Which of the following AI system characteristics would BEST help an IS auditor evaluate the system's algorithm?
Which of the following controls MOST effectively helps to ensure an AI model is resilient against external threats?
An AI healthcare diagnostic tool requires large volumes of patient data, raising concerns about privacy and data breaches. Which of the following is the MOST effective strategy to mitigate this risk?
Which of the following strategies used by modelers to enhance data accuracy has the GREATEST risk of bias and information loss?
Which of the following is MOST important to consider when auditing an organization's AI procedures?
When auditing the transparency of an AI system, which of the following would be the MOST effective way to understand the model's decision-making process?
Which of the following is the GREATEST concern when an audit team relies on generative AI to create audit reports?
Which of the following is the PRIMARY purpose of an AI acceptable use policy?
Which of the following is the MOST important risk for an IS auditor to consider when reviewing the adoption of an AI system?
An AI tool is being implemented for a regional healthcare organization. Which of the following training methods BEST ensures the AI output does not reveal whether someone's personal data was used?
Which of the following BEST detects model drift or unexpected changes in AI model outputs?
From a data appropriateness and bias perspective, which of the following should be of GREATEST concern when reviewing an AI model used in a credit scoring system?
An organization plans to share customer data collected through an AI system with third-party vendors. Which of the following BEST demonstrates compliance with data privacy principles?
A healthcare organization uses an AI model to analyze patient data and provide diagnostic recommendations. Which of the following MOST effectively detects data drift related to the model's predictions?
Which of the following presents the GREATEST risk when an organization deploys a machine learning model in a public cloud environment for real-time predictions?
Which of the following controls would MOST effectively mitigate worst-case service disruption scenarios affecting an AI-based application system?
An internal audit department notices that AI-generated audit reports are producing false conclusions. Which of the following is the BEST way to correct this issue?
In the context of an AI implementation, which of the following actions is MOST critical for an organization's change management program?
Which of the following will provide the BEST evidence to support the alignment of an AI model with an organization's business objectives?
An organization deploys a complex AI model to support credit risk assessments. Stakeholders find the model’s output difficult to interpret. Which of the following BEST improves interpretability?
An IS auditor reviews an AI tool using K-means to cluster customers. One cluster shows very high spending but low product diversity. What should the auditor recommend?
During audit planning, an IS auditor reviews the correlation matrix. Which variable pair from an electrical generation facility has the MOST significant correlation?
What should be done FIRST when an AI-powered chatbot starts giving incorrect financial advice after a backend API change?
While evaluating a complex machine learning (ML) model used for regulatory compliance in a financial institution, which of the following should the IS auditor do to BEST ensure transparency?
Which of the following is the PRIMARY objective of AI governance?
Which of the following is the MOST important consideration for change management related to the organization-wide adoption of AI systems and tools?
A car manufacturer uses an AI model to predict maintenance needs for its vehicles. Which of the following techniques can an IS auditor apply to MOST effectively verify the AI model's decisions to stakeholders?
Which of the following is the MOST important course of action for an organization prior to allowing end users to utilize an AI tool?
An IS auditor is interviewing management about implemented controls around machine learning (ML) models deployed in the production environment. Which of the following schedules for reviewing the performance of a deployed model would be of GREATEST concern to the auditor?
An IS auditor uses an internally developed generative AI tool to prepare a status update for audit stakeholders. Which of the following is the auditor’s MOST appropriate course of action?
A car rental company is developing an AI system to dynamically adjust rental pricing based on demand, location, and customer profiles. Which of the following is the MOST important reason to conduct specific testing during development?
When auditing a machine learning (ML) solution, false positives can BEST be assessed by examining the level of:
An IS auditor is auditing an organization’s data governance framework. The primary objective is to provide assurance that data management practices are standardized to support a trustworthy AI system. Which of the following should be the auditor's MOST important consideration?
A retail organization uses an AI model to analyze customers' purchase history in order to offer personalized discounts. Which of the following practices represents the MOST ethical use of customer data?
Which of the following is MOST important to have in place when initially populating data into a data frame for an AI model?
Which of the following is MOST important to review in order to gain assurance that an AI model is performing without biases?
An organization is using a large language model (LLM) to assist in evaluating loan applications, but the training data used is known to be incomplete. Which of the following is the GREATEST associated risk?
Which of the following is the PRIMARY reason IS auditors must be aware that generative AI may return different investment recommendations from the same set of data?
To confirm the fairness of AI model decisions, the BEST way to collect reliable evidence during an AI audit is by:
Which of the following presents the MOST significant barrier to generative AI model explainability?
Which of the following would pose the GREATEST risk when reviewing AI acceptable use training content?
Which of the following is the MOST important reason to perform regular ethical reviews of AI systems?
The GREATEST benefit of using AI auditing techniques over traditional methods is that AI auditing techniques can:
An AI social media platform uses an algorithm to increase user engagement that could unintentionally promote divisive content. Which of the following is the BEST course of action to mitigate this risk?
A digital bank utilizes an AI system to generate credit scores. Which of the following would BEST mitigate the risk of sudden and unexplained changes in a borrower’s credit score?
Which of the following is the BEST reason that recurrent neural networks enable language translation of documents?
Which of the following is the MOST important task when gathering data during the AI system development process?
During a risk assessment for an AI system, data drift was identified as a key risk. Which of the following is the BEST course of action?
A healthcare AI tool recommends treatments with high success rates but significant risk. The hospital prioritizes patient safety over innovation. What is the BEST course of action?
An IS auditor is considering the integration of AI techniques into the audit sampling process. Which of the following BEST enables the auditor to identify high-risk transactions within large data sets for targeted sampling?
An IS auditor notes the combined number of records utilized within the training, validation, and testing data sets exceeds the total number of records in the original data set. Which of the following is MOST important for the auditor to determine?
Which of the following should be an IS auditor's GREATEST concern when using a predictive AI tool to analyze data abnormalities?
A bank uses a video-based know your customer (KYC) verification process. Cybercriminals exploit this process by using deepfake technology to impersonate bank customers. Which of the following countermeasures is the BEST way for the bank to mitigate this risk?
Which of the following types of AI can use unlabeled data sets to imitate human learning behavior?