AAIR Exam Prep

Free AAIR exam practice questions with answers and explanations, organized by domain and part.

Domain 1: AI Governance / Part B - AI Organizational Processes and Alignment

Q261 Regarding AI center of excellence role, the BEST practice is to:

Answer: B

A coordinating function (e.g., CoE) standardizes practices and risk management across decentralized AI efforts.

Domain 3: AI Operations/Resilience / Part E - AI Supply Chain Risk Management

Q262 A right-to-audit clause in an AI vendor contract is valuable PRIMARILY because it:

Answer: B

Audit rights enable independent verification, a substantive risk-management lever.

Domain 1: AI Governance / Part F - AI Trustworthiness, Ethical, and Societal Implications

Q263 Informed consent for individuals subject to AI-driven decisions is MOST meaningfully achieved when:

Answer: C

Meaningful informed consent requires clear disclosure of the AI's role and a real avenue to question or contest outcomes, not a generic policy or implied consent through mere usage.

Domain 3: AI Operations/Resilience / Part A - AI Risk Scenario Identification and Assessment

Q264 Regarding AI-specific risk scenario development, the BEST practice is to:

Answer: B

AI risk scenarios should be tailored beyond generic IT risk and security-only scenarios, developed proactively.

Domain 1: AI Governance / Part F - AI Trustworthiness, Ethical, and Societal Implications

Q265 The principle of explainability in AI trustworthiness is MOST concerned with:

Answer: D

Explainability is about making a model's decision logic understandable to affected stakeholders; it does not guarantee accuracy, reduce cost, or require open-source licensing.

Domain 2: AI Lifecycle / Part C - AI Implementation, Maintenance, and Decommissioning

Q266 Upon decommissioning an AI model, the MOST critical consideration is:

Answer: B

Decommissioning must respect legal/regulatory retention obligations, not default to deletion or reuse.

Domain 3: AI Operations/Resilience / Part D - AI Risk Metrics, Monitoring, and Reporting

Q267 When a KRI threshold is breached, the escalation process should ensure:

Answer: B

Threshold breaches require timely escalation and response, not redefinition to avoid the alert.

Domain 2: AI Lifecycle / Part B - AI Model Training, Testing, and Validation

Q268 Holdout/test data used to validate an AI model must be:

Answer: B

Independent holdout data prevents inflated/biased performance estimates.

Domain 3: AI Operations/Resilience / Part D - AI Risk Metrics, Monitoring, and Reporting

Q269 A well-designed key risk indicator (KRI) for an AI system should be:

Answer: B

Effective KRIs are measurable, risk-relevant, and threshold-based.

Domain 3: AI Operations/Resilience / Part C - AI Controls Management

Q270 In the context of control effectiveness evaluation, which of the following represents sound AI risk management?

Answer: A

Effectiveness evaluation needs evidence-based testing, not mere existence, external-only review, or absence-of-incident assumption.

‹ Prev
Next ›
Page 27 of 50 · 500 questions