Question 1
A financial services firm is deploying a new AI-powered fraud detection system that processes highly sensitive transaction data. The security team is concerned about adversarial attacks, specifically data poisoning, where an attacker could subtly manipulate the training data to create a backdoor in the model. Which of the following is the most effective proactive control to mitigate this specific threat?
Answer and explanation
Correct answer: B
Data poisoning is an attack against the integrity of the training data itself. The most direct and proactive control is to secure the data supply chain. This involves implementing strong access controls (least privilege) on the training data, using cryptographic hashes to ensure data integrity, and monitoring the data ingestion pipeline for any unauthorized or anomalous modifications. While other options are good security practices for AI, they are reactive (output validation) or address different threats (model encryption, network segmentation).