AIF-C01: Data Security Layer

0.0(0)
Studied by 0 people
call kaiCall Kai
Locked
learnLearn
examPractice Test
spaced repetitionSpaced Repetition
heart puzzleMatch
flashcardsFlashcards
GameKnowt Play
Card Sorting

1/23

encourage image

There's no tags or description

Looks like no tags are added yet.

Last updated 5:49 PM on 8/8/26
Name
Mastery
Learn
Test
Matching
Spaced
Call with Kai
Chat

No analytics yet

Send a link to your students to track their progress

24 Terms

1
New cards

AWS Audit Manager

Your Company's Evidence; continuous compliance auditing; automatically collects evidence to assess risk against frameworks (SOC 2 / HIPAA)

2
New cards

AWS Secrets Manager

Credential & API key management; securely stores; rotates; and retrieves database passwords and API keys automatically

3
New cards

VPC Interface Endpoint (PrivateLink)

Private ENI connection for Bedrock / SageMaker / & Rekognition APIs; keeps traffic off the public internet

4
New cards

Amazon EMR

Big Data Processing; distributed frameworks (PySpark / Hadoop); petabyte-scale data prep

5
New cards

AWS IAM (Identity & Access Management)

Authentication & authorization; fine-grained access control using Roles; Policies; and Least Privilege

6
New cards

VPC Interface Endpoint (PrivateLink)

Private ENI connection for Bedrock, SageMaker, & Rekognition APIs; keeps traffic off the public internet

7
New cards

Amazon EMR

Big Data Processing; distributed frameworks (PySpark, Hadoop); petabyte-scale data prep

8
New cards

AWS Data Exchange

Third-Party Datasets; independent software vendor (ISV) data feeds for ML training

9
New cards

AWS IAM (Identity & Access Management)

Authentication & authorization; fine-grained access control using Roles, Policies, and Least Privilege

10
New cards

AWS RAM (Resource Access Manager)

Cross-account resource sharing; securely share subnets or Transit Gateways across AWS Organizations

11
New cards

AWS Security Hub

Centralized security dashboard; aggregates alerts from multiple services; checks against CIS benchmarks

12
New cards

AWS Network Firewall

Managed network perimeter security; stateful inspection and web filtering for VPC traffic

13
New cards

Amazon Macie

Data privacy & PII discovery; uses ML and pattern matching to discover and protect sensitive data in Amazon S3

14
New cards

AWS CloudTrail

Governance & Compliance Audit Trail; logs and tracks all API actions/calls made across your AWS account

15
New cards

Prompt Injection

Malicious Inputs; user inputs designed to alter model behavior in unintended ways or bypass safety guardrails

16
New cards

Insecure Output Handling

Unsanitized Output; failure to clean or validate model outputs before passing them to downstream systems / users

17
New cards

Training Data Poisoning

Manipulated Training Sets; inserting harmful or biased data into training datasets to corrupt model behavior

18
New cards

Model Denial of Service (DoS)

Resource Exhaustion; exploiting vulnerabilities or high-cost prompts to render the model unavailable or unusable

19
New cards

Supply Chain Vulnerabilities

Third-Party Risks; security weaknesses in pre-trained models; datasets; or third-party components used in deployment

20
New cards

Sensitive Information Disclosure

Data Leakage; unauthorized exposure of confidential data or PII through model outputs or unintended channels

21
New cards

Insecure Plugin Design

Flawed Integrations; security flaws in optional extensions / plugins that can be exploited by malicious inputs

22
New cards

Excessive Agency

Unconstrained Autonomy; granting too much operational freedom or permissions to a model without human validation

23
New cards

Overreliance

Blind Trust; trusting model outputs excessively without adequate human review; validation; or verification

24
New cards

Model Theft

Unauthorized Exfiltration; unauthorized access; copying; or duplication of proprietary model parameters and weights