KORNERSTONE Institute

AAIR: Advanced in AI Risk

Enroll Now

Course Information

Registration period
Year-round Recruitment
Price
-
Course Level
Study Mode
Duration
2 Day(s)
Language
Cantonese, English
Location
Kornerstone
3 views

Course Overview

Overview
The ISACA® Advanced in AI Risk (AAIR™) certification validates risk professionals’ expertise and experience in managing AI-specific risks while harnessing AI’s transformative potential for strategic advantage.

This credential builds upon established risk management best practices, focusing on the evolving AI landscape to effectively assess and manage risk profiles within organizations.

By fostering cross-functional collaboration, it equips professionals to communicate AI risk comprehensively and ensure ethical and regulatory compliance.

Advance your AI, cybersecurity, audit, governance, risk, and privacy capabilities with ISACA certifications built for the high impact roles organizations need in 2026.

 

Skills Covered

  • Identify and assess AI-related risks across enterprise use cases, models, and workflows.
  • Design AI risk treatment plans and implement controls aligned with governance and compliance requirements.
  • Integrate AI risk management with organizational strategy, oversight, and accountability structures.
  • Address risks across the AI lifecycle, including development, deployment, monitoring, and decommissioning.
  • Monitor AI risk indicators and communicate exposure, incidents, and control effectiveness to decision-makers.

 

Target Audience

  • Information Technology (IT), Operational and Enterprise risk management professionals
  • Mid-to-late career
  • Enterprises and associated hiring managers who are looking for skilled, forward-looking risk professionals with experience in AI.

 

What You’ll Learn

Course Curriculum
Module 1: AI Risk Governance and Framework Integration

AI Models, Frameworks, Strategies, and Use Cases

  • Types of AI
  • AI Frameworks
  • Business Use Case and AI Use Case Review
  • AI Business Strategies


AI Organizational Processes and Alignment

  • AI Governance Fundamentals
  • Alignment to Existing Organizational Structures

AI Ownership, Oversight, and Accountability

  1. AI-related Roles and Responsibilities
  2. Accountability and AI
  3. RACI for AI Solutions
  4. AI Policies, Procedures, and Organizational Training
  5. AI Acceptable Use Policy
  6. AI Policy Development
  7. AI Procedures and Manuals
  8. Organizational Culture and AI Risk Governance
  9. Elements of Effective AI Training and Awareness

AI Regulatory Compliance and Legal Considerations

  • Compliance With Laws and Regulations
  • Gaps in Regulatory Coverage
  • Mapping Legal Requirements for AI
  • Assessing Legal Exposure and Liability for AI Actions
  • Intellectual Property Considerations in AI
  • Vendor Contract Review

AI Trustworthiness, Ethical and Societal Implications

  • Responsible Use of AI Systems 68
  • Bias and Fairness
  • Transparency and Explainability
  • Trust and Safety
  • Human Rights and Societal Impact
  • Environmental Impact


Module 2: AI Life Cycle Risk Management

AI Design, Development, Procurement, and
Documentation

  • Plan and Design
  • Data Requirements for AI Models
  • Procurement of AI Solutions
  • Build, Adapt, and Document Models

AI Model Training, Testing and Validation

  • Sourcing Datasets
  • Validating the Data
  • Model Training
  • Model Testing and Validation
  • Model Performance and Fine Tuning

AI Implementation, Maintenance, and
Decommissioning

  • AI Deployment and Implementation
  • Robustness and Scalability Considerations
  • Monitoring and Managing Model Drift
  • Change Management in AI Systems
  • Decommissioning AI Solutions

AI Data and Asset Management

  • AI Asset Inventory
  • Data Collection for AI
  • Data Classification
  • Data Confidentiality
  • Data Quality
  • Data Balancing
  • Data Scarcity
  • Data Security
  • Data Preparation and Normalization
  • Data Minimization and Privacy Considerations


Module 3: AI Risk Program Management

AI Risk Scenario Identification and Assessment

  • AI Threat Landscape
  • AI Threat Modeling
  • Development of AI Risk Scenarios
  • AI Risk Classification
  • AI Risk Assessment

AI Risk Treatment Strategies

  • Accept
  • Avoid
  • Mitigation
  • Transfer/Share

AI Controls Management

  • AI Control Types and Control Frameworks
  • AI Control Selection and Validation
  • Control Performance
  • Controls Specific to AI Solutions
  • Use of AI in Control Management

AI Risk Metrics, Monitoring, and Reporting

  • Risk and Performance Metrics
  • AI Risk Reportings

AI Supply Chain Risk Management

  • AI Vendor Management
  • AI Shared Responsibility Model
  • AI Software Supply Chain Risk
  • Cloud Computing Risk in AI Supply Chains

AI Incident Response, BIA, Business Continuity, and
Disaster Recovery

  • AI Business Impact Analysis
  • Prepare
  • Identify and Report
  • Assess
  • Respond
  • Post-incident Review


Start FollowingSee all

We use cookies to enhance your experience on our website. Please read and confirm your agreement to our Privacy Policy and Terms and Conditions before continue to browse our website.

Read and Agreed