CHAPTER 0

Understanding the AAISM Certification

Every generation of technology introduces new categories of risk, and every new category of risk eventually demands a new class of professional who can navigate it. In the age of Artificial Intelligence — an age that has arrived not with a whisper but with an extraordinary reshaping of the enterprise landscape — that class of professional is one who understands not only how to secure systems in the conventional sense, but how to govern, manage, and control systems whose behaviour is, by their very nature, probabilistic, evolving, and often opaque.

The ISACA Advanced in AI Security Management certification — known by the acronym AAISM — is ISACA's considered response to precisely this challenge. It is a credential designed for experienced information security professionals who already carry on their shoulders the weight of a foundational certification such as CISM or CISSP, and who now seek to extend that foundation into the specialised domain of artificial intelligence security.

This opening chapter does not yet venture into the technical depths of AI governance frameworks or the intricacies of machine learning model risk. Those discussions await in the chapters that follow. Rather, this chapter serves as the gateway — the orientation hall, if you will — where the thoughtful candidate pauses to understand the nature of the journey ahead: what the AAISM certification is, why it matters, how the examination is structured, what the examination process demands, and how best to use this book as a companion along the way.

0.1 The World That Made AAISM Necessary

To appreciate any certification, one must first appreciate the problem it was created to solve. AAISM was born out of a recognition that the rapid proliferation of AI technologies across enterprise environments has created a qualitatively different class of security and governance challenge — one that existing certifications and frameworks were not wholly equipped to address.

Consider the landscape: organisations today deploy AI systems that make or influence decisions about credit approvals, medical diagnoses, fraud detection, supply chain procurement, employee performance evaluation, and national security. These systems ingest vast quantities of data, learn from patterns in that data, and generate outputs that carry real-world consequences. The security professional tasked with protecting such systems must grapple with questions that were simply not on the agenda a decade ago.

What does it mean to audit an AI model? How does one govern a system whose decision-making is distributed across millions of weighted parameters? What are the regulatory obligations imposed by legislation such as the European Union AI Act, and how do they interact with existing data protection frameworks? How does a security team manage the risk of data poisoning, adversarial attacks, or model drift? How do we ensure that an AI system is not merely accurate but also fair, transparent, and accountable?

These are not abstract philosophical questions. They are operational necessities. And the AAISM certification exists to validate that a professional has acquired the knowledge and practical judgement needed to answer them.

📘Key Concepts
  • AAISM stands for Advanced in AI Security Management — issued by ISACA.
  • It is designed for professionals who already hold a CISM or CISSP certification.
  • The certification validates expertise in securing enterprise AI solutions and using AI to improve security operations.
  • ISACA is a global association of over 460,000 professionals across 190+ countries in information and cybersecurity, governance, assurance, risk, and innovation.
  • Passing the exam is necessary but not sufficient — candidates must also meet experience and ethics requirements to become certified.

0.2 About ISACA — The Body Behind the Certification

Before one prepares for any ISACA examination, it is worth pausing to understand the institution itself. ISACA — originally an acronym for the Information Systems Audit and Control Association, though the organisation now goes simply by the initialism — has grown, over its decades of existence, into one of the most respected professional bodies in the global technology governance landscape.

ISACA equips professionals with the knowledge, credentials, education, and community to advance their careers and transform their organisations. Its credentialing portfolio spans a wide spectrum, from the venerable CISA (Certified Information Systems Auditor) and CRISC (Certified in Risk and Information Systems Control), to the more recent CISM (Certified Information Security Manager) and now, reflecting the demands of our present moment, the family of AI-focused certifications that includes AAIA, AAIR, and AAISM.

Two aspects of ISACA's institutional character are particularly worth noting for the AAISM candidate. First, ISACA certifications are grounded in a Code of Professional Ethics — a formal commitment that members and certification holders are required to uphold. Failure to comply can result in serious consequences, including examination score nullification or certification revocation. The AAISM professional is not merely a technical practitioner but an ethical steward. Second, ISACA examinations are not memory tests. They are designed to measure practical knowledge and the application of general concepts and standards — a distinction that has important implications for how one studies, as we shall discuss.

💡Food for Thought
  • ISACA's Code of Ethics asks professionals to support the implementation and advancement of information systems governance — not simply to pass examinations.
  • Consider: In an AI-enabled enterprise, what does ethical stewardship look like in practice? When an AI system produces a biased output, who is accountable — the model, the developer, or the security manager who approved its deployment?
  • The AAISM certification places ethics not at the periphery but at the centre of the AI security professional's responsibilities. This is a deliberate choice — and an important one.

