Pre-Winter Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: agile70

ExamsBrite Dumps

Artificial Intelligence Governance Professional Question and Answers

Artificial Intelligence Governance Professional

Last Update Sep 23, 2026
Total Questions : 215

We are offering FREE AIGP IAPP exam questions. All you do is to just go and sign up. Give your details, prepare AIGP free exam questions and then go for complete pool of Artificial Intelligence Governance Professional test questions that will help you more.

AIGP pdf

AIGP PDF

$31.5  $104.99
AIGP Engine

AIGP Testing Engine

$37.5  $124.99
AIGP PDF + Engine

AIGP PDF + Testing Engine

$49.5  $164.99
Questions 1

Which of the following most encourages accountability over Al systems?

Options:

A.  

Determining the business objective and success criteria for the Al project.

B.  

Performing due diligence on third-party Al training and testing data.

C.  

Defining the roles and responsibilities of Al stakeholders.

D.  

Understanding Al legal and regulatory requirements.

Discussion 0
Questions 2

What is the key feature of Graphical Processing Units (GPUs) that makes them well-suited to running Al applications?

Options:

A.  

GPUs run many tasks concurrently, resulting in faster processing.

B.  

GPUs can access memory quickly, resulting in lower latency than CPUs.

C.  

GPUs can run every task on a computer, making them more robust than CPUs.

D.  

The number of transistors on GPUs doubles every two years, making the chips smaller and lighter.

Discussion 0
Questions 3

Pursuant to the White House Executive Order of November 2023, who is responsible for creating guidelines to conduct red-teaming tests of Al systems?

Options:

A.  

National Institute of Standards and Technology (NIST).

B.  

National Science and Technology Council (NSTC).

C.  

Office of Science and Technology Policy (OSTP).

D.  

Department of Homeland Security (DHS).

Discussion 0
Questions 4

Machine learning is best described as a type of algorithm by which?

Options:

A.  

Systems can mimic human intelligence with the goal of replacing humans.

B.  

Systems can automatically improve from experience through predictive patterns.

C.  

Statistical inferences are drawn from a sample with the goal of predicting human intelligence.

D.  

Previously unknown properties are discovered in data and used to predict and make improvements in the data.

Discussion 0
Questions 5

In 2025, which U.S. agency ordered companies to provide information about the safety of their AI companion chatbots?

Options:

A.  

The Central Intelligence Agency CIA

B.  

The Department of Justice DOJ

C.  

The Federal Trade Commission FTC

D.  

The Federal Communications Commission FCC

Discussion 0
Questions 6

To maintain fairness in a deployed system, it is most important to?

Options:

A.  

Protect against loss of personal data in the model.

B.  

Monitor for data drift that may affect performance and accuracy.

C.  

Detect anomalies outside established metrics that require new training data.

D.  

Optimize computational resources and data to ensure efficiency and scalability.

Discussion 0
Questions 7

Which of the following would be the least likely step for an organization to take when designing an integrated compliance strategy for responsible Al?

Options:

A.  

Conducting an assessment of existing compliance programs to determine overlaps and integration points.

B.  

Employing a new software platform to modernize existing compliance processes across the organization.

C.  

Consulting experts to consider the ethical principles underpinning the use of Al within the organization.

D.  

Launching a survey to understand the concerns and interests of potentially impacted stakeholders.

Discussion 0
Questions 8

CASE STUDY

A company is considering the procurement of an AI system designed to enhance the security of IT infrastructure. The AI system analyzes how users type on their laptops, including typing speed, rhythm and pressure, to create a unique user profile. This data is then used to authenticate users and ensure that only authorized personnel can access sensitive resources.

When prioritizing the updates to its policies, rules and procedures to include the new AI system for user authentication, the organization should:

Options:

A.  

Update third-party data sharing policies

B.  

Update security controls for sensitive data

C.  

Ensure that any personal data used is only processed for a specific and lawful purpose

D.  

Reduce the complexity of the policy to make it easier for non-technical employees to understand

Discussion 0
Questions 9

What is most likely the first action that a developer takes to map, plan and scope an AI project?

Options:

A.  

Define the business case and perform a cost benefit analysis answering the question of why AI

B.  

Use a test, evaluation, verification, validation TEVV process

C.  

Perform an algorithmic impact assessment leveraging PIAs

D.  

Determine feasibility and optionality of redress

Discussion 0
Questions 10

A U.S. mortgage company developed an Al platform that was trained using anonymized details from mortgage applications, including the applicant’s education, employment and demographic information, as well as from subsequent payment or default information. The Al platform will be used automatically grant or deny new mortgage applications, depending on whether the platform views an applicant as presenting a likely risk of default.

Which of the following laws is NOT relevant to this use case?

Options:

A.  

Fair Housing Act.

B.  

Fair Credit Reporting Act.

C.  

Equal Credit Opportunity Act.

D.  

