Summer Sale 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: Board70

AAIR Exam Dumps - Isaca AI Risk Questions and Answers

Question # 4

A healthcare organization plans to use synthetic records in medical research to help protect patient privacy. Which of the following is the GREATEST risk associated with using synthetic data to train AI models?

Options:

A.

Synthetic data may not reflect the diversity of real-world data.

B.

The use of synthetic data may result in an increase in false negatives.

C.

The use of synthetic data may lead to regulatory noncompliance.

D.

Synthetic data may be more susceptible to data poisoning attacks.

Buy Now
Question # 5

Which of the following is the PRIMARY reason to include contractual requirements for model updates and disclosures from third-party AI suppliers?

Options:

A.

To guarantee that existing availability targets will be achieved following each update

B.

To ensure timely detection and mitigation of new system risks that could harm individuals

C.

To ensure internal trust in the model's reliability before launching AI-driven innovation efforts

D.

To determine appropriate access to vendor staff for datasets containing sensitive information

Buy Now
Question # 6

A risk practitioner discovers that autonomous agents have been creating temporary HR system identities. Which of the following poses the GREATEST risk?

Options:

A.

Delays in breach identification and response

B.

Ineffective credential management

C.

Increased staffing needs for human validation

D.

Identities are not incorporated into the federated system

Buy Now
Question # 7

A risk practitioner learns that a credit-scoring AI system is exhibiting bias that cannot be eliminated through further training. Which of the following is the risk practitioner's BEST recommendation?

Options:

A.

Request a risk acceptance from senior management.

B.

Take the system out of production to avoid harm and potential legal liability.

C.

Source vendors for a new credit-scoring AI solution.

D.

Apply compensating controls that generate offsetting biases in the opposite direction.

Buy Now
Question # 8

Which of the following is the PRIMARY purpose of maintaining comprehensive model cards and documentation?

Options:

A.

Justifying model use cases

B.

Preserving audit trails

C.

Listing technical specifications

D.

Providing model transparency

Buy Now
Question # 9

An organization uses AI to generate procedure documents for operational processes. Which of the following would be of GREATEST concern to a risk practitioner?

Options:

A.

AI-generated procedure documents do not undergo human review.

B.

AI-generated procedure manuals include outdated procedures.

C.

The procedures are not aligned to organizational policy.

D.

The AI model is used to generate procedures for high-risk activities.

Buy Now
Question # 10

Which of the following is the BEST course of action to mitigate risk during model selection of supervised or unsupervised algorithms?

Options:

A.

Emphasize the generalization capability of algorithms.

B.

Require the use of supervised learning for model training projects.

C.

Prioritize cost reductions related to computational requirements.

D.

Align algorithmic capabilities to intended use cases.

Buy Now
Question # 11

Which of the following is the PRIMARY benefit of incorporating new AI-specific controls?

Options:

A.

It identifies and prioritizes compliance reporting requirements that apply to both existing and new controls.

B.

It reduces costs by eliminating redundant controls and consolidating control oversight.

C.

It provides a holistic approach to address conventional governance exposures and emerging AI vulnerabilities.

D.

It accelerates deployment timelines by enabling more efficient pre-deployment risk analysis.

Buy Now
Question # 12

An organization adopts a third-party AI service under a shared responsibility model. Which of the following is the MOST important area of focus for the risk practitioner?

Options:

A.

Comprehensive staff training on operational procedures and escalation

B.

Contractual clauses defining liability and remediation timelines

C.

Testing data pathways for confidentiality, integrity, and provenance

D.

Documented assignment of control ownership and decision authority

Buy Now
Question # 13

An organization has deployed an AI system that initially performs well but whose outputs deteriorate over time despite stable input characteristics. Which of the following is the BEST course of action?

Options:

A.

Engage periodic external audits of model source code and implement peer code reviews.

B.

Replace the system's predictive capability with static rule-based controls and fixed decision logic.

C.

Focus efforts on dataset cleansing and documentation prior to further system updates.

D.

Establish continuous performance monitoring and scheduled system recalibration.

Buy Now
Exam Code: AAIR
Exam Name: ISACA Advanced in AI Risk
Last Update: Jun 20, 2026
Questions: 90
AAIR pdf

AAIR PDF

$25.5  $84.99
AAIR Engine

AAIR Testing Engine

$28.5  $94.99
AAIR PDF + Engine

AAIR PDF + Testing Engine

$40.5  $134.99