AAIR Exam Prep

Free AAIR exam practice questions with answers and explanations, organized by domain and part.

Domain 2: AI Lifecycle / Part B - AI Model Training, Testing, and Validation

Q211 When addressing holdout and cross-validation practices, an AI risk practitioner should FIRST:

Answer: D

Robust generalization assessment via holdout/cross-validation is needed, not training-only or convenience-sample evaluation.

Domain 2: AI Lifecycle / Part B - AI Model Training, Testing, and Validation

Q212 Independent model validation (separate from the development team) is important PRIMARILY to:

Answer: B

Independence reduces the risk of developer bias influencing the validation outcome.

Domain 1: AI Governance / Part C - AI Ownership, Oversight, and Accountability

Q213 HR's role in supporting AI governance is MOST accurately described as:

Answer: A

HR's contribution is centered on job classification and training support for employee end users, not technical architecture, audit, or risk appetite decisions.

Domain 1: AI Governance / Part E - AI Regulatory Compliance and Legal Considerations

Q214 Record-keeping obligations for high-risk AI systems typically require retaining:

Answer: B

Traceable logs/records across the lifecycle support audit and regulatory demonstration.

Domain 3: AI Operations/Resilience / Part C - AI Controls Management

Q215 Regarding segregation of duties in AI operations, the BEST practice is to:

Answer: A

Segregation of duties across development, validation, and approval reduces risk and should not be collapsed into one role or informal trust.

Domain 3: AI Operations/Resilience / Part C - AI Controls Management

Q216 Automated monitoring tools for AI controls are valuable PRIMARILY because they:

Answer: B

Automation improves speed/consistency of detection but does not eliminate the need for human oversight.

Domain 3: AI Operations/Resilience / Part F - AI Incident Response, BIA, Business Continuity, and Disaster Recovery

Q217 An AI-specific incident response plan should differ from a generic IT plan PRIMARILY by including:

Answer: B

AI incident response must address AI-specific failure modes beyond generic IT issues.

Domain 1: AI Governance / Part B - AI Organizational Processes and Alignment

Q218 Integrating AI risk checkpoints into the software development lifecycle (SDLC) is valuable MAINLY because it:

Answer: B

Embedding checkpoints early catches AI risks before they reach production.

Domain 3: AI Operations/Resilience / Part D - AI Risk Metrics, Monitoring, and Reporting

Q219 AI risk reporting to the board should PRIMARILY focus on:

Answer: B

Board reporting should be material and decision-relevant, not granular technical detail.

Domain 2: AI Lifecycle / Part A - AI Design, Development/Procurement, and Documentation

Q220 Defining acceptance criteria BEFORE AI model development begins is important PRIMARILY because it:

Answer: B

Upfront acceptance criteria give objective, measurable targets for later evaluation.

‹ Prev
Next ›
Page 22 of 50 · 500 questions