Title VII of the Civil Rights Act of 1964.

Discussion 0
Questions 11

Training data is best defined as a subset of data that is used to?

Options:

A.  

Enable a model to detect and learn patterns.

B.  

Fine-tune a model to improve accuracy and prevent overfitting.

C.  

Detect the initial sources of biases to mitigate prior to deployment.

D.  

Resemble the structure and statistical properties of production data.

Discussion 0
Questions 12

Retraining an LLM can be necessary for all of the following reasons EXCEPT?

Options:

A.  

To minimize degradation in prediction accuracy due tochanges in data.

B.  

Adjust the model ' s hyper parameters to a specific use case.

C.  

Account for new interpretations of the same data.

D.  

To ensure interpretability of the model ' s predictions.

Discussion 0
Questions 13

A shipping service based in the US is looking to expand its operations into the EU. It utilizes an in-house developed multimodal AI model that analyzes all personal data collected from shipping senders and recipients, and optimizes shipping routes and schedules based on this data.

As they expand into the EU, all of the following descriptions should be included in the technical documentation for their AI model EXCEPT?

Options:

A.  

A general description of the AI system.

B.  

A description of the prioritization of the risks of deployment of the AI system.

C.  

A description of the appropriateness of the performance metrics for the specific AI system.

D.  

A detailed description of the elements of the AI system and of the process for its development.

Discussion 0
Questions 14

Which of the following use cases would be best served by a non-AI solution?

Options:

A.  

A non-profit wants to develop a social media presence.OB. An e-commerce provider wants to make personalized recommendations.

B.  

A business analyst wants to forecast future cost overruns and underruns.

C.  

A customer service agency wants automate answers to common questions.

Discussion 0
Questions 15

An AI system ' s function, the industry and the location in which it operates are important factors in considering which of the following?

Options:

A.  

Organizational accountability.

B.  

Internal governance needs.

C.  

Diversity of data sources.

D.  

Explainability of results.

Discussion 0
Questions 16

A leading software development company wants to integrate AI-powered chatbots into their customer service platform. After researching various AI models in the market which have been developed by third-party developers, they ' re considering two options:

Option A - an open-source language model trained on a vast corpus of text data and capable of being trained to respond to natural language inputs.

Option B - a proprietary, generative AI model pre-trained on large data sets, which uses transformer-based architectures to generate human-like responses based on multimodal user input.

Option A would be the best choice for the company because?

Options:

A.  

It is less expensive to run

B.  

It may be better suited for applications requiring customization.

C.  

It can handle voice commands and is more suitable for phone-based customer support.

D.  

It is built for large-scale, complex dialogues and would be more effective in handling high-volume customer inquiries.

Discussion 0
Questions 17

CASE STUDY

Please use the following answer the next question:

A mid-size US healthcare network has decided to develop an Al solution to detect a type of cancer that is most likely arise in adults. Specifically, the healthcare network intends to create a recognition algorithm that will perform an initial review of all imaging and then route records a radiologist for secondary review pursuant agreed-upon criteria (e.g., a confidence score below a threshold).

To date, the healthcare network has taken the following steps: defined its Al ethical principles: conducted discovery to identify the intended uses and success criteria for the system: established an Al governance committee; assembled a broad, crossfunctional team with clear roles and responsibilities; and created policies and procedures to document standards, workflows, timelines and risk thresholds during the project.

The healthcare network intends to retain a cloud provider to host the solution and a consulting firm to help develop the algorithm using the healthcare network ' s existing data and de-identified data that is licensed from a large US clinical research partner.

Which stakeholder group is most important in selecting the specific type of algorithm?

Options:

A.  

The cloud provider.

B.  

The consulting firm.

C.  

The healthcare network ' sdata science team.

D.  

The healthcare network ' s Al governance committee.

Discussion 0
Questions 18

Scenario:

An organization is developing a powerful general-purpose AI (GPAI) model that has systemic impact. The compliance team is assessing what legal obligations apply under the EU AI Act.

Under the EU AI Act, which of the following compliance actions appliesonly to General Purpose AI models with systemic risk?

Options:

A.  

Publishing a detailed summary of the data used to train the model

B.  

Maintaining up-to-date technical documentation, including testing details

C.  

Implementing an intellectual property policy to comply with EU copyright laws

D.  

Making information available to downstream providers who integrate the model into their AI systems

Discussion 0
Questions 19

CASE STUDY

Please use the following answer the next question:

A local police department in the United States procured an Al system to monitor and analyze social media feeds, online marketplaces and other sources of public information to detect evidence of illegal activities (e.g., sale of drugs or stolen goods). The Al system works by surveilling the public sites in order to identify individuals that are likely to have committed a crime. It cross-references the individuals against data maintained by law enforcement and then assigns a percentage score of the likelihood of criminal activity based on certain factors like previous criminal history, location, time, race and gender.

