CompTIA SecurityX (CAS-005) — Question 140
A company implements an AI model that handles sensitive and personally identifiable information. Which of the following threats is most likely the company's primary concern?
Answer options
- A. Unsecured output handling
- B. Model theft
- C. Model poisoning
- D. Prompt injection
Correct answer: A
Explanation
The primary concern for a company handling sensitive and personally identifiable information is unsecured output handling, as this can lead to unauthorized access to sensitive data. While model theft, model poisoning, and prompt injection are significant threats, they do not directly compromise the confidentiality of sensitive information in the same way that unsecured output can.