lot of knowledge away which I didn't have at the beginning and the course met what I hoped it would be. My favorite part shown from the training was Comet Browser and was amazed at what it could do. Definitely something will be looking into more. Overall it was a great course and enjoyed learning all OWASP GenAI Top 10.
Patrick Collins - Optum
Course - OWASP GenAI Security
The profesional knolage and the way how he presented it before us