Month End Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 70percent

IAPP AIGP Artificial Intelligence Governance Professional Exam Practice Test

Demo: 39 questions
Total 132 questions

Artificial Intelligence Governance Professional Questions and Answers

Question 1

What is the best method to proactively train an LLM so that there is mathematical proof that no specific piece of training data has more than a negligible effect on the model or its output?

Options:

A.

Clustering.

B.

Transfer learning.

C.

Differential privacy.

D.

Data compartmentalization.

Question 2

What is the best reason for a company adopt a policy that prohibits the use of generative Al?

Options:

A.

Avoid using technology that cannot be monetized.

B.

Avoid needing to identify and hire qualified resources.

C.

Avoid the time necessary to train employees on acceptable use.

D.

Avoid accidental disclosure to its confidential and proprietary information.

Question 3

You are an engineer that developed an Al-based ad recommendation tool.

Which of the following should be monitored to evaluate the tool’s effectiveness?

Options:

A.

Output data, assess the delta between the prediction and actual ad clicks.

B.

Algorithmic patterns, to show the model has a high degree of accuracy.

C.

Input data, to ensure the ads are reaching the target audience.

D.

GPU performance, to evaluate the tool's robustness.

Question 4

You are a privacy program manager at a large e-commerce company that uses an Al tool to deliver personalized product recommendations based on visitors' personal information that has been collected from the company website, the chatbot and public data the company has scraped from social media.

A user submits a data access request under an applicable U.S. state privacy law, specifically seeking a copy of their personal data, including information used to create their profile for product recommendations.

What is the most challenging aspect of managing this request?

Options:

A.

Some of the visitor's data is synthetic data that the company does not have to provide to the data subject.

B.

The data subject's data is structured data that can be searched, compiled and reviewed only by an automated tool.

C.

The data subject is not entitled to receive a copy of their data because some of it was scraped from public sources.

D.

Some of the data subject's data is unstructured data and you cannot untangle it from the other data, including information about other individuals.

Question 5

A company initially intended to use a large data set containing personal information to train an Al model. After consideration, the company determined that it can derive enough value from the data set without any personal information and permanently obfuscated all personal data elements before training the model.

This is an example of applying which privacy-enhancing technique (PET)?

Options:

A.

Anonymization.

B.

Pseudonymization.

C.

Differential privacy.

D.

Federated learning.

Question 6

CASE STUDY

Please use the following answer the next question:

A local police department in the United States procured an Al system to monitor and analyze social media feeds, online marketplaces and other sources of public information to detect evidence of illegal activities (e.g., sale of drugs or stolen goods). The Al system works by surveilling the public sites in order to identify individuals that are likely to have committed a crime. It cross-references the individuals against data maintained by law enforcement and then assigns a percentage score of the likelihood of criminal activity based on certain factors like previous criminal history, location, time, race and gender.

The police department retained a third-party consultant assist in the procurement process, specifically to evaluate two finalists. Each of the vendors provided information about their system's accuracy rates, the diversity of their training data and how their system works. The consultant determined that the first vendor’s system has a higher accuracy rate and based on this information, recommended this vendor to the police department.

The police department chose the first vendor and implemented its Al system. As part of the implementation, the department and consultant created a usage policy for the system, which includes training police officers on how the system works and how to incorporate it into their investigation process.

The police department has now been using the Al system for a year. An internal review has found that every time the system scored a likelihood of criminal activity at or above 90%, the police investigation subsequently confirmed that the individual had, in fact, committed a crime. Based on these results, the police department wants to forego investigations for cases where the Al system gives a score of at least 90% and proceed directly with an arrest.

The best human oversight mechanism for the police department to implement is that a police officer should?

Options:

A.

Explain to the accused how the Al system works.

B.

Confirm the Al recommendation prior to sentencing.

C.

Ensure an accused is given notice that the Al system was used.

D.

Consider the Al recommendation as part of the criminal investigation.

Question 7

All of the following are elements of establishing a global Al governance infrastructure EXCEPT?

Options:

A.

Providing training to foster a culture that promotes ethical behavior.

B.

Creating policies and procedures to manage third-partyrisk.

C.

Understanding differences in norms across countries.

D.

Publicly disclosing ethical principles.

