10 free sample questions from a bank of 77, with the correct answers and explanations. No signup required — start practising right now.
1Which of the following job roles in an organizational governance structure develops a model from business use cases?
Platform architect
AI risk analyst
Machine learning operations (MLOps) engineer
Data scientist
Answer: D
2An administrator, who works for a financial institution, is required to implement data security controls for data at rest within AI systems that involve data disclosure. Which of the following is the most suitable control?
Data lineage
Rate limits
Encryption
Masking
Answer: C
3A security engineer needs to monitor an AI-based system for runtime operations. The engineer is mostly concerned about the visibility of internal activity. Which of the following is the most appropriate monitoring solution?
Deploying a security information and event management (SIEM) tool
Implementing a web application firewall (WAF) with header logging
Relying on vendor model controls and monitoring prompt inputs
Enabling stack call and debugging level traces at the function level
Answer: D
4Which of the following should an auditor reference when reviewing a company’s human resources AI systems for legal non-compliance?
Organization for Economic Cooperation and Development (OECD) standard
National Institute of Standards and Technology (NIST) AI Risk Management Framework 9RMF)
European Union (EU) AI Act
International Organization for Standardization (ISO)
Answer: C
5An airline corporation wants to implement a chatbot application using a large language model (LLM) so its customers:
Can ask question and receive answers about flight details.
Have the option to upload files.
Which of the following security controls should the airline use to protect against malicious input and unauthorized use beyond the service-level agreement? (Choose two.)
Prompt guardrails
Role-based access controls
Firewall rules
Model token quotas
Answer: A, D
6A security operations center (SOC) has a very high volume of logs and alerts. The manager proposes the implementation of machine learning (ML) system to help with triage. Which of the following tasks is most suitable?
Applying filters on specific alerts
Automatically patching vulnerable systems
Identifying and classifying alerts
Summarizing the content of alerts
Answer: C
7An organization recently created a custom model that integrates with a language model (LLM). The developer notices that the application programming interface (API) costs have increased. Which of the following is the best control to reduce cost?
Implementing prompt templates
Increasing central processing unit (CPU) and memory
Reducing the model size
Adjusting token limits
Answer: D
8A security administrator needs to improve an AI model. During an initial investigation, the administrator notices that two successive login features are recorded every day, and then a successful login occurs after a specific time interval. All the successful login attempts have been during office hours.
Which of the following techniques should the administrator use to improve the AI model’s security?
Access management
Pattern recognition
Signature matching
Vulnerability analysis
Answer: B
9Which of the following is the most concerning risk for a company that allows corporate end users to use public-facing large language models (LLMs)?
Inaccuracies due to hallucinations
Out-of-date acceptable use policies
Data security regulatory violations
Malicious code generation
Answer: C
10Which of the following requires developers to harden infrastructure to protect AI systems?