CS Professional · Paper 4.4
Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice
Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice is Elective 1 (Paper 4.4) of CS Professional. It is a 100-mark, 3-hour written paper with 15 extra minutes for reading. You answer case-based questions that join technology basics with cyber law, and you must apply provisions to facts before concluding.
This is Paper 4.4, one of the six choices in Elective 1. It is a descriptive paper of 100 marks and 3 hours, with 15 extra minutes to read the question paper. There are no MCQs and no negative marking. Electives are open book, so the exam does not reward memory alone. It rewards how well you find the right provision and apply it to the facts.
The paper has two sides. One side is law: cyber crimes, investigation procedure, and the regulatory framework for AI, cyber security and cyberspace. The other side is technology: hardware and software, networks, databases, data analytics, information systems, MIS, ERP and the internet. Many students are comfortable with one side and weak on the other. Company secretaries with a law background often find the technical chapters unfamiliar. IT professionals often write loosely on legal provisions.
Students usually score well when they write in the format the paper expects: the relevant provision or concept, an analysis of the facts given, and a clear conclusion. Open book access helps only if you have tabbed your material in advance. Students who search for answers during the exam run short of time. The ones who score well know where each topic sits, and use the book to confirm exact wording.
Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice: chapters and topics
Part I: Legal and Compliance Perspective
Artificial Intelligence - Introduction and Basics
Part I: Legal and Compliance Perspective
Cyber Security
- Introduction to Cyber Security
- Cyber Threats and Types of Cyber Attacks
- Cyber Security Framework and Standards
- Information Technology Act, 2000 and Cyber Offences
- Cyber Security Governance, CERT-In and Regulatory Requirements
- Cyber Security Risk Management and Incident Response
- Cyber Forensics and Digital Evidence
Part I: Legal and Compliance Perspective
Cyber Threats and Cyber Laws
Part I: Legal and Compliance Perspective
Cyber Crimes and Investigation Procedures
- Cyber Crimes: Meaning, Types and Classification
- Offences and Penalties under the IT Act, 2000
- Security Procedures and Practices (Section 16)
- CERT-In: National Agency for Incident Response (Section 70B)
- Investigation Procedure for Cyber Crimes
- Report of Investigation by Subordinate Police Officer (Section 188 BNSS)
Part I: Legal and Compliance Perspective
Regulatory Framework on AI, Cyber Security and Cyberspace
- Overview of AI Regulation and Cyberspace Governance in India
- Information Technology Act, 2000: Key Definitions and Scope
- Section 69B: Monitoring and Collecting Traffic Data for Cyber Security
- Section 66F: Punishment for Cyber Terrorism
- Cyber Offences, Penalties and Adjudication under the IT Act
- Cyber Security Framework and Institutions in India
Part I: Legal and Compliance Perspective
Data Analytics and Law
- Introduction to Data Analytics and Big Data
- Legal Framework for Data Analytics in India
- Section 43A: Compensation for Failure to Protect Data
- Reasonable Security Practices and Sensitive Personal Data Rules
- Section 69B: Monitoring and Collection of Traffic Data
- Privacy, Data Protection and Ethical Issues in Analytics
Part II: Technological Perspective
Computer Hardware and Software
Part II: Technological Perspective
Network Basics and Security
Part II: Technological Perspective
Softwares and Software Security
Part II: Technological Perspective
Database Management
Part II: Technological Perspective
Data Analytics
Part II: Technological Perspective
Information Systems
Part II: Technological Perspective
Management Information Systems - An Overview
Part II: Technological Perspective
Enterprise Resource Management
Part II: Technological Perspective
Internet and Other Technologies
How to prepare Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice
Plan for about two passes of the full syllabus, then timed writing. Keep the law chapters and the technology chapters in balance, since a case question can mix both.
- Read the syllabus list once and sort the 15 chapters into three groups: law and regulation (cyber threats and laws, cyber crimes and investigation, regulatory framework, data analytics and law), security (cyber security, network security, software security), and technology basics (AI, hardware and software, databases, analytics, information systems, MIS, ERP, internet). Give each group planned study time.
- Start with the technology basics. Learn each term in one plain sentence and attach one Indian business example, such as a bank using ERP or a retailer using analytics. This makes the later legal chapters easier to follow.
- Study the law chapters with a fixed pattern: what the provision says, who it applies to, what facts trigger it, and what the consequence is. Use the official text supplied and do not rely on summaries.
- Build your open book kit. Tab the key provisions, definitions and regulatory documents by chapter. Add a one-page index at the front so you can find any topic in under a minute.
- Make short revision notes for the technical chapters: definitions, types, advantages, limitations and a few comparisons. Most technical questions ask you to explain, differentiate or list with brief reasoning.
- Practise case studies. For each, write in three parts: the provision or concept, the application to the facts given, and the conclusion. Do at least a few for each law chapter.
- Write full 3-hour mock papers at least twice before the exam. Practise reading time, choosing questions, and moving to the book only when needed.
- In the last two weeks, revise your notes and re-check your tabs. Update any point where the law or a regulation has changed since you first studied it.
Time management in the exam
- Use the 15 minutes of reading time to mark the questions you can answer fastest and the ones that need the book. Start writing with the confident ones.
- Divide time by marks. A 100-mark paper in 180 minutes gives about 1.8 minutes per mark. Set a time limit for each question and move on when it ends.
- Limit book lookups. Note the topic, find the provision once, and write. If you cannot find it in about two minutes, answer from understanding and return later.
- For case-based questions, spend the first few minutes underlining the facts that matter, then write provision, analysis and conclusion in that order.
- Answer technical questions briefly and in structured points. Do not spend case-study time on them.
- Keep the last 10 minutes to check that every question is attempted, numbering is right and conclusions are stated.
Mistakes that cost marks in Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice
Studying only the law chapters and skipping the technology chapters
Fix: Give the technical chapters real study time. They carry marks in their own right and also help you understand the facts in case questions.
Relying on the open book instead of preparing
Fix: Prepare as for a closed book paper. Use the book to confirm exact wording and section references, not to learn topics.
Writing the provision but not applying it to the facts
Fix: After stating the rule, link each relevant fact to it and then give a firm conclusion. Application earns the marks.
Giving section numbers or names from memory when unsure
Fix: Confirm references in the official text during the exam. If unsure, describe the provision in plain words rather than cite a wrong number.
Mixing up related technical terms
Fix: Keep a comparison note with the purpose, users and example of each. Practise differentiate-type questions.
Poor time use through long lookups and uneven answers
Fix: Fix a time per question by its marks, and take a first-pass answer on every question before polishing any.
Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice: frequently asked questions
Is the AI, Data Analytics and Cyber Security paper open book?
Yes. Elective papers in CS Professional are open book examinations, as shown in the December 2026 time table. Even so, you still need to know the topics well, because time in the hall is limited.
Which group and paper number is this subject?
It is Paper 4, Elective 1, numbered 4.4. It is in Group 1 and you choose one subject from the Elective 1 list.
What is the exam pattern for this paper?
It is a descriptive paper of 100 marks and 3 hours, with 15 extra minutes for reading. There are no MCQs and no negative marking. Expect case-based and written questions.
What marks do I need to pass?
You need at least 40% in each paper and 50% in the aggregate of the group at one sitting. A candidate who fails the group but scores 60% or more in a paper, and at least 25% in each other paper of the group, can claim exemption from that paper later by applying before the enrolment deadline.
Do I need a technical background to score well?
No, but you must learn the technical chapters properly. Start with plain definitions and practical examples, then move to the legal chapters, which build on those ideas.