0.3 The AAISM Examination: A Structural Overview

At its heart, the AAISM examination is a computer-based assessment comprising ninety multiple-choice questions, to be completed within two and a half hours. Each question presents a stem — which may be a direct question or an incomplete statement — and four possible answer options, from which the candidate must select the single best answer. There are no partially correct answers and no penalties for incorrect responses; every unanswered question is therefore an opportunity wasted.

The examination is administered either at authorised PSI testing centres located globally, or as a remotely proctored online examination that can be taken from the comfort of one's own home or office. Both delivery modes are subject to strict proctoring requirements, which we shall examine in detail shortly.

0.3.1 The Three Domains at a Glance

The AAISM examination content is organised around three broad domains. These domains are not of equal weight, and the prudent candidate will calibrate their study effort accordingly.

Domain Name Weight Key Sub-areas
Domain 1 AI Governance and Program Management 31% Stakeholder roles, frameworks, regulations, strategy, policy, asset management, incident response
Domain 2 AI Risk and Opportunity Management 31% Risk identification, frameworks (NIST, EU AI Act), threat landscape, vendor and supply chain management
Domain 3 AI Technologies and Controls 38% AI architecture, life cycle management, data controls, privacy, ethics, trust, safety, security monitoring

Several observations are immediately instructive. Domain 3 — AI Technologies and Controls — carries the heaviest weight at thirty-eight percent, reflecting the technical depth that the modern AI security professional must possess. Domains 1 and 2 share equal weight at thirty-one percent each, together accounting for the majority of the examination. A candidate who neglects the governance and risk dimensions of AI security in favour of purely technical preparation does so at considerable peril.

Equally important is the recognition that these three domains are not isolated silos. AI governance informs risk management; risk management shapes technical control choices; technical controls must be governed and their performance must be managed. The examination frequently tests the candidate's ability to reason across domain boundaries — to understand not merely what a control is, but why it is chosen in a given context, what governance structure authorises it, and what risk scenario it addresses.

📘Key Concepts
  • Domain 1 — AI Governance and Program Management (31%): Covers stakeholder roles, frameworks, regulations, strategy, policy, asset management, and incident response.
  • Domain 2 — AI Risk and Opportunity Management (31%): Covers risk identification and treatment, threat and vulnerability management, and vendor/supply chain risk.
  • Domain 3 — AI Technologies and Controls (38%): Covers AI architecture and design, AI life cycle, data management, privacy/ethics/trust/safety, and security monitoring.
  • All 90 questions are multiple-choice, with one best answer each.
  • Duration: 2.5 hours (150 minutes). Pace: approximately 100 seconds per question.
  • No marks are deducted for incorrect answers — never leave a question blank.

0.4 Prerequisites and Eligibility

AAISM is explicitly designed for seasoned professionals. Unlike entry-level certifications, it presupposes a foundation of established competence. The eligibility pathway has two critical prerequisites that must be satisfied before certification can be awarded — though not, it is important to note, before the examination can be attempted.

Step Requirement
Step 1 Hold an active CISM (ISACA) or CISSP (ISC2) certification at the time of application.
Step 2 Pass the AAISM examination with a scaled score of 450 or higher (on a scale of 200 to 800).
Step 3 Pay the USD 50 application processing fee.
Step 4 Submit the formal application for certification to ISACA.
Step 5 Adhere to ISACA's Code of Professional Ethics, Terms of Use, and Privacy Policy.
Step 6 Adhere to the AAISM Continuing Professional Education (CPE) Policy to maintain the credential.

The requirement to hold an active CISM or CISSP is worth dwelling upon for a moment. It is not a bureaucratic gatekeeping mechanism but a meaningful signal about the nature of the credential. The AAISM is conceived as an advanced specialisation, not a foundation. A candidate who has earned the CISM or CISSP has already demonstrated broad knowledge of information security management principles. The AAISM then builds upon that foundation to address the particular challenges that AI introduces into the enterprise security landscape.

For candidates who are simultaneously preparing for both a prerequisite certification and the AAISM, the good news is that the domains overlap meaningfully. Risk management principles, governance frameworks, incident response methodologies, and vendor management concepts appear in both the CISSP and CISM curricula and resurface — in an AI-specific context — in the AAISM domains.