Question 8

All of the following types of testing can help evaluate the performance of a responsible Al system EXCEPT?

Options:

A.

Risk probability/severity.

B.

Adversarial robustness.

C.

Statistical sampling.

D.

Decision analysis.

Question 9

Which of the following elements of feature engineering is most important to mitigate the potential bias in an Al system?

Options:

A.

Feature selection.

B.

Feature validation.

C.

Feature transformation.

D.

Feature importance analysis.

Question 10

Which of the following deployments of generative Al best respects intellectual property rights?

Options:

A.

The system produces content that is modified to closely resemble copyrightedwork.

B.

The system categorizes and applies filters to content based on licensing terms.

C.

The system provides attribution to creators of publicly available information.

D.

The system produces content that includes trademarks and copyrights.

Question 11

CASE STUDY

Please use the following answer the next question:

A mid-size US healthcare network has decided to develop an Al solution to detect a type of cancer that is most likely arise in adults. Specifically, the healthcare network intends to create a recognition algorithm that will perform an initial review of all imaging and then route records a radiologist for secondary review pursuant agreed-upon criteria (e.g., a confidence score below a threshold).

To date, the healthcare network has taken the following steps: defined its Al ethical principles: conducted discovery to identify the intended uses and success criteria for the system: established an Al governance committee; assembled a broad, crossfunctional team with clear roles and responsibilities; and created policies and procedures to document standards, workflows, timelines and risk thresholds during the project.

The healthcare network intends to retain a cloud provider to host the solution and a consulting firm to help develop the algorithm using the healthcare network's existing data and de-identified data that is licensed from a large US clinical research partner.

In the design phase, which of the following steps is most important in gathering the data from the clinical research partner?

Options:

A.

Perform a privacy impact assessment.

B.

Combine only anonymized data.

C.

Segregate the data sets.

D.

Review the terms of use.

Question 12

CASE STUDY

Please use the following answer the next question:

A mid-size US healthcare network has decided to develop an Al solution to detect a type of cancer that is most likely arise in adults. Specifically, the healthcare network intends to create a recognition algorithm that will perform an initial review of all imaging and then route records a radiologist for secondary review pursuant Agreed-upon criteria (e.g., a confidence score below a threshold).

To date, the healthcare network has taken the following steps: defined its Al ethical principles: conducted discovery to identify the intended uses and success criteria for the system: established an Al governance committee; assembled a broad, crossfunctional team with clear roles and responsibilities; and created policies and procedures to document standards, workflows, timelines and risk thresholds during the project.

The healthcare network intends to retain a cloud provider to host the solution and a consulting firm to help develop the algorithm using the healthcare network's existing data and de-identified data that is licensed from a large US clinical research partner.

The most significant risk from combining the healthcare network’s existing data with the clinical research partner data is?

Options:

A.

Privacy risk.

B.

Security risk.

C.

Operational risk.

D.

Reputational risk.

Question 13

What is the primary purpose of conducting ethical red-teaming on an Al system?

Options:

A.

To improve the model's accuracy.

B.

To simulate model risk scenarios.

C.

To identify security vulnerabilities.

D.

To ensure compliance with applicable law.

Question 14

Pursuant to the White House Executive Order of November 2023, who is responsible for creating guidelines to conduct red-teaming tests of Al systems?

Options:

A.

National Institute of Standards and Technology (NIST).

B.

National Science and Technology Council (NSTC).

C.

Office of Science and Technology Policy (OSTP).

D.

Department of Homeland Security (DHS).

Question 15

Which of the following Al uses is best described as human-centric?

Options:

A.

Pattern recognition algorithms are used to improve the accuracy of weather predictions, which benefits many industries and everyday life.

B.

Autonomous robots are used to move products within a warehouse, allowing human workers to reduce physical strain and alleviate monotony.

C.

Machine learning is used for demand forecasting and inventory management, ensuring that consumers can find products they want when they want them.

D.

Virtual assistants are used adapt educational content and teaching methods to individuals, offering personalized recommendations based on ability and needs.

Question 16

Which of the following would be the least likely step for an organization to take when designing an integrated compliance strategy for responsible Al?

Options:

A.

Conducting an assessment of existing compliance programs to determine overlaps and integration points.

