New Year Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

Which risk management framework/guide/standard focuses on value-based engineering methodology?

A.

ISO/IEC Guide 51 (Safety).

B.

ISO 31000 Guidelines (Risk Management).

C.

IEEE 7000-2021 Standard Model Process for Addressing Ethical Concerns during System Design.

D.

Council of Europe Human Rights, Democracy, and the Rule of Law Assurance Framework (HUDERIA) for Al Systems.

Which of the following is a foundational characteristic of effective AI governance?

A.

Engagement of a cross-functional team

B.

Reliance on tested vendor management processes

C.

Thorough reviews of a company’s public filings with experts

D.

Uniform policies and procedures across developer, deployer and user roles

Which of the following is an example of a high-risk application under the EU Al Act?

A.

A resume scanning tool that ranks applicants.

B.

An Al-enabled inventory management tool.

C.

A government-run social scoring tool.

D.

A customer service chatbot tool.

Scenario:

A large multinational organization is rolling out a company-wide AI governance initiative. To build awareness and support adoption, they are evaluating different ways to train employees and stakeholders across departments, including legal, technical, marketing, and customer-facing roles.

Which of the following typical approaches is a largeorganization leastlikely touse to responsibly train stakeholders on AI terminology, strategy and governance?

A.

Providing all technical employees education on AI development so they can retool and participate in the development of AI systems

B.

Providing training on AI ethics, based on the extent to which the organization seeks to promote a responsible AI culture

C.

Providing role-specific training, based on whether the organization uses a centralized, federated or decentralized governance model

D.

Providing information and education to customers and users to understand the capabilities and limitations of the AI tools with which they interact

Scenario:

A global organization wants to align with international frameworks on AI governance. They are reviewing guidance from the OECD on how to incorporate broader governance tools into their AI program.

Codes of conductandcollective agreementsare what type of assessment tools as defined by theOrganization for Economic Cooperation and Development (OECD)?

A.

Educational

B.

Procedural

C.

Technical

D.

Analytic

Under the NIST Al Risk Management Framework, all of the following are defined as characteristics of trustworthy Al EXCEPT?

A.

Tested and Effective.

B.

Secure and Resilient.

C.

Explainable and Interpretable.

D.

Accountable and Transparent.

CASE STUDY

A company is considering the procurement of an AI system designed to enhance the security of IT infrastructure. The AI system analyzes how users type on their laptops, including typing speed, rhythm and pressure, to create a unique user profile. This data is then used to authenticate users and ensure that only authorized personnel can access sensitive resources.

When prioritizing the updates to its policies, rules and procedures to include the new AI system for user authentication, the organization should:

A.

Update third-party data sharing policies

B.

Update security controls for sensitive data

C.

Ensure that any personal data used is only processed for a specific and lawful purpose

D.

Reduce the complexity of the policy to make it easier for non-technical employees to understand

Scenario:

A mid-sized tech firm is building its AI governance program and is exploring ISO/IEC standards that could support consistency in terminology and risk assessment processes across teams.

ISO/IEC 22989andISO/IEC 42001can be valuable resources for AI Governance professionals inall of the following ways EXCEPT:

A.

Establishing terminology and describing concepts so that governance team members can communicate with diverse parties and stakeholders from around the world

B.

Being applicable to organizations of any size and industry seeking to use AI responsibly and effectively in their design processes, information systems and controls

C.

Addressing specific issues related to managing procurement processes with third parties that provide or develop AI systems for their organization

D.

Recommending key activities to assess and manage risk: test, evaluate, verify and validate (TEVV)

Scenario:

An organization is planning to deploy a new internal application that uses AI to make automated decisions about individuals. This application will process personal information and may affect individuals’ access to certain benefits or opportunities.

Which of the following documents must be updated to ensure transparency?

A.

The organization's website privacy notice

B.

The organization's acceptable use policy

C.

The organization's privacy policy

D.

The user privacy notice