🎯Exam Tip
  • You can register for and sit the AAISM examination before you hold the CISM or CISSP — but you cannot apply for the AAISM certification until the prerequisite is active.
  • If you are close to completing your CISSP or CISM, you may strategically schedule the AAISM exam in parallel to maximise your momentum.
  • Exam fees are non-refundable and non-transferable. Confirm your eligibility and readiness before registering.

0.5 Registration, Scheduling, and Practical Logistics

The examination is administered through PSI, ISACA's testing partner. Registration is continuous — there is no fixed examination window or application deadline — which offers the candidate considerable flexibility in planning their preparation timeline. Once the registration fee is paid, the candidate receives a six-month eligibility window within which the examination must be scheduled and attempted.

0.5.1 Examination Fees

The registration fee varies by ISACA membership status at the time of registration:

  • ISACA Member: USD 459

  • Non-member: USD 599

Should additional time be required, a six-month eligibility extension is available for USD 75, provided the extension is requested within thirty days before or after the expiry of the original eligibility period. Note that a maximum of one extension is permitted per examination registration.

0.5.2 Testing Options

Candidates have the choice of two examination delivery modes, each with its own set of requirements and considerations.

At a PSI Testing Centre: Candidates should plan to arrive at least thirty minutes before their scheduled appointment, carrying a valid government-issued photo identification that exactly matches the name used during registration. The name match requirement is enforced strictly — a discrepancy can result in being turned away from the examination, with forfeiture of the registration fee. Acceptable identification includes a passport, driver's licence, or national identity card. Digital IDs and military IDs are not accepted.

Via Online Remote Proctoring: The remote proctoring option allows candidates to sit the examination from a suitable location — typically a private room free from interruptions. Before the examination begins, the candidate must complete a mandatory room scan, during which a proctor verifies the examination environment through the webcam. The room must be clear of all reference materials, notes, and additional electronic devices. The proctor monitors the candidate continuously throughout the examination session.

0.5.3 Prohibited Items and Conduct

Whether sitting at a testing centre or taking the examination online, the rules governing permissible conduct are consistent and strictly enforced. The following items are expressly prohibited during the examination:

  • Reference materials, study notes, books, or paper of any kind

  • Calculators or any form of computational device

  • Mobile phones, tablets, smart watches, earbuds, or any electronic communication device

  • Food, beverages, or tobacco products — including water

  • Multiple monitors; only one display screen is permitted

Beyond prohibited items, certain behaviours will result in immediate examination termination and forfeiture of fees — including attempting to record, photograph, or reproduce examination content; communicating with another person during the examination; or leaving the designated examination area without proctor permission. One break of no longer than ten minutes is permitted during the examination, but the examination timer continues to run during this break.

🎯Exam Tip
  • The exam timer does NOT pause during a break. Budget your time carefully — a ten-minute break costs you ten of your one hundred and fifty minutes.
  • For online proctoring, conduct a room scan rehearsal before exam day. Ensure your workspace is completely clear, your webcam functions properly, and your internet connection is stable.
  • Wear a simple, plain outfit on exam day. Proctors are trained to notice any accessories that might conceal communication devices.

0.6 Understanding the Scoring System

ISACA uses a scaled scoring methodology for the AAISM examination. A scaled score converts a candidate's raw performance — the actual number of questions answered correctly — to a standardised score on a common scale, ensuring fairness and comparability across different versions of the examination that may vary slightly in difficulty.

The scoring scale runs from 200 to 800. A perfect score of 800 indicates that all questions were answered correctly. A score of 200 represents the lowest possible result. The passing threshold is a scaled score of 450. Candidates who score at or above 450 are eligible to proceed to the certification application process.

One consequence of the scaled scoring methodology is that it is not straightforward to express the passing threshold as a simple percentage of questions correct. The exact correspondence varies depending on the specific examination version. However, as a rule of thumb, a candidate who consistently answers approximately sixty to sixty-five percent of practice questions correctly under timed conditions should be approaching the preparedness required to pass, though the precise threshold may differ.

Candidates receive a preliminary pass/fail status on screen immediately upon completing the examination. Official score results, available through MyISACA, are released within ten working days. Domain-level performance indicators are provided for informational purposes only — the final examination score is calculated on the basis of total correct answers, regardless of which domain a question belongs to.