B.

Employing a new software platform to modernize existing compliance processes across the organization.

C.

Consulting experts to consider the ethical principles underpinning the use of Al within the organization.

D.

Launching a survey to understand the concerns and interests of potentially impacted stakeholders.

Question 17

CASE STUDY

Please use the following answer the next question:

A mid-size US healthcare network has decided to develop an Al solution to detect a type of cancer that is most likely arise in adults. Specifically, the healthcare network intends to create a recognition algorithm that will perform an initial review of all imaging and then route records a radiologist for secondary review pursuant agreed-upon criteria (e.g., a confidence score below a threshold).

To date, the healthcare network has taken the following steps: defined its Al ethical principles: conducted discovery to identify the intended uses and success criteria for the system: established an Al governance committee; assembled a broad, crossfunctional team with clear roles and responsibilities; and created policies and procedures to document standards, workflows, timelines and risk thresholds during the project.

The healthcare network intends to retain a cloud provider to host the solution and a consulting firm to help develop the algorithm using the healthcare network's existing data and de-identified data that is licensed from a large US clinical research partner.

In the design phase, what is the most important step for the healthcare network to take when mapping its existing data to the clinical research partner data?

Options:

A.

Apply privacy-enhancing technologies to the data.

B.

Identify fits and gaps in the combined data.

C.

Ensure the data is labeled and formatted.

D.

Evaluate the country of origin of the data.

Question 18

Which of the following is the least relevant consideration in assessing whether users should be given the right to opt out from an Al system?

Options:

A.

Feasibility.

B.

Risk to users.

C.

Industry practice.

D.

Cost of alternative mechanisms.

Question 19

CASE STUDY

Please use the following answer the next question:

A mid-size US healthcare network has decided to develop an Al solution to detect a type of cancer that is most likely arise in adults. Specifically, the healthcare network intends to create a recognition algorithm that will perform an initial review of all imaging and then route records a radiologist for secondary review pursuant agreed-upon criteria (e.g., a confidence score below a threshold).

To date, the healthcare network has taken the following steps: defined its Al ethical principles: conducted discovery to identify the intended uses and success criteria for the system: established an Al governance committee; assembled a broad, crossfunctional team with clear roles and responsibilities; and created policies and procedures to document standards, workflows, timelines and risk thresholds during the project.

The healthcare network intends to retain a cloud provider to host the solution and a consulting firm to help develop the algorithm using the healthcare network's existing data and de-identified data that is licensed from a large US clinical research partner.

Which stakeholder group is most important in selecting the specific type of algorithm?

Options:

A.

The cloud provider.

B.

The consulting firm.

C.

The healthcare network'sdata science team.

D.

The healthcare network's Al governance committee.

Question 20

To maintain fairness in a deployed system, it is most important to?

Options:

A.

Protect against loss of personal data in the model.

B.

Monitor for data drift that may affect performance and accuracy.

C.

Detect anomalies outside established metrics that require new training data.

D.

Optimize computational resources and data to ensure efficiency and scalability.

Question 21

CASE STUDY

A company is considering the procurement of an AI system designed to enhance the security of IT infrastructure. The AI system analyzes how users type on their laptops, including typing speed, rhythm and pressure, to create a unique user profile. This data is then used to authenticate users and ensure that only authorized personnel can access sensitive resources.

When prioritizing the updates to its policies, rules and procedures to include the new AI system for user authentication, the organization should:

Options:

A.

Update third-party data sharing policies

B.

Update security controls for sensitive data

C.

Ensure that any personal data used is only processed for a specific and lawful purpose

D.

Reduce the complexity of the policy to make it easier for non-technical employees to understand

Question 22

Which of the following best defines an "Al model"?

Options:

A.

A system that applies defined rules to execute tasks.

B.

A system of controls that is used to govern an Al algorithm.

C.

A corpus of data which an Al algorithm analyzes to make predictions.

D.

A program that has been trained on a set of data to find patterns within the data.

Question 23

CASE STUDY

A company is considering the procurement of an AI system designed to enhance the security of IT infrastructure. The AI system analyzes how users type on their laptops, including typing speed, rhythm and pressure, to create a unique user profile. This data is then used to authenticate users and ensure that only authorized personnel can access sensitive resources.

