Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: ecus65

Isaca AAIA - ISACA Advanced in AI Audit (AAIA)

Page: 1 / 3
Total 90 questions

An IS auditor is testing an AI-based fraud detection system that flags suspicious transactions and finds that the system has a high false positive rate. Which of the following testing methods should be prioritized to BEST optimize the detection rate?

A.

Regression testing

B.

Cross-validation testing

C.

Substantive testing

D.

Benford's Law analysis

An organization uses an AI image generation platform to create promotional materials. An IS auditor identifies that the platform includes copyrighted images in its training data. Which of the following is the auditor's BEST recommendation to address this issue?

A.

Implement a manual review process to ensure no copyrighted images are used in generated outputs.

B.

Use a platform that certifies the provenance and licensing of its training data.

C.

Label all AI-generated images to disclaim the possibility of third-party content.

D.

Suspend the use of the platform until the training data is sanitized.

A car manufacturer uses an AI model to predict maintenance needs for its vehicles. Which of the following techniques can an IS auditor apply to MOST effectively verify the AI model's decisions to stakeholders?

A.

Using neural network visualization to show how the AI model processes data through its layers

B.

Using K-means algorithms to group vehicles based on mileage or engine temperature for maintenance patterns

C.

Utilizing support vector machines (SVM) to classify vehicles based on maintenance urgency

D.

Using local interpretable model-agnostic explanation (LIME) to analyze how specific features contribute to predictions

A generative AI system has a validation control in place to reject inappropriate questions by checking them against built-in ethical standards. Which of the following enables malicious actors to circumvent this control through prompt engineering?

A.

Submitting the same questions in a foreign language translated by another AI-based system

B.

Presenting theoretical situations to justify the reason for asking the questions

C.

Asking the same questions later when the algorithm has changed after further learning

D.

Randomly placing keywords unrelated to the main topic

Which of the following is the GREATEST challenge facing IS auditors evaluating the explainability of generative AI models?

A.

Differences of opinion regarding model types

B.

Difficulties in preventing the input of biased data

C.

Performance issues due to excessive computation

D.

Algorithms changing as AI continues to learn

Which use case for an AI model to be used by a food delivery service would pose ethical risk to the organization?

A.

Correlating time, cost, delivery distance, and customer satisfaction metrics to issue coupons to customers receiving substandard service

B.

Basing driver retention and termination decisions on the number of delivered orders per total hours worked as compared to an industry benchmark

C.

Comparing total food preparation and delivery time to an industry benchmark to set key performance and risk indicators for individual restaurants

D.

Using customer service metrics for service speed and food quality to predict customer retention and forecast revenue

Which of the following is MOST important to consider when deciding whether to implement an AI solution?

A.

The cost of AI implementation

B.

The speed of AI implementation

C.

The space required for AI hardware

D.

The ethical implications of AI

Which of the following is the PRIMARY reason IS auditors must be aware that generative AI may return different investment recommendations from the same set of data?

A.

Limitations can arise in the quantification of risk profiles.

B.

Neural node access varies each time the process is executed.

C.

Computational logic is based on probabilities.

D.

Servers are reconfigured periodically.

Which of the following is the MOST important course of action for an organization prior to allowing end users to utilize an AI tool?

A.

Develop an AI policy with guidelines on appropriate use.

B.

Determine the impact to the disaster recovery plan (DRP).

C.

Implement baseline performance metrics.

D.

Ensure a cybersecurity insurance clause is in place to include the use of AI.

An organization is using information gathered from customer accounts to train its AI chatbot. Which of the following is the GREATEST risk associated with this practice?

A.

Disclosure of personal information

B.

AI bias

C.

Transparency

D.

AI model hallucinations