Weekend Sale Special Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: CFsave75

Pass the IAPP Artificial Intelligence Governance AIGP Questions and answers with CertsForce

Viewing page 1 out of 7 pages
Viewing questions 1-10 out of questions
Questions # 1:

Which of the following is NOT required to be included in an AI impact assessment for a narrow AI use case?

Options:

A.

The AI model ' s potential impact on privacy rights.


B.

The data sources used for training the AI model.


C.

The potential bias in the outputs of the AI model.


D.

The AI model ' s energy consumption during processing.


Questions # 2:

In 2025, which U.S. agency ordered companies to provide information about the safety of their AI companion chatbots?

Options:

A.

The Central Intelligence Agency CIA


B.

The Department of Justice DOJ


C.

The Federal Trade Commission FTC


D.

The Federal Communications Commission FCC


Questions # 3:

An EU bank intends to launch a multi-modal Al platform for customer engagement and automated decision-making assist with the opening of bank accounts. The platform has been subject to thorough risk assessments and testing, where it proves to be effective in not discriminating against any individual on the basis of a protected class.

What additional obligations must the bank fulfill prior to deployment?

Options:

A.

The bank must obtain explicit consent from users under the privacy Directive.


B.

The bank must disclose how the Al system works under the Ell Digital Services Act.


C.

The bank must subject the Al system an adequacy decision and publish its appropriate safeguards.


D.

The bank must disclose the use of the Al system and implement suitable measures for users to contest automated decision-making.


Questions # 4:

CASE STUDY

Please use the following to answer the next question:

A small local flower delivery company operates a few stores and has a limited IT budget. To reduce the time spent on customer service, which is a major drain on employee time, the company plans to implement a simple but high-performance generative AI chatbot on its website. The chatbot will provide real-time, fact-based responses to customer inquiries and assist with order processing, helping to reduce incoming phone calls.

The company currently uses a single on-premises server for its order database and email system and has not yet partnered with a cloud provider.

An internal data privacy policy governs the use of customer data. This policy, written before the adoption of AI, allows the use or transfer of customer data beyond name and contact information but requires that all such data be deleted after the order is completed. The company prefers to maintain this policy without changes.

MULTI-SELECT

Please select 3 of the 5 options below. No partial credit will be given.

Which of the following actions would necessitate a change to the company ' s privacy policy?

Options:

A.

The chatbot stores inputs for use in Retrieval-Augmented Generation (RAG), but does not use those inputs for retraining the AI model.


B.

The flower shop transfers customer data to the third-party API running the chatbot so that the chatbot service can work as intended during each user session.


C.

Programming the chatbot to request the customer ' s name, telephone number, and address for order deliveries and keeping that data until after delivery of the product has been confirmed.


D.

Using data from each customer session with the chatbot for purposes of retraining the underlying model but deleting that data after each customer order is completed.


E.

The chatbot deployed on the company ' s website also scans the customer ' s appearance during use for signs of frustration or confusion while using the website.


Questions # 5:

During the planning and design phases of the Al development life cycle, bias can be reduced by all of the following EXCEPT?

Options:

A.

Stakeholder involvement.


B.

Feature selection.


C.

Human oversight.


D.

Data collection.


Questions # 6:

Which stakeholder is responsible for lawful collection of data for the training of the foundational AI model?

Options:

A.

The marketing agency.


B.

The tech company.


C.

The data aggregator.


D.

The marketing agency ' s client.


Questions # 7:

Which of the following compliance related controls within an organization is most easily adapted to identify AI risks?

Options:

A.

Privacy training.


B.

Penetration testing.


C.

Transfer risk assessments.


D.

Privacy impact assessments.


Questions # 8:

What is the most significant risk of deploying an AI model that can create realistic images and videos?

Options:

A.

Copyright infringement.


B.

Security breaches.


C.

Downstream harms.


D.

Output cannot be protected.


Questions # 9:

An organization that provides AI services to clients has decided to adopt ISO/IEC 42001:2023.

How does the standard define the relationship between the AI policy and the other policies already in place at the organization?

Options:

A.

The AI policy should refer to other organizational policies.


B.

The AI policy should absorb relevant components of other organizational policies.


C.

The AI policy should include AI-specific topics that do not intersect with other organizational policies.


D.

The AI policy should address gaps identified from a management review of other organizational policies.


Questions # 10:

What is theprimary purposeof an AI impact assessment?

Options:

A.

To determine whether a conformity assessment is needed


B.

To escalate the findings to the appropriate owner(s)


C.

To identify and measure the benefits of an AI system


D.

To anticipate and manage the potential risks and harms of an AI system


Viewing page 1 out of 7 pages
Viewing questions 1-10 out of questions