The data processed by the AI system would be classified as:

Options:

A.

Non-sensitive personal data, since it does not reveal information about health, gender or race

B.

Organizational data, since it is part of the authentication process

C.

Non-personal data, as long as it is not linked to a user ID

D.

Special category data, if it can be used to uniquely identify a person

Question 24

A Canadian company is developing an Al solution to evaluate candidates in the course of job interviews.

Before offering the Al solution in the EU market, the company must take all of the following steps EXCEPT?

Options:

A.

Register the Al solution in a public EU database.

B.

Establish a risk and quality management system.

C.

Engage a third-party auditor to perform a bias audit.

D.

Draw up technical documentation and instructions for use.

Question 25

CASE STUDY

Please use the following answer the next question:

XYZ Corp., a premier payroll services company that employs thousands of people globally, is embarking on a new hiring campaign and wants to implement policies and procedures to identify and retain the best talent. The new talent will help the company's product team expand its payroll offerings to companies in the healthcare and transportation sectors, including in Asia.

It has become time consuming and expensive for HR to review all resumes, and they are concerned that human reviewers might be susceptible to bias.

Address these concerns, the company is considering using a third-party Al tool to screen resumes and assist with hiring. They have been talking to several vendors about possibly obtaining a third-party Al-enabled hiring solution, as long as it would achieve its goals and comply with all applicable laws.

The organization has a large procurement team that is responsible for the contracting of technology solutions. One of the procurement team's goals is to reduce costs, and it often prefers lower-cost solutions. Others within the company are responsible for integrating and deploying technology solutions into the organization's operations in a responsible, cost-effective manner.

The organization is aware of the risks presented by Al hiring tools and wants to mitigate them. It also questions how best to organize and train its existing personnel to use the Al hiring tool responsibly. Their concerns are heightened by the fact that relevant laws vary across jurisdictions and continue to change.

The frameworks that would be most appropriate for XYZ's governance needs would be the NIST Al Risk Management Framework and?

Options:

A.

NIST Information Security Risk (NIST SP 800-39).

B.

NIST Cyber Security Risk Management Framework (CSF 2.0).

C.

IEEE Ethical System Design Risk Management Framework (IEEE 7000-21).

D.

Human Rights, Democracy, and Rule of Law Impact Assessment (HUDERIA).

Question 26

All of the following are common optimization techniques in deep learning to determine weights that represent the strength of the connection between artificial neurons EXCEPT?

Options:

A.

Gradient descent, which initially sets weights arbitrary values, and then at each step changes them.

B.

Momentum, which improves the convergence speed and stability of neural network training.

C.

Autoregression, which analyzes and makes predictions about time-series data.

D.

Backpropagation, which starts from the last layer working backwards.

Question 27

CASE STUDY

Please use the following answer the next question:

ABC Corp, is a leading insurance provider offering a range of coverage options to individuals. ABC has decided to utilize artificial intelligence to streamline and improve its customer acquisition and underwriting process, including the accuracy and efficiency of pricing policies.

ABC has engaged a cloud provider to utilize and fine-tune its pre-trained, general purpose large language model (“LLM”). In particular, ABC intends to use its historical customer data—including applications, policies, and claims—and proprietary pricing and risk strategies to provide an initial qualification assessment of potential customers, which would then be routed tA. human underwriter for final review.

ABC and the cloud provider have completed training and testing the LLM, performed a readiness assessment, and made the decision to deploy the LLM into production. ABC has designated an internal compliance team to monitor the model during the first month, specifically to evaluate the accuracy, fairness, and reliability of its output. After the first month in production, ABC realizes that the LLM declines a higher percentage of women's loan applications due primarily to women historically receiving lower salaries than men.

The best approach to enable a customer who wants information on the Al model's parameters for underwriting purposes is to provide?

Options:

A.

A transparency notice.

B.

An opt-out mechanism.

C.

Detailed terms of service.

D.

Customer service support.

Question 28

CASE STUDY

A global marketing agency is adapting a large language model ("LLM") to generate content for an upcoming marketing campaign for a client's new product: a hard hat designed for construction workers of any gender to better protect them from head injuries.