0.6.1 Rescore and Retake Policy

Should a candidate wish to contest their score, a rescore request may be submitted to ISACA within thirty days of the release of the official results, accompanied by a fee of USD 75. Rescores are processed by PSI, and ISACA does not reissue scores on the basis of question updates made after the examination.

The retake policy is structured as follows:

Attempt Waiting Period
Attempt 1 First sitting — no waiting period required
Attempt 2 (Retake 1) Minimum 30 days after Attempt 1
Attempt 3 (Retake 2) Minimum 90 days after Attempt 2
Attempt 4 (Retake 3) Minimum 90 days after Attempt 3

Candidates who successfully pass the examination are restricted from retaking it within the subsequent five-year application window. Certified holders are similarly restricted from sitting the same examination while their certification remains active.

💡Food for Thought
  • Four attempts within twelve months may sound generous. In practice, the cost of repeated examination attempts — in registration fees, time, and professional confidence — makes it far preferable to prepare thoroughly for the first sitting.
  • Think of AAISM preparation the way a distance runner thinks of a race: the race is won during months of training, not on race day. Consistent, structured daily study is invariably more effective than intensive last-minute cramming.
  • As a CISSP or CISM holder, you already know how to prepare for a rigorous professional examination. Trust that foundation — and build upon it.

0.7 The Anatomy of an AAISM Question

Perhaps no aspect of examination preparation is more important — or more frequently misunderstood — than understanding how ISACA frames its questions. AAISM examination questions are not trivia questions. They do not ask a candidate to recite definitions verbatim. They are scenario-based assessments of practical judgement.

The standard ISACA question structure consists of a stem — which presents a scenario, situation, or incomplete statement — followed by four options labelled A, B, C, and D. The candidate must select the single best answer. The word 'best' is significant. In many AAISM questions, multiple options may be partially correct or contextually applicable; the examination tests the candidate's ability to identify the most appropriate, most complete, or most primary response in the context of the specific scenario presented.

Qualifiers such as 'MOST likely', 'BEST', 'FIRST', 'PRIMARY', and 'GREATEST' appear frequently and carry deliberate semantic weight. A question asking what a security manager should do FIRST is asking about sequencing and priority. A question asking what the GREATEST risk is requires the candidate to weigh and rank, not merely identify.

Distractors — the incorrect options — are carefully constructed. They are typically plausible, sometimes technically correct in a different context, and rarely absurd. Eliminating obvious distractors is rarely sufficient; the candidate must reason to the best answer.

🎯Exam Tip
  • When you encounter a question with a qualifier (MOST, BEST, FIRST, PRIMARY, GREATEST), pause and read it twice. The qualifier changes the question fundamentally.
  • Apply ISACA's general decision-making philosophy: governance and policy considerations typically take precedence over technical controls; risk-based thinking generally precedes process-based thinking; the organisation's interests are weighed against broader societal and regulatory obligations.
  • Process of elimination is your friend — but only after you have genuinely considered each option. Hasty elimination of options that seem technical or unfamiliar can lead to errors.
  • Never leave a question blank. There is no penalty for an incorrect answer, but an unanswered question is a guaranteed zero.

0.8 How to Use This Book

This book is designed to be read with deliberateness, not speed. Each chapter corresponds to a coherent thematic cluster drawn from the AAISM examination content outline, and each chapter is structured to take you through the material at multiple levels of depth.

Every chapter opens with a domain overview and a list of learning objectives derived from the AAISM Examination Content Outline. These objectives are not mere bureaucratic checkboxes — they represent the task statements that ISACA's subject matter experts have determined to be the essential competencies of an AAISM-certified professional. Reading these objectives carefully before diving into chapter content is an excellent way to prime your cognitive attention for what follows.

The body of each chapter presents the subject matter in a flowing, integrated narrative — not as a list of bullet points to be memorised, but as a web of ideas to be understood. The goal is comprehension, not recall. Key concepts are highlighted in specially formatted boxes for easy reference during review. Food for Thought sections invite deeper reflection on the conceptual and ethical dimensions of the material. Exam Tips translate conceptual knowledge into specific, actionable examination strategies.

Each chapter concludes with a set of practice questions drawn from the spirit of the AAISM examination, with explanations that illuminate not merely the correct answer but the reasoning process that leads to it. Working through these questions honestly — without peeking at the answers — is one of the most effective forms of preparation available.