The police department retained a third-party consultant assist in the procurement process, specifically to evaluate two finalists. Each of the vendors provided information about their system ' s accuracy rates, the diversity of their training data and how their system works. The consultant determined that the first vendor’s system has a higher accuracy rate and based on this information, recommended this vendor to the police department.

The police department chose the first vendor and implemented its Al system. As part of the implementation, the department and consultant created a usage policy for the system, which includes training police officers on how the system works and how to incorporate it into their investigation process.

The police department has now been using the Al system for a year. An internal review has found that every time the system scored a likelihood of criminal activity at or above 90%, the police investigation subsequently confirmed that the individual had, in fact, committed a crime. Based on these results, the police department wants to forego investigations for cases where the Al system gives a score of at least 90% and proceed directly with an arrest.

Which Al risk would NOT have been identified during the procurement process based on the categories of information requested by the third-party consultant?

Options:

A.  

Security.

B.  

Accuracy.

C.  

Explainability.

D.  

Discrimination.

Discussion 0
Questions 20

A company developing and deploying its own AI model would perform all of the following steps to monitor and evaluate the model ' s performance EXCEPT?

Options:

A.  

Publicly disclosing data with forecasts of secondary and downstream harms to stakeholders.

B.  

Setting up automated tools to regularly track the model ' s accuracy, precision and recall rates in real-time.

C.  

Implementing a formal incident response plan to address incidents that may occur during system operation.

D.  

Establishing a regular schedule for human evaluation of the model ' s performance, including qualitative assessments.

Discussion 0
Questions 21

Which of the following are subjects covered by a typical impact assessment?

Options:

A.  

Third-party risk, model risk and legal risk.

B.  

Datasets, behavior and tooling.

C.  

Toxicity, accuracy and development.

D.  

Fundamental rights, data protection and safety.

Discussion 0
Questions 22

All of the following are potential benefits of using private over public LLMs EXCEPT?

Options:

A.  

Reduction in time taken for data validation and verification.

B.  

Confirmation of security and confidentiality.

C.  

Reduction in possibility of hallucinated information.

D.  

Application for specific use cases within the enterprise.

Discussion 0
Questions 23

Who is responsible for ongoing maintenance and monitoring of an AI system after it has been put into production?

Options:

A.  

Regulator.

B.  

Developer.

C.  

Deployer.

D.  

User.

Discussion 0
Questions 24

Under the NIST Al Risk Management Framework, all of the following are defined as characteristics of trustworthy Al EXCEPT?

Options:

A.  

Tested and Effective.

B.  

Secure and Resilient.

C.  

Explainable and Interpretable.

D.  

Accountable and Transparent.

Discussion 0
Questions 25

Scenario:

An organization is building a compliance program to ensure responsible AI deployment. It aims to align operations with AI risk frameworks and mitigate legal, ethical, and operational risks, while still promoting innovation.

Which of the following would be theleast likelystep for an organization to take when designing an integrated compliance strategy for responsible AI?

Options:

A.  

Meeting with and obtaining approval from senior management

B.  

Launching a survey to understand the concerns and interests of potentially impacted stakeholders

C.  

Consulting experts to consider the ethical principles underpinning the use of AI within the organization

D.  

Employing a new software platform to modernize existing compliance processes across the organization

Discussion 0
Questions 26

You are an engineer that developed an AI-based ad recommendation tool.

Which of the following should be monitored to evaluate the tool ' s effectiveness?

Options:

A.  

Output data, to assess the delta between the prediction and actual ad clicks.

B.  

Algorithmic patterns, to show the model has a high degree of accuracy.

C.  

Input data, to ensure the ads are reaching the target audience.

D.  

GPU performance, to evaluate the tool ' s robustness.

Discussion 0
Questions 27

CASE STUDY

Please use the following answer the next question:

A local police department in the United States procured an Al system to monitor and analyze social media feeds, online marketplaces and other sources of public information to detect evidence of illegal activities (e.g., sale of drugs or stolen goods). The Al system works by surveilling the public sites in order to identify individuals that are likely to have committed a crime. It cross-references the individuals against data maintained by law enforcement and then assigns a percentage score of the likelihood of criminal activity based on certain factors like previous criminal history, location, time, race and gender.

The police department retained a third-party consultant assist in the procurement process, specifically to evaluate two finalists. Each of the vendors provided information about their system ' s accuracy rates, the diversity of their training data and how their system works. The consultant determined that the first vendor’s system has a higher accuracy rate and based on this information, recommended this vendor to the police department.

The police department chose the first vendor and implemented its Al system. As part of the implementation, the department and consultant created a usage policy for the system, which includes training police officers on how the system works and how to incorporate it into their investigation process.

The police department has now been using the Al system for a year. An internal review has found that every time the system scored a likelihood of criminal activity at or above 90%, the police investigation subsequently confirmed that the individual had, in fact, committed a crime. Based on these results, the police department wants to forego investigations for cases where the Al system gives a score of at least 90% and proceed directly with an arrest.

