(What are the five broad areas of inquiry covered by a readiness assessment?
(1) Opportunity Discovery; (2) Data Management; (3) IT Environment and Security; (4) Risk, Privacy, and Governance; and (5) Adoption
Beyond a sectoral or comprehensive approach, what is sometimes considered a third approach that countries have taken to regulate AI?
Modifying existing laws to make clear that they apply to AI.
True or False: Whether an AI incident can be said to have occurred is necessarily context specific.
True.
A companion document has been produced by NIST to its AI Risk management Framework that provides a profile for what type of AI?
Generative AI.
A distributed model of governance is also known by what two other names?
A localized or de-centralized model.
According to the NIST, what are the four steps in an incident response plan?
(1) Preparation; (2) Detection and analysis; (3) Containment, eradication, and recovery; and (4) Post-incident activity.
According to the USPTO, can an AI-assisted invention be patented?
Yes, so long as a human makes a “significant contribution” to the invention process.
After being subject to testing, what is the next “layer” in the ARIA Program?
An “assessment” layer.
AI systems that pose transparency-related risks fall into what category under the E.U. AI Act?
Limited risk.
AI vendors typically take one of two forms. What are they?
(1) Integrating third-party AI tools into operations or products and services; or (2) off-the-shelf AI tools.
An AI impact assessment will weigh what against the potential harms or risks of an AI system?
The benefits of AI use.
An approach to achieving privacy-enhanced AI that relies upon minimizing, hiding, separating, and aggregating is referred to as what?
A data-oriented approach or strategy.
An effective “AI champion” is likely to have what characteristics or authority?
(1) Experience with the organization; (2) The respect of colleagues; and (3) Ownership of a budget.
An ML model that does not allow for a ready explanation about how the inner workings lead to a reliable prediction is called what?
A “black box” algorithm.
Are non-profit entities subject to the FTC’s Section 5 authority?
No.
Article 5 (of the EU AI Act) lists categories of AI systems that pose what level of risk?
Unacceptable risk.
Before a high-risk AI system is brought to market or before any substantial modification is performed on a high-risk AI system already on the market.
Individuals that will be subjected to automated decisions by the high-risk AI system and employees subject to the use of a high-risk AI system.
Between Articles and Recitals, which provides interpretive guidance?
Recitals.
Between data provenance and data lineage, which helps ensure that datasets are representative, accurate, and unbiased?
Data provenance.
Between data provenance and data lineage, which identifies dependencies between different data elements?
Data lineage.
Between data provenance and data lineage, which includes information about sources, processors, actors, and methods used to ensure data integrity and quality?
Data provenance.
Between overfitting and underfitting, which is more likely to result form the inclusion of too much irrelevant data in the dataset.
Overfitting.
Between supervised and unsupervised learning techniques, which is considered more costly and time-consuming?
Supervised learning, due to the need for high-quality labeled data.
Beyond any documents produced by the developer, what other document(s) should a deployer of an AI model review prior to deployment?
Any vendor or open-source agreements related to the AI model.