Course Outline
Foundations of AI Security Governance
- Fundamental principles of AI governance
- Enterprise security frameworks applicable to AI
- Roles and duties of key stakeholders
Methodologies for AI Risk Assessment
- Identifying and classifying AI security risks
- Threat modelling for AI-enabled systems
- Assessing impact and setting priorities
Designing Secure AI Systems
- Ensuring confidentiality, integrity, and availability in design
- Integrating security controls into AI pipelines
- Considerations for managing the model lifecycle
Protecting AI Data and Privacy
- Data governance practices for machine learning
- Handling sensitive and regulated data responsibly
- Utilising privacy-enhancing technologies
Monitoring and Securing AI Operations
- Ongoing evaluation of AI behaviour
- Identifying drift, anomalies, and misuse
- Applying operational threat intelligence to AI systems
Aligning with Regulations and Compliance
- Global standards influencing AI security
- Preparing documentation and ensuring audit readiness
- Harmonising governance with legal obligations
Incident Response for AI Systems
- Recognising AI-specific attack vectors and indicators
- Executing response workflows for compromised models
- Conducting post-incident reviews and remediation
Strategic AI Security Management
- Developing long-term AI security capabilities
- Embedding AI risk into enterprise strategy
- Conducting maturity assessments and driving continuous improvement
Summary and Next Steps
Requirements
- A solid grasp of cybersecurity risk principles
- Practical experience with AI or data-driven systems
- Knowledge of enterprise security governance practices
Intended Audience
- Security managers supervising AI initiatives
- Governance and risk specialists
- Technical leaders accountable for secure AI adoption
Testimonials (3)
inventory and identifying the different risk exposures within AI
Gary Cook - Cybersecurity and Information Technology Risk Division
Course - Introduction to AI Trust, Risk, and Security Management (AI TRiSM)
I really enjoyed learning about AI attacks and the tools out there to begin practicing and actively using for security testing. I took a lot of knowledge away which I didn't have at the beginning and the course met what I hoped it would be. My favorite part shown from the training was Comet Browser and was amazed at what it could do. Definitely something will be looking into more. Overall it was a great course and enjoyed learning all OWASP GenAI Top 10.
Patrick Collins - Optum
Course - OWASP GenAI Security
The profesional knolage and the way how he presented it before us