The best human oversight mechanism for the police department to implement is that a police officer should?

Options:

A.  

Explain to the accused how the Al system works.

B.  

Confirm the Al recommendation prior to sentencing.

C.  

Ensure an accused is given notice that the Al system was used.

D.  

Consider the Al recommendation as part of the criminal investigation.

Discussion 0
Questions 28

Scenario:

A global organization wants to align with international frameworks on AI governance. They are reviewing guidance from the OECD on how to incorporate broader governance tools into their AI program.

Codes of conductandcollective agreementsare what type of assessment tools as defined by theOrganization for Economic Cooperation and Development (OECD)?

Options:

A.  

Educational

B.  

Procedural

C.  

Technical

D.  

Analytic

Discussion 0
Questions 29

What is the most significant risk of deploying an AI model that can create realistic images and videos?

Options:

A.  

Copyright infringement.

B.  

Security breaches.

C.  

Downstream harms.

D.  

Output cannot be protected.

Discussion 0
Questions 30

According to the GDPR ' s transparency principle, when an Al system processes personal data in automated decision-making, controllers are required to provide data subjects specific information on?

Options:

A.  

The existence of automated decision-making and meaningful information on its logic and consequences.

B.  

The personal data used during processing, including inferences drawn by the Al system about the data.

C.  

The data protection impact assessments carried out on the Al system and legal bases for processing.

D.  

The contact details of the data protection officer and the data protection national authority.

Discussion 0
Questions 31

Scenario:

A U.S.-based AI governance professional is evaluating resources from the National Institute of Standards and Technology (NIST) to guide the organization’s AI risk assessment strategy. They are particularly interested in programs focused on assessing AI-specific impacts.

The main purpose of NIST’sAssessing Risks and Impacts of AI (ARIA)program is to:

Options:

A.  

Provide a suite of resources to manage risks

B.  

Pilot new standards for AI red-teaming

C.  

Promote interoperability across AI systems

D.  

Offer a regulatory sandbox for risk reporting

Discussion 0
Questions 32

Which of the following steps occurs in the design phase of the Al life cycle?

Options:

A.  

Data augmentation.

B.  

Model explainability.

C.  

Risk impact estimation.

D.  

Performance evaluation.

Discussion 0
Questions 33

An EU bank intends to launch a multi-modal Al platform for customer engagement and automated decision-making assist with the opening of bank accounts. The platform has been subject to thorough risk assessments and testing, where it proves to be effective in not discriminating against any individual on the basis of a protected class.

What additional obligations must the bank fulfill prior to deployment?

Options:

A.  

The bank must obtain explicit consent from users under the privacy Directive.

B.  

The bank must disclose how the Al system works under the Ell Digital Services Act.

C.  

The bank must subject the Al system an adequacy decision and publish its appropriate safeguards.

D.  

The bank must disclose the use of the Al system and implement suitable measures for users to contest automated decision-making.

Discussion 0
Questions 34

An AI start-up is developing a system for automated loan approvals. The team wants to minimize risks of bias and regulatory non-compliance. They have already identified potential stakeholders, including regulators and consumer groups.

What is the most appropriate sequence of next steps?

Options:

A.  

Conduct harm analysis,

Benchmark system performance,

Proceed to deployment if the system performs similarly.

B.  

Launch a small-scale pilot,

Gather user feedback,

Afterward analyze harms.

C.  

Perform a probability/severity analysis,

Apply a risk mitigation hierarchy to address the most severe risks,

Conduct pre-deployment pilot testing.

D.  

Enable explainability tools to reassure users,

Launch pilot,

Map risks during deployment.

Discussion 0
Questions 35

A company is creating a mobile app to enable individuals to upload images and videos, and analyze this data using ML to provide lifestyle improvement recommendations. The signup form has the following data fields:

1.First name

2.Last name

3.Mobile number

4.Email ID

5.New password

6.Date of birth

7.Gender

In addition, the app obtains a device ' s IP address and location information while in use.

What GDPR privacy principles does this violate?

Options:

A.  

Purpose Limitation and Data Minimization.

B.  

Accountability and Lawfulness.

C.  

Transparency and Accuracy.

D.  

Integrity and Confidentiality.

Discussion 0
Questions 36

Each of the following actors are typically engaged in the Al development life cycle EXCEPT?

Options:

A.  

Data architects.

B.  

Government regulators.

C.  

Socio-cultural and technical experts.

D.  

Legal and privacy governance experts.

Discussion 0
Questions 37

All of the following areunique characteristics of AIthat require a comprehensive approach to governanceEXCEPT?

Options:

A.  

Autonomy

B.  

Automation

C.  

Adaptability

D.  

Speed and scale

E.  

