Jason Edwards
Certified: The ISACA AAISM Audio Course
Welcome to Certified: The ISACA AAISM Audio Course. If you’re responsible for security, risk, assurance, or governance and AI is now part of your environment, you’re in the right place. This course is designed to help you prepare for the ISACA AAISM certification with clear explanations and practical framing, so the topics feel manageable instead of abstract. Each episode stays focused on the concepts the exam tests, while still connecting them to real situations you might face when reviewing AI use cases, third-party AI services, or internal model development. Expect straightforward definitio...
Where to listen?
Podcasts in the app Replaio Radio Coming soonPodcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts
Episodes
Episode 16 — Turn policies into standards, guidelines, and step-by-step procedures (Task 2) 14.02.2026 15:23
This episode teaches the practical hierarchy from policy to standards to procedures, and how the AAISM exam expects you to translate high-level intent into repeatable actions that teams can execute and auditors can verify. You will learn how standards create measurable requirements, how guidelines provide flexible implementation options, and how procedures define who does what, when, and with what...
Episode 15 — Write AI security policies people can follow without guessing (Task 2) 14.02.2026 15:56
This episode explains how to create AI security policies that are clear, enforceable, and usable by real teams, which AAISM questions often probe through “what should policy include” and “why did policy fail” scenarios. You will learn how to define scope, roles, mandatory behaviors, and prohibited actions in plain language while still being specific enough to test. We use examples like data handli...
Episode 14 — Prove conformity by building defensible evidence for regulators and contracts (Task 8) 14.02.2026 16:49
This episode focuses on evidence as the bridge between “we say we comply” and “we can prove we comply,” a distinction the AAISM exam tests repeatedly through documentation and auditability scenarios. You will learn to design evidence trails that link requirements to controls, controls to tests, and tests to outcomes, with clear ownership and version history. We cover examples such as approval reco...
Episode 13 — Perform AI impact assessments with scope, evidence, and actionable results (Task 8) 14.02.2026 19:10
This episode teaches how to execute an AI impact assessment so it produces decisions, controls, and evidence that stand up to audit rather than a vague narrative report. You will learn how to set scope boundaries, identify stakeholders, select evaluation criteria, and gather evidence across data sources, model behavior, deployment pathways, and user interaction patterns. We walk through what “acti...
Episode 12 — Plan AI impact assessments early so compliance is not an afterthought (Task 8) 14.02.2026 18:14
This episode explains why AI impact assessments must be planned early in the life cycle and how AAISM scenarios test your ability to embed assessment timing into governance and delivery workflows. You will define an impact assessment as a structured evaluation of likely harms, affected stakeholders, and control needs, then learn how to trigger it based on use case sensitivity, data types, deployme...
Episode 11 — Translate AI regulations into practical, testable security requirements (Task 3) 14.02.2026 18:00
This episode shows how to convert regulatory and legal expectations for AI into requirements you can test, monitor, and enforce, which is exactly how AAISM questions frame compliance: not as memorization, but as operational control design. You will learn to separate broad principles from concrete obligations, then express those obligations as “shall” statements tied to scope, owners, evidence, and...
Episode 10 — Apply ethical principles when AI outcomes create real business risk (Task 3) 14.02.2026 14:42
This episode teaches how ethical principles become practical security requirements when AI decisions can cause harm, legal exposure, or reputational damage, which is a recurring theme in AAISM scenarios. You will define ethical risk in operational terms, such as unfair outcomes, unsafe recommendations, privacy violations, and deceptive behavior, and learn how to turn those concerns into controls l...
Episode 9 — Use industry frameworks to organize AI governance and security work (Task 3) 14.02.2026 13:48
This episode explains how to use industry frameworks as organizing structures for AI governance and security requirements, with an exam focus on mapping principles into testable controls and evidence. You will learn the difference between adopting a framework as guidance versus treating it as a compliance checklist, and how to select scope-appropriate controls for your model, data, and deployment...
Episode 8 — Set governance routines that keep AI security decisions consistent (Task 1) 14.02.2026 13:56
This episode focuses on governance routines as repeatable control mechanisms: meeting cadences, intake reviews, approval gates, metrics reviews, and exception handling that keep AI security decisions consistent across teams and time. You will learn what “good” looks like for agendas, minutes, decision logs, and follow-ups so evidence is defensible for internal audit, regulators, and contracts. We...
Episode 7 — Define AI roles and responsibilities so decisions are owned and clear (Task 1) 14.02.2026 14:29
This episode teaches how the AAISM exam expects you to assign AI security responsibilities across business, security, engineering, data, and risk functions so that approvals and accountability cannot be disputed after an incident. You will learn how to distinguish roles that build and operate systems from roles that set policy, accept risk, and verify control performance, and how to document those...
Episode 6 — Build an AI governance charter that aligns to business objectives (Task 1) 14.02.2026 12:56
This episode breaks down what makes an AI governance charter exam-ready: clear purpose, scope boundaries, authority, membership, and decision mechanisms that connect directly to business goals and risk tolerance. You will learn how to write charter language that is testable, including how to define which AI systems are in scope, what decisions require approval, and how exceptions are handled witho...
Episode 5 — Domain 1 overview: lead AI governance and program management confidently (Task 1) 14.02.2026 12:25
This episode introduces Domain 1 as the exam’s foundation for proving that AI security work is owned, repeatable, and aligned to business objectives rather than ad hoc technical fixes. You will define governance in practical terms, including decision rights, escalation paths, and the minimum artifacts that make accountability auditable. We explain how program management shows up on the exam throug...
Episode 4 — Exam Acronyms: High-Yield Audio Reference for AAISM daily practice (Tasks 1–22) 14.02.2026 15:41
This episode builds fast recognition of the acronyms and shorthand you will see in AAISM-style scenarios, focusing on what each term implies for governance, risk, and control decisions rather than memorizing expansions alone. You will learn to tie common terms to expected evidence, such as how an “assessment” implies scope, criteria, stakeholders, and documentation, while “monitoring” implies tele...
Episode 3 — Walk through an AI system life cycle in clear, simple language (Task 22) 14.02.2026 15:35
This episode teaches the AI system life cycle the way the AAISM exam expects you to reason about it: as a chain of decisions, artifacts, and controls from idea intake through retirement. You will define key phases such as data acquisition, training, evaluation, deployment, monitoring, and decommissioning, then link each phase to the security questions an auditor or security lead must ask. We use p...
Episode 2 — Understand how AAISM questions map to real AI security work (Tasks 1–22) 14.02.2026 14:58
This episode connects typical AAISM question patterns to real AI security responsibilities, so you can recognize what the exam is truly asking you to do: govern, assess risk, or implement and operate controls. You will practice translating a scenario into a task statement, identifying the decision-maker, the evidence needed, and the control intent, which is the quickest way to choose the defensibl...
Episode 1 — Exam orientation and a spoken 30-day plan to pass AAISM (Tasks 1–22) 14.02.2026 15:14
This episode establishes how the AAISM exam is organized around tasks, what “best answer” logic looks like, and how to build a realistic 30-day audio-first study plan that maps to every tested objective without wasting time on low-yield detail. You will learn how to schedule daily domain rotation, when to switch from understanding to recall, and how to self-check comprehension using short verbal p...
Similar podcasts
Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.