
ISACAAdvanced in AI Risk
Domain 1Objective 5
AI Regulatory Compliance and Legal Considerations AAIR Practice Questions (Page 3)
Part of the AI Risk Governance and Framework Integration domain, which accounts for 37% of the AAIR exam.
34questions here
7free pages
8concepts
37%of the exam
Questions 11–15
- 11
A manufacturing company uses an AI system to optimize supply chain logistics. The system is not used in any regulated industry, and it does not process personal data. The company's legal counsel is reviewing applicable regulations. Which regulatory framework is most likely to apply?
Select an answer first - 12
When transferring personal data used in an AI system from the EU to a non-EU country, which of the following is a valid mechanism under the GDPR?
Select an answer first - 13
A nonprofit organization uses an AI system to screen job applicants. The system is deployed in the EU. The organization's board is reviewing applicable regulations. Which regulation is most directly applicable to the AI system's use?
Select an answer first - 14
A retail company uses an AI chatbot to recommend products to customers in the EU. The chatbot collects personal data, including purchase history and browsing behavior. The company's data protection officer (DPO) is reviewing compliance with GDPR. Which action is most directly required by GDPR?
Select an answer first - 15
Which of the following best describes the concept of 'accountability' in AI governance?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “AAIR” is a trademark of its owner, used for identification only.