Superintelligence

Discussion 0
Questions 38

According to November 2023 White House Executive Order, which of the following best describes the guidance given to governmental agencies on the use of generative Al as a workplace tool?

Options:

A.  

Limit access to specific uses of generative Al.

B.  

Impose a general ban on the use of generative Al.

C.  

Limit access of generative Al to engineers and developers.

D.  

Impose a ban on the use of generative Al in agencies that protect national security.

Discussion 0
Questions 39

What is a primary purpose of establishing external communication plans in AI governance?

Options:

A.  

To meet transparency obligations and inform external stakeholders about AI system deployment and risks.

B.  

To train personnel on the ethical and compliant use of vendor AI tools and systems.

C.  

To manage vendor contracts and licensing terms for the enterprise.

D.  

To inform regulatory bodies of high-risk uses or activities.

Discussion 0
Questions 40

CASE STUDY

Please use the following answer the next question:

XYZ Corp., a premier payroll services company that employs thousands of people globally, is embarking on a new hiring campaign and wants to implement policies and procedures to identify and retain the best talent. The new talent will help the company ' s product team expand its payroll offerings to companies in the healthcare and transportation sectors, including in Asia.

It has become time consuming and expensive for HR to review all resumes, and they are concerned that human reviewers might be susceptible to bias.

Address these concerns, the company is considering using a third-party Al tool to screen resumes and assist with hiring. They have been talking to several vendors about possibly obtaining a third-party Al-enabled hiring solution, as long as it would achieve its goals and comply with all applicable laws.

The organization has a large procurement team that is responsible for the contracting of technology solutions. One of the procurement team ' s goals is to reduce costs, and it often prefers lower-cost solutions. Others within the company are responsible for integrating and deploying technology solutions into the organization ' s operations in a responsible, cost-effective manner.

The organization is aware of the risks presented by Al hiring tools and wants to mitigate them. It also questions how best to organize and train its existing personnel to use the Al hiring tool responsibly. Their concerns are heightened by the fact that relevant laws vary across jurisdictions and continue to change.

Which other stakeholder groups should be involved in the selection and implementation of the Al hiring tool?

Options:

A.  

Finance and Legal.

B.  

Marketing and Compliance.

C.  

Supply Chain and Marketing.

D.  

Litigation and Product Development.

Discussion 0
Questions 41

CASE STUDY

Please use the following answer the next question:

A local police department in the United States procured an Al system to monitor and analyze social media feeds, online marketplaces and other sources of public information to detect evidence of illegal activities (e.g., sale of drugs or stolen goods). The Al system works by surveilling the publicsites in order to identify individuals that are likely to have committed a crime. It cross-references the individuals against data maintained by law enforcement and then assigns a percentage score of the likelihood of criminal activity based on certain factors like previous criminal history, location, time, race and gender.

The police department retained a third-party consultant assist in the procurement process, specifically to evaluate two finalists. Each of the vendors provided information about their system ' s accuracy rates, the diversity of their training data and how their system works. The consultant determined that the first vendor’s system has a higher accuracy rate and based on this information, recommended this vendor to the police department.

The police department chose the first vendor and implemented its Al system. As part of the implementation, the department and consultant created a usage policy for the system, which includes training police officers on how the system works and how to incorporate it into their investigation process.

The police department has now been using the Al system for a year. An internal review has found that every time the system scored a likelihood of criminal activity at or above 90%, the police investigation subsequently confirmed that the individual had, in fact, committed a crime. Based on these results, the police department wants to forego investigations for cases where the Al system gives a score of at least 90% and proceed directly with an arrest.

When notifying an accused perpetrator, what additional information should a police officer provide about the use of the Al system?

Options:

A.  

Information about the accuracy of the Al system.

B.  

Information about how the accused can oppose the charges.

C.  

Information about the composition of the training data of the system.

D.  

Information about how the individual was identified by the Al system.

Discussion 0
Questions 42

CASE STUDY

A global marketing agency is adapting a large language model ( " LLM " ) to generate content for an upcoming marketing campaign for a client ' s new product: a hard hat designed for construction workers of any gender to better protect them from head injuries.

The marketing agency is accessing the LLM through an application programming interface ( " API " ) developed by a third-party technology company. They want to generate text to be used for targeted advertising communications that highlight the benefits of the hard hat to potential purchasers. Both the marketing agency and the technology company have taken reasonable steps to address Al governance.

The marketing company has:

•           Entered into a contract with the technology company with suitable representations and warranties.

•           Completed an impact assessment on the LLM for this intended use.

•           Built technical guidance on how to measure and mitigate bias in the LLM.

•           Enabled technical aspects of transparency, explainability, robustness and privacy.

•           Followed applicable regulatory requirements.

•           Created specific legal statements and disclosures regarding the use of the Al on its client ' s advertising.

The technology company has:

•           Provided guidance and resources to developers to address environmental concerns.

•           Build technical guidance on how to measure and mitigate bias in the LLM.

