Skip to content
arrow_back
ISM-2094policyASD Information Security Manual (ISM)

AI Content Filtering to Block Sensitive Data Exposure

AI apps use content filtering to prevent exposure of sensitive data and improper output.

record_voice_over

Plain language

AI tools need to filter the content they handle to make sure they don't accidentally spill sensitive information or produce unsuitable content. This is crucial because if confidential data gets out or inappropriate material is shown, it could lead to privacy breaches or harm the reputation of your business.

Framework

ASD Information Security Manual (ISM)

Control effect

Preventative

Classifications

NC, OS, P, S, TS

ISM last updated

Dec 2025

Control Stack last updated

18 June 2026

E8 maturity levels

N/A

Official control statement

Content filtering is implemented by AI applications to detect and block sensitive data exposure and improper output.
policyASD Information Security Manual (ISM)ISM-2094
priority_high

Why it matters

Without effective content filtering, sensitive data may be exposed, leading to privacy breaches and damaging reputational harm for your business.

settings

Operational notes

Regularly update AI content filtering settings to adapt to new data privacy laws and emerging threats, keeping your systems effective and compliant.

build

Implementation tips

  • IT team should set up content filters in AI applications to block sensitive data exposure. They can do this by configuring the AI software to recognise and mask or block data like financial info or patient records.
  • Managers should ensure training for staff about using AI tools carefully. Organise sessions where staff learn the kind of data AI apps should not process, keeping them aware of potential risks.
  • Data protection officers should regularly review AI-generated outputs for improper content. Use automated tools that flag risky outputs or manually check samples for compliance.
  • System owners should set rules for data types that AI apps can accept or refuse. Work with the provider of your AI tools to clearly define sensitive data parameters that trigger filtering.
  • Askvendors during demos about how their filters work and what data they consider sensitive
fact_check

Audit / evidence tips

  • Askthe content filtering configuration guide: Request the document showing how AI applications are set to recognise and block sensitive infoLook atclear settings examples of blocked data typesGoodincludes comprehensive filtering rules tailored to your organisation's needs
  • Askrecent training records: Request details of any staff training sessions on the appropriate use of AI toolsLook atagendas covering data sensitivity and AI limitations. Good evidence includes participant lists and trainer qualifications
  • Askdata output logs: Request logs of AI outputs that were flagged or blocked for reviewLook ata variety of dates and scenarios demonstrating effective filteringGoodincludes notes on any corrections or updates made
  • Askthe purchase documents of AI tools: Request contractual paperwork that details content filtering capabilitiesLook atclauses that explain specific filtering mechanisms and obligationsGoodcontains vendor commitments to protect sensitive data
  • Askaudit findings on content filtering: Request the latest audit report reviewing AI applications' content filtering effectivenessLook atunbiased third-party assessments focusing on filtering accuracy and improvement recommendationsGoodhighlights strong performance and a plan to address any weaknesses
link

Cross-framework mappings

How ISM-2094 relates to controls across ISO/IEC 27001, ISO/IEC 42001, Essential Eight, and ASD ISM.

ISO 27001

ControlNotesDetails
layersPartially meets(1)expand_less
Annex A 8.12ISM-2094 requires AI applications to implement content filtering to detect and block sensitive data exposure and improper output
handshakeSupports(2)expand_less
Annex A 8.15ISM-2094 requires AI applications to filter content to detect and block sensitive data exposure and improper output
Annex A 8.33ISM-2094 requires AI applications to filter content to prevent sensitive data leakage and improper disclosure in outputs
extensionDepends on(1)expand_less
Annex A 5.13ISM-2094 requires AI applications to detect and block sensitive data exposure and improper output via content filtering

These mappings show relationships between controls across frameworks. They do not imply full equivalence or certification.

See all Guidelines for software development controls, or browse the full ASD ISM library.

Mapping detail

Mapping

Direction

Controls