Nemstar AAISM is a 2‑day advanced workshop built for experienced security, risk and governance professionals who need to manage AI confidently in real enterprise environments. The programme develops the leadership skills required to identify AI use, assess AI‑related risk, define governance, select controls and assure AI systems effectively. It is aligned to recognised AI security and governance frameworks and focuses on practical, operational application rather than technical model‑building or exam‑domain
Live online events
- 24 September2 days, 09:30 AM BST - 04:30 PM BST
- 17 November2 days, 09:30 AM GMT - 04:30 PM GMT
Description
Effective AI Security Managers need to understand more than prompts, models and technical AI terminology. They need to understand how AI changes business risk, how AI systems fail, how suppliers embed AI into services, how AI use should be governed, and how to evidence that controls are working.
Learn how to use the Nemstar security management approach to turn AI uncertainty into practical governance, risk assessment, controls, monitoring, incident response and assurance. Delegates will examine shadow AI, AI vendors, data risk, prompt injection, RAG poisoning, model drift, hallucination, privacy, bias, explainability, operational resilience and board reporting.
The event is designed for CISM-level professionals who need to manage AI securely in real organisations. It is not a data science course and it is not a technical AI programming course. It is an AI security management course for people responsible for governance, risk, control, assurance and leadership.
Outline
- AI Governance, Accountability and Acceptable Use
- AI Asset, Data and Lifecycle Management
- AI Risk Assessment and AI Risk Registers
- Shadow AI, Vendor AI and Supply Chain Assurance
- AI Security Architecture and Technical Control Expectations
- AI Monitoring, Incident Response and Operational Resilience
- AI Assurance, Evidence, Metrics and Board Reporting
- 90-Day AI Security Management Action Planning
Overview
This event helps delegates understand how to govern, manage and assure AI security within an enterprise environment. It explains how to identify AI use, assess AI risk, define governance and accountability, select practical controls, manage AI suppliers, prepare for AI-related incidents and report AI risk to senior stakeholders.
Delegates will learn how to apply recognised AI governance and security frameworks, including ISO/IEC 42001, NIST AI RMF and EU AI Act concepts, in a practical and proportionate way.
Exam
The event supports delegates preparing for ISACA’s Advanced in AI Security Management credential. Please note that the exam is not included with the course. A valid CISM is required to attempt the exam.
Prerequisites
Delegates should hold CISM or have equivalent knowledge.
Courseware
Electronic courseware provided including delegate notes, practical AI security management checklists, scenario exercises, control questions, risk templates and study support materials.