•           Provided tools and resources to measure bias specific to the LLM.

•           Enabled technical aspects of transparency, explainability, robustness and privacy.

•           Mapped and mitigated potential societal harms and large-scale impacts.

•           Followed applicable regulatory requirements and industry standards.

•           Created specific legal statements and disclosures regarding the LLM. including with respect to IP and rights to data.

The marketing company and its tech provider have taken reasonable steps to govern the AI’s use, including legal disclosures, impact assessments, and bias mitigation. However, the company wants to takeone more stepto improve governance and reduce risks related to ongoing oversight and accountability.

While the marketing agency took steps to mitigate its risks, the best additional step would be to:

Options:

A.  

Negotiate an intellectual property indemnity from the technology company

B.  

Evaluate the use of AI in the marketing industry to identify best practices

C.  

Engage a third party to lead the procurement selection process

D.  

Establish a governance committee to oversee the project

Discussion 0
Questions 43

CASE STUDY

A global marketing agency is adapting a large language model ( " LLM " ) to generate content for an upcoming marketing campaign for a client ' s new product: a hard hat designed for construction workers of any gender to better protect them from head injuries.

The marketing agency is accessing the LLM through an application programming interface ( " API " ) developed by a third-party technology company. They want to generate text to be used for targeted advertising communications that highlight the benefits of the hard hat to potential purchasers. Both the marketing agency and the technology company have taken reasonable steps to address Al governance.

The marketing company has:

•           Entered into a contract with the technology company with suitable representations and warranties.

•           Completed an impact assessment on the LLM for this intended use.

•           Built technical guidance on how to measure and mitigate bias in the LLM.

•           Enabled technical aspects of transparency, explainability, robustness and privacy.

•           Followed applicable regulatory requirements.

•           Created specific legal statements and disclosures regarding the use of the Al on its client ' s advertising.

The technology company has:

•           Provided guidance and resources to developers to address environmental concerns.

•           Build technical guidance on how to measure and mitigate bias in the LLM.

•           Provided tools and resources to measure bias specific to the LLM.

•           Enabled technical aspects of transparency, explainability, robustness and privacy.

•           Mapped and mitigated potential societal harms and large-scale impacts.

•           Followed applicable regulatory requirements and industry standards.

•           Created specific legal statements and disclosures regarding the LLM. including with respect to IP and rights to data.

 

Which stakeholder is responsible for the lawful collection of data used to train the foundational AI model?

Options:

A.  

The marketing agency

B.  

The tech company

C.  

The data aggregator

D.  

The marketing agency’s client

Discussion 0
Questions 44

All of the following issues are unique for proprietary AI model deployments EXCEPT?

Options:

A.  

The acquisition of training data.

B.  

The cost of AI chips.

C.  

The potential for bias.

D.  

The necessity of performing conformity assessments.

Discussion 0
Questions 45

MULTI-SELECT

Please select 3 of the 5 options below. No partial credit will be given.

Training an AI model is time-consuming because of?

Options:

A.  

The complexity of the AI model.

B.  

The maturity of AI governance.

C.  

The volume of training data.

D.  

The number of stakeholders.

E.  

The quality of the training data.

Discussion 0
Questions 46

CASE STUDY

Please use the following answer the next question:

ABC Corp, is a leading insurance provider offering a range of coverage options to individuals. ABC has decided to utilize artificial intelligence to streamline and improve its customer acquisition and underwriting process, including the accuracy and efficiency of pricing policies.

ABC has engaged a cloud provider to utilize and fine-tune its pre-trained, general purpose large language model (“LLM”). In particular, ABC intends to use its historical customer data—including applications, policies, and claims—and proprietary pricing and risk strategies to provide an initial qualification assessment of potential customers, which would then be routed .. human underwriter for final review.

ABC and the cloud provider have completed training and testing the LLM, performed a readiness assessment, and made the decision to deploy the LLM into production. ABC has designated an internal compliance team to monitor the model during the first month, specifically to evaluate the accuracy, fairness, and reliability of its output. After the first month in production, ABC realizes that the LLM declines a higher percentage of women ' s loan applications due primarily to women historically receiving lower salaries than men.

During the first month when ABC monitors the model for bias, it is most important to?

Options:

A.  

Continue disparity testing.

B.  

Analyze the quality of the training and testing data.

C.  

Compare the results to human decisions prior to deployment.

D.  

Seek approval from management for any changes to the model.

Discussion 0
Questions 47

What is the primary objective of continuous monitoring in the lifecycle of an AI tool?

Options:

A.  

To ensure that the AI tool ' s algorithm evolves independently to adapt to new data without human intervention.

B.  

To track and adjust the tool ' s performance in order to ensure that it meets its goals.

C.  

To restrict the AI tool from accessing external data sources to maintain data privacy.

D.  