A note on the writing in this book: the style is deliberately deliberate. Ideas are developed at length because AI security management is a discipline of ideas, not merely procedures. A professional who understands why something matters will always outperform one who has only memorised what it is.

The following approach has been found effective by professionals preparing for advanced security certifications of this nature:

  • Read each chapter once through, without stopping to take notes, to gain a holistic sense of the domain.

  • On the second pass, engage actively with the Key Concepts and Food for Thought sections. Pause where something is unclear and investigate further.

  • Attempt the practice questions at the end of the chapter before reading the answers. Note the questions you found difficult.

  • Return to the relevant chapter sections to reinforce understanding of areas where your practice performance was weak.

  • In the final weeks before the examination, revisit all Exam Tips across chapters and work through the consolidated question bank in the appendix.

0.9 Chapter Summary

The AAISM certification represents ISACA's answer to the governance, risk, and technology challenges introduced by the proliferation of artificial intelligence in the enterprise. It is an advanced credential, built upon the foundation of CISM or CISSP, and it is structured around three carefully weighted domains: AI Governance and Program Management (31%), AI Risk and Opportunity Management (31%), and AI Technologies and Controls (38%).

The examination itself consists of ninety multiple-choice questions to be completed in two and a half hours, scored on a scale of 200 to 800, with a passing threshold of 450. It may be taken at an authorised PSI testing centre or via online remote proctoring, subject to strict identification and conduct requirements. Up to four attempts are permitted within any rolling twelve-month period, with mandatory waiting periods between retakes.

ISACA examination questions are scenario-based, testing practical judgement rather than rote recall. Qualifiers such as BEST, MOST, FIRST, and GREATEST are semantically precise and must be read with care. The best answer is not always the most obvious one — it is the one that is most appropriate in the full context of the scenario presented.

This book is your companion on the journey toward AAISM certification. The chapters that follow take you through each domain with the depth and thoughtfulness that the subject demands. Read them with patience, engage with them with curiosity, and bring to them the professional wisdom you have already accumulated in your career. The AAISM examination rewards the practitioner who thinks — and this book has been written to help you think well.

0.10 Practice Questions

The following questions are designed in the spirit of the AAISM examination, testing reasoning and practical judgement. Attempt each question before reading the answer and explanation.

Question 1An information security professional holding a CISSP is considering pursuing the AAISM certification to expand their expertise in securing enterprise AI deployments. Which of the following BEST describes the primary purpose of the AAISM credential?
ATo validate technical expertise in machine learning model development and training
BTo certify professionals in the governance, risk management, and technical controls relevant to enterprise AI security
CTo replace the CISM certification for professionals operating in AI-intensive environments
DTo provide recognition for experience in traditional information security management practices
Question 2A candidate for the AAISM examination sits the test for the first time and receives a scaled score of 410. She intends to retake the examination as soon as possible. Under ISACA's retake policy, what is the EARLIEST date she may sit for the second attempt?
AThe following business day, subject to seat availability
BAfter 14 days from the date of the first attempt
CAfter 30 days from the date of the first attempt
DAfter 90 days from the date of the first attempt
Question 3During a remotely proctored AAISM examination, a candidate receives an urgent phone call. Which of the following represents the MOST appropriate course of action?
ABriefly mute the microphone, answer the call, and resume the examination without notifying the proctor
BImmediately terminate the examination and reschedule it at no additional cost
CIgnore the call, remain facing the screen, and continue the examination without interruption
DRequest a permitted break from the proctor, handle the call outside the testing area, and note that the timer continues
Question 4An AAISM candidate is reviewing the examination content outline and notices that Domain 3 carries a higher weighting than the other two domains. Which of the following BEST explains the rationale for this weighting?
ADomain 3 topics are more frequently encountered in entry-level cybersecurity roles and therefore require broader coverage
BThe technical controls and AI life cycle management addressed in Domain 3 represent the most operationally complex and rapidly evolving aspects of AI security
CISACA places greater emphasis on technical knowledge than governance or risk management in all its advanced certifications
DDomain 3 encompasses the requirements of the European Union AI Act, which takes regulatory precedence globally
Question 5A security manager who recently passed the AAISM examination has been informed by ISACA that her certification application has been rejected. Which of the following is the MOST likely reason?
AHer scaled examination score was below 500, which is the minimum for certification
BShe had not submitted the examination feedback survey after completing the test
CShe does not currently hold an active CISM or CISSP certification
DShe selected the online proctoring option rather than attending an authorised testing centre