AI Practitioner · 14% of the exam

Security, Compliance, and Governance for AI Solutions: free practice questions

5 sample questions from our 10-question bank for this domain — answers and explanations included. These are the same scenario-based style as the real AWS exam.

1. For monitoring an AI application's operational metrics (latency, errors, invocation counts) and setting alarms, which AWS service is appropriate?

  • A. Amazon CloudWatch✓ Correct
  • B. AWS Artifact
  • C. Amazon Textract
  • D. AWS Snowball
Explanation

Amazon CloudWatch collects operational metrics and logs and supports alarms and dashboards for monitoring workloads. Artifact (B) is compliance docs, Textract (C) extracts text from documents, and Snowball (D) is data transfer hardware — none is the monitoring service.

2. Under the AWS shared responsibility model applied to a managed AI service like Amazon Bedrock, which is the CUSTOMER's responsibility?

  • A. Managing data, access permissions (IAM), and how the service is configured and used✓ Correct
  • B. Patching the physical servers running the model
  • C. Securing the AWS global datacenter facilities
  • D. Maintaining the underlying hypervisor
Explanation

Customers are responsible for their data, access control (IAM), and secure configuration/use of the service ('security IN the cloud'). AWS handles the infrastructure — physical servers, datacenters, hypervisor ('security OF the cloud'), which options B, C, and D describe.

3. A compliance officer needs on-demand access to AWS compliance reports and certifications (e.g., SOC, ISO) for an audit. Which service provides these?

  • A. AWS Artifact✓ Correct
  • B. Amazon Rekognition
  • C. AWS Lambda
  • D. Amazon EBS
Explanation

AWS Artifact is the portal for AWS compliance reports and agreements (SOC, ISO, PCI, etc.). Rekognition (B) analyzes images, Lambda (C) runs code, and EBS (D) is block storage — none delivers compliance documentation.

4. What does DATA LINEAGE provide in the governance of an AI workload?

  • A. A traceable record of where data came from and how it was transformed and used✓ Correct
  • B. The color scheme of the dashboard
  • C. The number of GPUs used in training
  • D. A CDN caching policy
Explanation

Data lineage tracks data's origin and its transformations through the pipeline, which is essential for auditability, reproducibility, and compliance. The other options describe UI, hardware, and networking concerns unrelated to lineage.

5. Which AWS service controls WHO can access foundation models and AI resources by defining permissions and enforcing least privilege?

  • A. AWS Identity and Access Management (IAM)✓ Correct
  • B. Amazon CloudFront
  • C. Amazon SNS
  • D. AWS Global Accelerator
Explanation

IAM defines users, roles, and policies that grant least-privilege access to AWS resources, including Bedrock and SageMaker. CloudFront (B) is a CDN, SNS (C) is messaging, and Global Accelerator (D) is network routing — none is the access-control service.

5 more questions in this domain

Practice the full bank with instant grading, flashcards, and a timed mock exam.

Start practicing free