Summer Special 60% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: bestdeal

Free IAPP AIGP Practice Exam with Questions & Answers | Set: 3

Questions 21

The White House Executive Order from November 2023 requires companies that develop dual-use foundation models to provide reports to the federal government about all of the following EXCEPT?

Options:
A.

Any current training or development of dual-use foundation models.

B.

The results of red-team testing of each dual-use foundation model.

C.

Any environmental impact study for each dual-use foundation model.

D.

The physical and cybersecurity protection measures of their dual-use foundation models.

IAPP AIGP Premium Access
Questions 22

You are the chief privacy officer of a medical research company that would like to collect and use sensitive data about cancer patients, such as their names, addresses, race and ethnic origin, medical histories, insurance claims, pharmaceutical prescriptions, eating and drinking habits and physical activity.

The company will use this sensitive data to build an Al algorithm that will spot common attributes that will help predict if seemingly healthy people are more likely to get cancer. However, the company is unable to obtain consent from enough patients to sufficiently collect the minimum data to train its model.

Which of the following solutions would most efficiently balance privacy concerns with the lack of available data during the testing phase?

Options:
A.

Deploy the current model and recalibrate it over time with more data.

B.

Extend the model to multi-modal ingestion with text and images.

C.

Utilize synthetic data to offset the lack of patient data.

D.

Refocus the algorithm to patients without cancer.

Questions 23

You are part of your organization’s ML engineering team and notice that the accuracy of a model that was recently deployed into production is deteriorating.

What is the best first step address this?

Options:
A.

Replace the model with a previous version.

B.

Conduct champion/challenger testing.

C.

Perform an audit of the model.

D.

Run red-teaming exercises.

Questions 24

You are a privacy program manager at a large e-commerce company that uses an Al tool to deliver personalized product recommendations based on visitors' personal information that has been collected from the company website, the chatbot and public data the company has scraped from social media.

A user submits a data access request under an applicable U.S. state privacy law, specifically seeking a copy of their personal data, including information used to create their profile for product recommendations.

What is the most challenging aspect of managing this request?

Options:
A.

Some of the visitor's data is synthetic data that the company does not have to provide to the data subject.

B.

The data subject's data is structured data that can be searched, compiled and reviewed only by an automated tool.

C.

The data subject is not entitled to receive a copy of their data because some of it was scraped from public sources.

D.

Some of the data subject's data is unstructured data and you cannot untangle it from the other data, including information about other individuals.

Questions 25

All of the following types of testing can help evaluate the performance of a responsible Al system EXCEPT?

Options:
A.

Risk probability/severity.

B.

Adversarial robustness.

C.

Statistical sampling.

D.

Decision analysis.

Questions 26

CASE STUDY

Please use the following answer the next question:

A mid-size US healthcare network has decided to develop an Al solution to detect a type of cancer that is most likely arise in adults. Specifically, the healthcare network intends to create a recognition algorithm that will perform an initial review of all imaging and then route records a radiologist for secondary review pursuant Agreed-upon criteria (e.g., a confidence score below a threshold).

To date, the healthcare network has taken the following steps: defined its Al ethical principles: conducted discovery to identify the intended uses and success criteria for the system: established an Al governance committee; assembled a broad, crossfunctional team with clear roles and responsibilities; and created policies and procedures to document standards, workflows, timelines and risk thresholds during the project.

The healthcare network intends to retain a cloud provider to host the solution and a consulting firm to help develop the algorithm using the healthcare network's existing data and de-identified data that is licensed from a large US clinical research partner.

The most significant risk from combining the healthcare network’s existing data with the clinical research partner data is?

Options:
A.

Privacy risk.

B.

Security risk.

C.

Operational risk.

D.

Reputational risk.

Questions 27

CASE STUDY

Please use the following answer the next question:

ABC Corp, is a leading insurance provider offering a range of coverage options to individuals. ABC has decided to utilize artificial intelligence to streamline and improve its customer acquisition and underwriting process, including the accuracy and efficiency of pricing policies.

ABC has engaged a cloud provider to utilize and fine-tune its pre-trained, general purpose large language model (“LLM”). In particular, ABC intends to use its historical customer data—including applications, policies, and claims—and proprietary pricing and risk strategies to provide an initial qualification assessment of potential customers, which would then be routed a human underwriter for final review.

ABC and the cloud provider have completed training and testing the LLM, performed a readiness assessment, and made the decision to deploy the LLM into production. ABC has designated an internal compliance team to monitor the model during the first month, specifically to evaluate the accuracy, fairness, and reliability of its output. After the first month in production, ABC realizes that the LLM declines a higher percentage of women's loan applications due primarily to women historically receiving lower salaries than men.

What is the best strategy to mitigate the bias uncovered in the loan applications?

Options:
A.

Retrain the model with data that reflects demographic parity.

B.

Procure a third-party statistical bias assessment tool.

C.

Document all instances of bias in the data set.

D.

Delete all gender-based data in the data set.

Questions 28

All of the following are included within the scope of post-deployment Al maintenance EXCEPT?

Options:
A.

Ensuring that all model components are subject a control framework.

B.

Dedicating experts to continually monitor the model output.

C.

Evaluating the need for an audit under certain standards.

D.

Defining thresholds to conduct new impact assessments.

Questions 29

What is the main purpose of accountability structures under the Govern function of the NIST Al Risk Management Framework?

Options:
A.

To empower and train appropriate cross-functional teams.

B.

To establish diverse, equitable and inclusive processes.

C.

To determine responsibility for allocating budgetary resources.

D.

To enable and encourage participation by external stakeholders.

Questions 30

Scenario:

An organization is developing a powerful general-purpose AI (GPAI) model that has systemic impact. The compliance team is assessing what legal obligations apply under the EU AI Act.

Under the EU AI Act, which of the following compliance actions applies only to General Purpose AI models with systemic risk?

Options:
A.

Publishing a detailed summary of the data used to train the model

B.

Maintaining up-to-date technical documentation, including testing details

C.

Implementing an intellectual property policy to comply with EU copyright laws

D.

Making information available to downstream providers who integrate the model into their AI systems