Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Responsible AI Governance and Ethics

Domain 3Objective 1

AI Regulatory Compliance CRAGE Practice Questions (Page 6)

Part of the AI Regulatory Compliance domain, which makes up ~14% of our current practice bank.

49questions here
10free pages
5concepts

Questions 26–30

  1. 26application · medium

    A financial institution is preparing for an internal compliance audit of its credit-scoring AI model. The model was developed in-house and is used to make lending decisions. The audit team needs to verify compliance with the EU AI Act and GDPR. Which audit procedure is most essential to include?

    Select an answer first
  2. 27application · medium

    A retail company has implemented an AI system for dynamic pricing. The system is not classified as high-risk under the EU AI Act, but the company wants to ensure ongoing compliance with GDPR and internal governance policies. Which ongoing monitoring practice is most appropriate?

    Select an answer first
  3. 28expert · medium

    A global e-commerce company uses an AI recommendation system that processes customer data across multiple jurisdictions. The system is not high-risk under the EU AI Act, but it is subject to GDPR and various US state privacy laws. The company is planning a compliance audit. The audit team has limited resources and must prioritize. Which approach is most effective?

    Select an answer first
  4. 29expert · medium

    A government agency is deploying an AI system for public benefits eligibility. The system uses personal data and makes automated decisions. The agency must comply with GDPR and the EU AI Act. The system is high-risk. The agency has a limited budget and must choose between investing in bias mitigation or in transparency measures. Which choice is most appropriate?

    Select an answer first
  5. 30expert · medium

    A healthcare provider is using an AI system to prioritize organ transplant waiting lists. The system uses patient data and is high-risk under the EU AI Act. The provider is also subject to GDPR. The system has been criticized for potential bias against certain ethnic groups. The provider must address this issue while maintaining the system's utility. Which approach is most appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CRAGE” is a trademark of its owner, used for identification only.