The marketing agency is accessing the LLM through an application programming interface ("API") developed by a third-party technology company. They want to generate text to be used for targeted advertising communications that highlight the benefits of the hard hat to potential purchasers. Both the marketing agency and the technology company have taken reasonable steps to address Al governance.

The marketing company has:

•           Entered into a contract with the technology company with suitable representations and warranties.

•           Completed an impact assessment on the LLM for this intended use.

•           Built technical guidance on how to measure and mitigate bias in the LLM.

•           Enabled technical aspects of transparency, explainability, robustness and privacy.

•           Followed applicable regulatory requirements.

•           Created specific legal statements and disclosures regarding the use of the Al on its client's advertising.

The technology company has:

•           Provided guidance and resources to developers to address environmental concerns.

•           Build technical guidance on how to measure and mitigate bias in the LLM.

•           Provided tools and resources to measure bias specific to the LLM.

•           Enabled technical aspects of transparency, explainability, robustness and privacy.

•           Mapped and mitigated potential societal harms and large-scale impacts.

•           Followed applicable regulatory requirements and industry standards.

•           Created specific legal statements and disclosures regarding the LLM. including with respect to IP and rights to data.

The technology company has also addressed environmental concerns and societal harms.

Which of the following results would be considered biased outputs from this AI system EXCEPT?

Options:

A.

The generated ads are sent to construction companies, not individual workers

B.

The content generated for minority construction workers is insufficient

C.

The images of female workers are hyper-sexualized

D.

The advertising text generated for female audiences focuses on color and style

Question 29

Scenario:

An organization is building a compliance program to ensure responsible AI deployment. It aims to align operations with AI risk frameworks and mitigate legal, ethical, and operational risks, while still promoting innovation.

Which of the following would be the least likely step for an organization to take when designing an integrated compliance strategy for responsible AI?

Options:

A.

Meeting with and obtaining approval from senior management

B.

Launching a survey to understand the concerns and interests of potentially impacted stakeholders

C.

Consulting experts to consider the ethical principles underpinning the use of AI within the organization

D.

Employing a new software platform to modernize existing compliance processes across the organization

Question 30

Which of the following may be permissible uses of an AI system under the EU AI Act EXCEPT?

Options:

A.

Using biometrics in abduction cases

B.

Detecting emotions in a telemedicine session

C.

Improving the response time for emergency services

D.

Detecting emotions in a workplace for employee morale

Question 31

The framework set forth in the White House Blueprint for an Al Bill of Rights addresses all of the following EXCEPT?

Options:

A.

Human alternatives, consideration and fallback.

B.

High-risk mitigation standards.

C.

Safe and effective systems.

D.

Data privacy.

Question 32

CASE STUDY

Please use the following answer the next question:

XYZ Corp., a premier payroll services company that employs thousands of people globally, is embarking on a new hiring campaign and wants to implement policies and procedures to identify and retain the best talent. The new talent will help the company's product team expand its payroll offerings to companies in the healthcare and transportation sectors, including in Asia.

It has become time consuming and expensive for HR to review all resumes, and they are concerned that human reviewers might be susceptible to bias.

Address these concerns, the company is considering using a third-party Al tool to screen resumes and assist with hiring. They have been talking to several vendors about possibly obtaining a third-party Al-enabled hiring solution, as long as it would achieve its goals and comply with all applicable laws.

The organization has a large procurement team that is responsible for the contracting of technology solutions. One of the procurement team's goals is to reduce costs, and it often prefers lower-cost solutions. Others within the company are responsible for integrating and deploying technology solutions into the organization's operations in a responsible, cost-effective manner.

The organization is aware of the risks presented by Al hiring tools and wants to mitigate them. It also questions how best to organize and train its existing personnel to use the Al hiring tool responsibly. Their concerns are heightened by the fact that relevant laws vary across jurisdictions and continue to change.

If XYZ does not deploy and use the Al hiring tool responsibly in the United States, its liability would likely increase under all of the following laws EXCEPT?

Options:

A.

Anti-discriminationlaws.

B.

Product liability laws.

C.

Accessibility laws.

D.

Privacy laws.

