Maintain a structured incident log capturing the issue: Which documentation practice best meets this goal?
A structured incident log with cause, impact, remediation, and residual risk supports accountability and later regulatory review.
The question
After an AI system produces a flawed output that affects several customers, the governance team wants documentation that will support accountability and any later regulatory review. Which documentation practice best meets this goal?
Preparing for AIGP? Take the free 5-min readiness quiz →
- Record only the incidents that resulted in confirmed financial loss, since issues without measurable monetary damage are not considered reportable under internal policy.Wrong because limiting records to confirmed financial-loss events omits harms and near-misses that governance and regulators expect documented.
- Keep informal notes in individual engineers' personal channels so the team can move quickly without the overhead of maintaining a centralized register.Plausible but wrong because scattered informal notes cannot support accountability or a coherent regulatory review.
- Document incidents only after regulators formally request them, to avoid creating records that could later be used against the organization in a dispute.Wrong because deferring documentation defeats accountability and typically breaches expected post-market monitoring practice.
- Maintain a structured incident log capturing the issue, affected users, root cause, remediation, and residual risk to support accountability and later review. ✓Correct because a complete, structured record supports both internal accountability and external regulatory review.
The trap
Narrowing incident documentation to only financial losses or deferring it to avoid creating a discoverable record. How to remember it
A structured incident log with cause, impact, remediation, and residual risk supports accountability and later regulatory review.
How many of these would you get right?
One of 1581 AIGP questions on Certsqill. Take a free five-minute check and see your score per domain — not one number, but which section to open tonight.
Test your AIGP readiness — freeMore Understanding How to Govern AI Deployment and Use questions
- Red teaming, in which testers deliberately attempt: Which periodic activity is specifically designed for this →
- Clearly document intended and prohibited uses: Which measure is most appropriate? →
- Timely, accurate, and consistent messaging to affected: Which feature is most important for that plan to be →
- All 424 Understanding How to Govern AI Deployment and Use questions →
Part of the Certsqill AIGP question bank · Understanding How to Govern AI Deployment and Use ·
Every answer, right and wrong, comes with its own explanation.