CISSP Practice Question (Domain 1: Security and Risk Management)
An organization deploys an AI system that recommends layoffs and budget cuts based on financial and productivity data. Executives approve its use but do not fully understand its decision logic. The recommendations align with profits but raise ethical and reputational concerns internally.
What is the MOST appropriate action for the security leader?
A. Require human review of all AI-generated workforce decisions
B. Document the risk acceptance and ethical considerations in governance records
C. Suspend the AI system until explainability requirements are met
D. Conduct a privacy impact assessment focused on employee data
Come back for the answer tomorrow, or study more now!
5
27 comments
Vincent Primiani
7
CISSP Practice Question (Domain 1: Security and Risk Management)
CISSP Study Group
skool.com/cybersecurity-study-group
Share resources, get advice, and connect with peers studying cybersecurity. Join our CISSP study group and connect with fellow professionals today!
Leaderboard (30-day)
Powered by