To periodically upgrade the AI tool ' s computational resources to maintain processing efficiency.

Discussion 0
Questions 48

Scenario:

A company is using different types of AI systems to enhance consumer engagement. These include chatbots, recommendation engines, and automated content generation tools.

Which of the following situations would beleast likelyto raise concerns under existing consumer protection laws?

Options:

A.  

An AI algorithm being used in a credit decision-making process by a financial institution

B.  

An AI customer service system claiming that it is as accurate as a human support agent

C.  

An AI tool using scraped digital content to generate news summaries on a publishing website

D.  

An online platform offering recommendations to its users by displaying user-specific content and targeted advertisements

Discussion 0
Questions 49

CASE STUDY

Please use the following to answer the next question:

A small local flower delivery company operates a few stores and has a limited IT budget. To reduce the time spent on customer service, which is a major drain on employee time, the company plans to implement a simple but high-performance generative AI chatbot on its website. The chatbot will provide real-time, fact-based responses to customer inquiries and assist with order processing, helping to reduce incoming phone calls.

The company currently uses a single on-premises server for its order database and email system and has not yet partnered with a cloud provider.

An internal data privacy policy governs the use of customer data. This policy, written before the adoption of AI, allows the use or transfer of customer data beyond name and contact information but requires that all such data be deleted after the order is completed. The company prefers to maintain this policy without changes.

What deployment option is the simplest, quickest, and most cost-effective option across the various potential AI models for this particular company?

Options:

A.  

On-premises, running on the company ' s existing server.

B.  

Hosting on rented servers via a private cloud.

C.  

Software-as-a-Service (SaaS) accessed via an API.

D.  

Edge computing running on each customer ' s hardware.

Discussion 0
Questions 50

Your management consulting firm is planning to use an AI system to support its employees.

Which category of operator applies to the firm in this context?

Options:

A.  

Authorized representative.

B.  

Distributor.

C.  

Provider.

D.  

Deployer.

Discussion 0
Questions 51

An organization that provides AI services to clients has decided to adopt ISO/IEC 42001:2023.

How does the standard define the relationship between the AI policy and the other policies already in place at the organization?

Options:

A.  

The AI policy should refer to other organizational policies.

B.  

The AI policy should absorb relevant components of other organizational policies.

C.  

The AI policy should include AI-specific topics that do not intersect with other organizational policies.

D.  

The AI policy should address gaps identified from a management review of other organizational policies.

Discussion 0
Questions 52

You are part of your organization’s ML engineering team and notice that the accuracy of a model that was recently deployed into production is deteriorating.

What is the best first step address this?

Options:

A.  

Replace the model with a previous version.

B.  

Conduct champion/challenger testing.

C.  

Perform an audit of the model.

D.  

Run red-teaming exercises.

Discussion 0
Questions 53

CASE STUDY

A premier payroll services company that employs thousands of people globally, is embarking on a new hiring campaign and wants to implement policies and procedures to identify and retain the best talent. The new talent will help the company ' s product team expand its payroll offerings to companies in the healthcare and transportation sectors, including in Asia.

It has become time consuming and expensive for HR to review all resumes, and they are concerned that human reviewers might be susceptible to bias.

To address these concerns, the company is considering using a third-party Al tool to screen resumes and assist with hiring. They have been talking to several vendors about possibly obtaining a third-party Al-enabled hiring solution, as long as it would achieve its goals and comply with all applicable laws.

The organization has a large procurement team that is responsible for the contracting of technology solutions. One of the procurement team ' s goals is to reduce costs, and it often prefers lower-cost solutions. Others within the company deploy technology solutions into the organization’s operations in a responsible, cost-effective manner.

The organization is aware of the risks presented by Al hiring tools and wants to mitigate them. It also questions how best to organize and train its existing personnel to use the Al hiring tool responsibly. Their concerns are heightened by the fact that relevant laws vary across jurisdictions and continue to change.

The organization continues planning the adoption of an AI tool to support hiring, but is concerned about potential bias in content generated by AI systems and how that could affect public perception.

Which of the following measures should the company adopt tobest mitigate its risk of reputational harmfrom using the AI tool?

Options:

A.  

Test the AI tool pre- and post-deployment

B.  

Ensure the vendor provides indemnification for the AI tool

C.  

Require the procurement and deployment teams to agree upon the AI tool

D.  

Continue to require the company’s hiring personnel to manually screen all applicants

Discussion 0
Questions 54

In the machine learning context, feature engineering is the process of?

Options:

A.  

Converting raw data into clean data.

B.  

Creating learning schema for a model apply.

C.  

Developing guidelines to train and test a model.

D.  

Extracting attributes and variables from raw data.

Discussion 0
Questions 55

Which of the following is a subcategory of Al and machine learning that uses labeled datasets to train algorithms?

Options:

A.  

Segmentation.

B.  

Generative Al.

C.  

Expert systems.

D.  