Question 33

Scenario:

A large multinational organization is rolling out a company-wide AI governance initiative. To build awareness and support adoption, they are evaluating different ways to train employees and stakeholders across departments, including legal, technical, marketing, and customer-facing roles.

Which of the following typical approaches is a large organization least likely to use to responsibly train stakeholders on AI terminology, strategy and governance?

Options:

A.

Providing all technical employees education on AI development so they can retool and participate in the development of AI systems

B.

Providing training on AI ethics, based on the extent to which the organization seeks to promote a responsible AI culture

C.

Providing role-specific training, based on whether the organization uses a centralized, federated or decentralized governance model

D.

Providing information and education to customers and users to understand the capabilities and limitations of the AI tools with which they interact

Question 34

Under the Canadian Artificial Intelligence and Data Act, when must the Minister of Innovation, Science and Industry be notified about a high-impact Al system?

Options:

A.

When use of the system causes or is likely to cause material harm.

B.

When the algorithmic impact assessment has been completed.

C.

Upon release of a new version of the system.

D.

Upon initial deployment of the system.

Question 35

A company is creating a mobile app to enable individuals to upload images and videos, and analyze this data using ML to provide lifestyle improvement recommendations. The signup form has the following data fields:

1.First name

2.Last name

3.Mobile number

4.Email ID

5.New password

6.Date of birth

7.Gender

In addition, the app obtains a device's IP address and location information while in use.

What GDPR privacy principles does this violate?

Options:

A.

Purpose Limitation and Data Minimization.

B.

Accountability and Lawfulness.

C.

Transparency and Accuracy.

D.

Integrity and Confidentiality.

Question 36

All of the following are unique characteristics of AI that require a comprehensive approach to governance EXCEPT?

Options:

A.

Autonomy

B.

Automation

C.

Adaptability

D.

Speed and scale

E.

Superintelligence

Question 37

Scenario:

A public sector agency is reviewing proposed AI use cases for improving services. It wants to prioritize implementations that deliver value but minimize unintended negative consequences.

When evaluating which AI use cases to implement, an organization should consider all of the following EXCEPT:

Options:

A.

Related TEVV (test, evaluate, verify, validate) and system metrics

B.

The users and their expectations

C.

Equitable access to the AI tool

D.

Potential positive and negative impacts of the system

Question 38

CASE STUDY

Please use the following answer the next question:

ABC Corp, is a leading insurance provider offering a range of coverage options to individuals. ABC has decided to utilize artificial intelligence to streamline and improve its customer acquisition and underwriting process, including the accuracy and efficiency of pricing policies.

ABC has engaged a cloud provider to utilize and fine-tune its pre-trained, general purpose large language model (“LLM”). In particular, ABC intends to use its historical customer data—including applications, policies, and claims—and proprietary pricing and risk strategies to provide an initial qualification assessment of potential customers, which would then be routed .. human underwriter for final review.

ABC and the cloud provider have completed training and testing the LLM, performed a readiness assessment, and made the decision to deploy the LLM into production. ABC has designated an internal compliance team to monitor the model during the first month, specifically to evaluate the accuracy, fairness, and reliability of its output. After the first month in production, ABC realizes that the LLM declines a higher percentage of women's loan applications due primarily to women historically receiving lower salaries than men.

During the first month when ABC monitors the model for bias, it is most important to?

Options:

A.

Continue disparity testing.

B.

Analyze the quality of the training and testing data.

C.

Compare the results to human decisions prior to deployment.

D.

Seek approval from management for any changes to the model.

Question 39

Scenario:

An enterprise is evaluating multiple third-party generative AI tools to integrate into its platform. As part of its AI governance policy, it is assessing the most effective methods to reduce risks related to bias, data misuse, and liability when using third-party solutions.

All of the following are commonly adopted processes and policies in reducing potential risks introduced by third-party AI tools or applications EXCEPT:

Options:

A.

Including clauses in the procurement agreement for buyers of generative AI tools to put certain liabilities on the tool supplier

B.

Allowing publicly available information and personally identifiable information (PII) to be incorporated into the prompt

C.

Requiring an independent third-party bias audit for third-party generative AI tools

D.

Requiring new use cases of the generative AI tools or applications to be reviewed and approved by the generative AI governance body

Demo: 39 questions
Total 132 questions