Domain 6 of 6

Regulatory Requirements and Governance

The EU AI Act's risk tiers and what each obliges, the NIST framework's four functions, ISO 42001, and the documentation you will wish you had started keeping earlier.

4
Concepts
~15%
Of the exam
7
Practice questions
Concepts in this domain
01The EU AI ActFour risk tiers, what each obliges, and how to work out which one a feature falls into before somebody else does it for you.02The NIST AI Risk Management FrameworkFour functions, govern, map, measure and manage, and why the voluntary framework is worth more to a product team than the law it is not.03AI governance and complianceThe standards an AI system gets audited against, what data governance means once a model is involved, and the review routine that keeps a deployed system accountable.04Secure AI and the Secure AI FrameworkSecurity across the machine learning lifecycle, what SAIF is for, and the Google Cloud tools the exam expects you to name.
Try a question from this domain

A company based outside the European Union offers a hiring tool used by employers in Germany. Which statement about the EU AI Act is correct?

  • AIt does not apply, because the company has no European establishment.
  • BIt applies, because the Act reaches systems whose output is used in the Union whoever produced them.
  • CIt applies only if the company opens a European office.
  • DIt applies only to the German employers, not to the company supplying the tool.
7 questions on this domain.

One per page, with a worked explanation.

Start the set