DashboardDomain 5 of 6

Security

AI threat modeling, adversarial robustness, PII handling, incident response, and regulatory compliance.

0 of 12 answered 12 unanswered
CriticalW:3

Is AI model security (adversarial robustness, prompt injection protection) addressed?

Not PresentOptimized
CriticalW:3

Are AI systems included in your threat modeling and security review processes?

Not PresentOptimized
CriticalW:3

Is there a policy for handling PII and sensitive data in AI model training and inference?

Not PresentOptimized
W:2

Are AI models and data pipelines subject to penetration testing?

Not PresentOptimized
CriticalW:2

Is model explainability required for high-risk AI decisions?

Not PresentOptimized
W:2

Are access controls and least-privilege enforced for AI training environments?

Not PresentOptimized
CriticalW:2

Do you have an AI incident response plan?

Not PresentOptimized
W:2

Is there supply chain security assessment for third-party ML models or datasets?

Not PresentOptimized
W:2

Are AI systems audited for bias, fairness, and discriminatory outcomes?

Not PresentOptimized
W:2

Is there encryption at rest and in transit for all AI training data?

Not PresentOptimized
W:1

Is there a process for responsible disclosure of AI model failures?

Not PresentOptimized
CriticalW:2

Are AI-related regulatory compliance requirements (GDPR, AI Act, etc.) tracked?

Not PresentOptimized