AAIR Exam Prep

Free AAIR exam practice questions with answers and explanations, organized by domain and part.

Domain 1: AI Governance / Part D - AI Policies, Procedures, and Organizational Training

Q331 Procedures supporting an AI policy should PRIMARILY:

Answer: B

Procedures operationalize policy into specific, actionable steps.

Domain 3: AI Operations/Resilience / Part B - AI Risk Treatment Strategies

Q332 In the context of risk appetite application to AI decisions, which of the following represents sound AI risk management?

Answer: B

Risk appetite should be defined upfront and applied consistently, not overridden by sponsorship or defined after the fact.

Domain 3: AI Operations/Resilience / Part B - AI Risk Treatment Strategies

Q333 In the context of risk transfer via contracts/insurance for AI, which of the following represents sound AI risk management?

Answer: D

Risk transfer should complement internal controls, not substitute for them or be arranged only reactively.

Domain 1: AI Governance / Part B - AI Organizational Processes and Alignment

Q334 AI governance processes should be aligned with the enterprise's risk appetite PRIMARILY to:

Answer: A

Risk appetite alignment keeps AI decisions consistent with enterprise-wide risk tolerance.

Domain 1: AI Governance / Part E - AI Regulatory Compliance and Legal Considerations

Q335 Regarding documentation for regulatory AI audits, the BEST practice is to:

Answer: C

Audit-ready AI documentation must be maintained proactively and substantively, not assembled reactively or kept informally.

Domain 1: AI Governance / Part E - AI Regulatory Compliance and Legal Considerations

Q336 Ownership of AI-generated output is MOST likely to be addressed through:

Answer: B

IP ownership of AI output depends on contract terms and jurisdiction-specific law, not a universal default.

Domain 2: AI Lifecycle / Part B - AI Model Training, Testing, and Validation

Q337 A validation report showing strong aggregate accuracy but poor performance on a minority subgroup indicates:

Answer: B

Subgroup performance gaps despite good aggregate accuracy signal a fairness risk needing follow-up.

Domain 3: AI Operations/Resilience / Part B - AI Risk Treatment Strategies

Q338 In the context of cost-benefit analysis of AI controls, which of the following represents sound AI risk management?

Answer: A

Control selection should weigh cost and benefit, not default to vendor recommendation, maximum cost, or ignore usability.

Domain 1: AI Governance / Part C - AI Ownership, Oversight, and Accountability

Q339 The governing body's determination of whether an intended AI use aligns with the organization's risk appetite is MOST important because:

Answer: C

Because AI risk can shift rapidly, ongoing alignment checks against risk appetite enable timely responses, including plan modification or termination; they do not remove legal accountability.

Domain 3: AI Operations/Resilience / Part E - AI Supply Chain Risk Management

Q340 Use of open-source AI components introduces risk PRIMARILY related to:

Answer: B

Open-source components can carry provenance, maintenance, and vulnerability risks requiring assessment.

‹ Prev
Next ›
Page 34 of 50 · 500 questions