Supervised learning.

Discussion 0
Questions 56

Scenario:

A European AI technology company was found to be non-compliant with certain provisions of the EU AI Act. The regulator is considering penalties under the enforcement provisions of the regulation.

According to the EU AI Act, which of the following non-compliance examples could lead to fines of up to €15 million or 3% of annual worldwide turnover(whichever is higher)?

Options:

A.  

In case of AI Act prohibitions

B.  

In case of breach of a provider ' s obligations for high-risk AI systems

C.  

In case of the supply of misleading information to notified bodies in reply to a request

D.  

In case of a breach of AI Act prohibition by the Union institutions, bodies, offices and agencies

Discussion 0
Questions 57

CASE STUDY

A company is considering the procurement of an AI system designed to enhance the security of IT infrastructure. The AI system analyzes how users type on their laptops, including typing speed, rhythm and pressure, to create a unique user profile. This data is then used to authenticate users and ensure that only authorized personnel can access sensitive resources.

All of the following are obligations of the company as a data controller when implementing its AI system EXCEPT?

Options:

A.  

Ensuring that third-party processors are based in the same country as the company

B.  

Allowing data subject access requests (DSARs)

C.  

Implementing technical and organizational measures

D.  

Conducting a Data Protection Impact Assessment (DPIA) / Privacy Impact Assessment (PIA)

Discussion 0
Questions 58

Random forest algorithms are in what type of machine learning model?

Options:

A.  

Symbolic.

B.  

Generative.

C.  

Discriminative.

D.  

Natural language processing.

Discussion 0
Questions 59

During the first month when the company monitors the model for bias, it is most important to?

Options:

A.  

Continue disparity testing.

B.  

Provide regular awareness training.

C.  

Analyze the quality of the training and testing data.

D.  

Document the results of final decisions made by the human underwriter.

Discussion 0
Questions 60

Which of the following arenotconsidered biometric data under U.S. privacy laws?

Options:

A.  

Iris scans

B.  

Walking gait

C.  

Keystroke dynamics

D.  

GPS location of a user’s fitness watch

Discussion 0
Questions 61

The planning phase of the Al life cycle articulates all of the following EXCEPT the?

Options:

A.  

Objective of the model.

B.  

Approach to governance.

C.  

Choice of the architecture.

D.  

Context in which the model will operate.

Discussion 0
Questions 62

Which of the following statements is correct regarding South Korea ' s Basic Act on the Development of Artificial Intelligence and the Establishment of Trust (the " AI Basic Act " )?

Options:

A.  

It establishes unique requirements for frontier models.

B.  

It excludes generative AI from the types of AI systems governed by the AI Basic Act.

C.  

It requires foreign providers without a Korean presence to appoint a domestic representative.

D.  

It bans the types of AI systems deemed a clear threat to the safety, livelihoods, and fundamental rights of people.

Discussion 0
Questions 63

You are the chief privacy officer of a medical research company that would like to collect and use sensitive data about cancer patients, such as their names, addresses, race and ethnic origin, medical histories, insurance claims, pharmaceutical prescriptions, eating and drinking habits and physical activity.

The company will use this sensitive data to build an Al algorithm that will spot common attributes that will help predict if seemingly healthy people are more likely to get cancer. However, the company is unable to obtain consent from enough patients to sufficiently collect the minimum data to train its model.

Which of the following solutions would most efficiently balance privacy concerns with the lack of available data during the testing phase?

Options:

A.  

Deploy the current model and recalibrate it over time with more data.

B.  

Extend the model to multi-modal ingestion with text and images.

C.  

Utilize synthetic data to offset the lack of patient data.

D.  

Refocus the algorithm to patients without cancer.

Discussion 0
Questions 64

CASE STUDY

Please use the following answer the next question:

A mid-size US healthcare network has decided to develop an Al solution to detect a type of cancer that is most likely arise in adults. Specifically, the healthcare network intends to create a recognition algorithm that will perform an initial review of all imaging and then route records a radiologist for secondary review pursuant agreed-upon criteria (e.g., a confidence score below a threshold).

To date, the healthcare network has taken the following steps: defined its Al ethical principles: conducted discovery to identify the intended uses and success criteria for the system: established an Al governance committee; assembled a broad, crossfunctional team with clear roles and responsibilities; and created policies and procedures to document standards, workflows, timelines and risk thresholds during the project.

The healthcare network intends to retain a cloud provider to host the solution and a consulting firm to help develop the algorithm using the healthcare network ' s existing data and de-identified data that is licensed from a large US clinical research partner.

In the design phase, what is the most important step for the healthcare network to take when mapping its existing data to the clinical research partner data?

Options:

A.  

Apply privacy-enhancing technologies to the data.

B.  

Identify fits and gaps in the combined data.

C.  

Ensure the data is labeled and formatted.

D.  

Evaluate the country of origin of the data.

Discussion 0