Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the Isaca AI Risk AAIR Questions and answers with CertsForce

Viewing page 3 out of 3 pages
Viewing questions 21-30 out of questions
Questions # 21:

An organization has deployed generative AI tools broadly but lacks a consistent method to refresh governance policies and controls. Which of the following is the risk practitioner's BEST recommendation?

Options:

A.

Establish an ongoing review cadence and codify procedures for reassessment.


B.

Implement systematic updates and emphasize alignment with emerging regulatory expectations.


C.

Centralize decision making and concentrate authority within executive leadership and technical owners.


D.

Schedule annual compliance reviews and integrate audit findings into revision planning.


Expert Solution
Questions # 22:

A risk practitioner is performing a post-implementation review for an AI system used for credit scoring. Which of the following is MOST important for the risk practitioner to confirm?

Options:

A.

Access token runtime is logged and timestamped.


B.

The AI system's decisions are explainable and fair.


C.

Performance metrics are frequently communicated to stakeholders.


D.

Employees find the AI system easy to learn and use.


Expert Solution
Questions # 23:

Which of the following AI system considerations BEST mitigates risk associated with model drift?

Options:

A.

Conducting regular retraining with new relevant datasets


B.

Restricting the use of automated data validation to low-risk models


C.

Maintaining existing levels of variance within datasets during preprocessing


D.

Implementing strong access controls based on roles and responsibilities


Expert Solution
Questions # 24:

A risk practitioner learns that an organization's AI inventory includes separate listings of AI systems, models, and datasets. Which of the following is the risk practitioner's BEST recommendation to improve AI governance?

Options:

A.

Map interdependencies between AI assets continuously.


B.

Include information about model training frequency.


C.

Automate inventory reconciliation steps.


D.

Assign inventory oversight to the AI risk committee.


Expert Solution
Questions # 25:

Which of the following is MOST important to evaluate when selecting a vendor for a third-party large language model (LLM)?

Options:

A.

Whether the vendor's service level agreements (SLAs) align with corporate strategy


B.

How the vendor selects machine learning (ML) methods


C.

Whether the vendor offers subscription-based service options


D.

How the vendor handles data during model training and inference


Expert Solution
Questions # 26:

A financial organization is developing an AI model for credit risk assessment. Which of the following is MOST important to ensure the training data supports accurate and unbiased outcomes?

Options:

A.

Dataset diversity


B.

Supervised learning


C.

Synthetic data augmentation


D.

Data normalization


Expert Solution
Questions # 27:

Which of the following information is MOST important to add to an organizational business continuity plan (BCP) when adopting a customer-facing AI solution?

Options:

A.

Post-incident audits of AI system recovery times and accuracy metrics


B.

Secure access to alternate resources, multi-region failover, and sufficient load balancing


C.

Centralization of AI system failover mechanisms under a single cloud service provider


D.

Criteria for initiation of automated breach containment measures


Expert Solution
Viewing page 3 out of 3 pages
Viewing questions 21-30 out of questions