AAIR Exam Prep

Free AAIR exam practice questions with answers and explanations, organized by domain and part.

Domain 1: AI Governance / Part C - AI Ownership, Oversight, and Accountability

Q251 When an enterprise cannot fully explain a third-party AI model's internal logic because it is proprietary, the enterprise's BEST course of action is to:

Answer: C

When internal visibility into proprietary logic is limited, compensating controls such as independent testing, documentation review, or audit rights help maintain accountability.

Domain 2: AI Lifecycle / Part C - AI Implementation, Maintenance, and Decommissioning

Q252 A change management approval process for updating a production AI model is MOST important because it:

Answer: D

Formal change management ensures proposed model changes are reviewed, tested, and authorized, reducing the risk that an update introduces unintended performance or risk impacts.

Domain 1: AI Governance / Part C - AI Ownership, Oversight, and Accountability

Q253 When an AI model's output directly informs a regulated business decision (e.g., credit approval), accountability for that decision rests PRIMARILY with:

Answer: B

Automation does not remove business accountability for regulated decisions.

Domain 1: AI Governance / Part B - AI Organizational Processes and Alignment

Q254 When addressing organizational alignment of AI initiatives, an AI risk practitioner should FIRST:

Answer: C

AI initiatives should align to business objectives within governance structures, not run independently of oversight.

Domain 1: AI Governance / Part F - AI Trustworthiness, Ethical, and Societal Implications

Q255 Providing affected individuals with a clear channel to contest or appeal an AI-driven decision is BEST justified as:

Answer: A

A contest/appeal channel is a core accountability mechanism that surfaces and corrects errors or unfairness; it complements, rather than substitutes for, explaining the decision itself.

Domain 1: AI Governance / Part C - AI Ownership, Oversight, and Accountability

Q256 An effective escalation path for AI risk issues should ensure that:

Answer: B

Escalation paths should route issues by severity/impact, not centralize everything or wait for external triggers.

Domain 1: AI Governance / Part E - AI Regulatory Compliance and Legal Considerations

Q257 Contractual AI vendor clauses should address liability allocation PRIMARILY to:

Answer: B

Clear liability allocation reduces disputes and clarifies accountability for AI-related harm.

Domain 3: AI Operations/Resilience / Part B - AI Risk Treatment Strategies

Q258 Risk avoidance as an AI risk treatment means:

Answer: B

Avoidance means not pursuing the activity because the risk is unacceptable.

Domain 3: AI Operations/Resilience / Part C - AI Controls Management

Q259 When addressing control ownership and accountability, an AI risk practitioner should FIRST:

Answer: D

Each control needs a clear, accountable owner responsible for ongoing operation, not undefined or poorly transitioned ownership.

Domain 3: AI Operations/Resilience / Part B - AI Risk Treatment Strategies

Q260 A cost-benefit analysis of an AI control should weigh:

Answer: B

Cost-benefit analysis balances control cost against quantified/qualified risk reduction.

‹ Prev
Next ›
Page 26 of 50 · 500 questions