Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Isaca Advanced in AI Audit AAIA Questions and answers with CertsForce

Viewing page 3 out of 9 pages
Viewing questions 21-30 out of questions
Questions # 21:

A financial institution ' s customer service chatbot sometimes gives users incorrect legal advice, leading to several customer complaints and potential regulatory exposure. Which of the following should be done FIRST to mitigate this risk?

Options:

A.

Expand the chatbot ' s training dataset.


B.

Retrain the chatbot on a more diverse dataset.


C.

Introduce a human-in-the-loop review process.


D.

Review chatbot technical documentation.


Expert Solution
Questions # 22:

An organization deployed an AI-powered customer service chatbot trained using customer chat logs. During a risk assessment, which issue should be the IS auditor’s GREATEST concern?

Options:

A.

Limited AI model capability to incorporate new data


B.

Obsolete procedures leading to inadequate data integrity validation


C.

Reputational impacts from inaccurate chatbot responses


D.

Insufficient access controls leading to unauthorized customer data exposure


Expert Solution
Questions # 23:

An AI healthcare diagnostic tool requires large volumes of patient data, raising concerns about privacy and data breaches. Which of the following is the MOST effective strategy to mitigate this risk?

Options:

A.

Encrypt the data and transmit it through a secure channel.


B.

Limit the tool ' s access to only publicly available datasets.


C.

Collect data from all patients to use for data analysis.


D.

Use synthetic data or anonymized data sets for model training.


Expert Solution
Questions # 24:

During an audit of a bank ' s AI credit scoring system, an IS auditor discovers that applicants were not informed about automated decision-making. Which of the following should the auditor do FIRST?

Options:

A.

Evaluate transparency controls.


B.

Prepare an audit report.


C.

Evaluate appeal processes.


D.

Conduct an explainability assessment.


Expert Solution
Questions # 25:

Which of the following is the MOST important reason to establish AI governance structures that extend beyond regulatory compliance?

Options:

A.

To align with global AI data privacy standards


B.

To mitigate reputational risk associated with public scrutiny of AI systems


C.

To ensure ethical integrity throughout the AI life cycle


D.

To establish guardrails limiting AI system functionality to approved use cases


Expert Solution
Questions # 26:

Which of the following controls MOST effectively helps to ensure an AI model is resilient against external threats?

Options:

A.

AI data set anonymization


B.

Monitoring of AI model developers


C.

Monitoring of AI access logs


D.

AI model configuration testing


Expert Solution
Questions # 27:

During a risk assessment for an AI system, data drift was identified as a key risk. Which of the following is the BEST course of action?

Options:

A.

Document the risk and implement continuous monitoring.


B.

Retrain the model immediately using the same data set.


C.

Archive the training data and proceed with deployment.


D.

Disable the AI system until risk is eliminated.


Expert Solution
Questions # 28:

An AI-based marketing analytics tool is trained on data that is five years old. Which of the following is MOST likely to occur?

Options:

A.

Model extraction


B.

Model poisoning


C.

Model inversion


D.

Model drift


Expert Solution
Questions # 29:

An IS auditor is reviewing change management documentation of an AI model. Which of the following would pose the GREATEST risk to the model?

Options:

A.

An A/B test comparing models using the same seed


B.

Models were tuned on a training set


C.

An A/B test comparing models using different seeds


D.

Models were trained on the same data splits


Expert Solution
Questions # 30:

An IS auditor is evaluating a large language model (LLM) before deployment. Which of the following is the MOST secure way to manage agency for the model?

Options:

A.

Use LLMs to manage data feeds and sources.


B.

Ensure authorization and privilege checks are performed independently of the LLM.


C.

Ensure the LLM is trained on adversarial datasets.


D.

Rely on LLMs to automatically manage authorization and privilege checks.


Expert Solution
Viewing page 3 out of 9 pages
Viewing questions 21-30 out of questions