Data collection and obtaining consentis themost critical regulatory requirementwhen using customer data for AI training, especially under laws likeGDPR, CCPA, and ISO 27701.
Collection of Data and Obtaining Consent (Correct Answer – C)
Ensures compliance withprivacy lawsthat require explicit customer consent.
Example:UnderGDPR, companies mustinform usershow their data will be used and allow them toopt out.
AI Algorithm Accuracy (Incorrect – A)
Important formodel performancebutnot a primary legal concern.
Ethical Use of Computing Resources (Incorrect – B)
Ethical considerations are valuable butnot a regulatory priority.
Continuous Monitoring of AI (Incorrect – D)
Ensuresperformance, butregulatory compliance focuses on data privacy.
[References:, ISACA CISA Review Manual, GDPR and CCPA Compliance Guidelines, ISO 27701 (Privacy Information Management System), , , , , ]
Submit