5 minutesHow to tell if an image is fake content from AI
List two visual tells that can suggest (not prove) an image is AI-generated.
IBM Technology. Jeff Crume's lightboard explainer of the three places generative AI introduces risk — the data, the model, and the usage — and what good controls look like for each. Useful for the article's argument that "be careful" isn't enough; you need to think about which category of risk you're actually exposed to as an employee.
Treat this as conceptual guidance. Do not use real company data until permissions, retention, logging and human-review boundaries are clear.
You can name the three risk surfaces generative AI adds at work — data, model, usage — and describe the controls each one needs.
None — aimed at employees, not security engineers.
Last reviewed: May 18, 2026
Continue through the same learning path with the next curated companion videos.
5 minutesList two visual tells that can suggest (not prove) an image is AI-generated.
17 minutesExplain the concept of the 'attention economy' and name one design tactic used to capture attention.
1 minutesIn one sentence, say what a Content Credential is meant to record about a piece of media - then confirm details in current C2PA/Adobe docs, since a 30-second clip is only an intro.
Hand-picked external courses that go deeper on this topic.
AWS Training and Certification
A cloud-vendor-specific complement to the Macquarie specialization: AWS's own Generative AI Security Scoping Matrix, OWASP Top 10 for LLMs, and MITRE ATLAS, walked through governance, legal, and compliance controls for five different AI deployment scopes — from consumer apps to self-trained models. Not GDPR-specific, but a genuinely practical advanced pick for teams whose AI workloads actually run on AWS and need concrete data-governance and compliance controls, not just theory.
Macquarie University Cyber Security Hub faculty
The advanced, most explicitly on-target answer to our GDPR × AI gap: a three-course specialization from Macquarie University's Cyber Security Hub that goes from GDPR/CCPA fundamentals and privacy-by-design, through privacy impact assessments, to a dedicated third course on securing AI systems against adversarial attacks and model leakage. Genuinely bridges 'GDPR compliance' and 'AI security' rather than treating them as separate topics.
CyberSuite
The rare AI Act course written for the companies the Act actually reaches: SMEs adopting AI, not the labs building it. Hosted on the European Commission's own skills platform, it pairs the legal side — roles, obligations, risk classification — with the security side (prompt injection, data leakage, supplier due diligence) that most compliance courses skip. For an Estonian SME deploying AI, this is the practical starting point.