20+ practice questions focused on Security, Compliance, and Governance for AI Solutions — one of the most tested topics on the AWS Certified AI Practitioner AIF-C01 exam. Each question includes a detailed explanation so you learn why the right answer is correct.
Start Security, Compliance, and Governance for AI Solutions PracticeA data scientist needs to restrict access to a specific Amazon SageMaker notebook instance so that only a designated IAM role can invoke the CreatePresignedNotebookInstanceUrl API. Which IAM policy element should be used to achieve this?
Explanation: Amazon SageMaker notebook instances do not support resource-based policies. The correct way to restrict the CreatePresignedNotebookInstanceUrl API to a specific IAM role is to attach an identity-based policy to the user's role that includes a Condition block specifying the resource ARN of the notebook instance. This ensures only that role can generate presigned URLs for that instance.
A machine learning team needs to share a SageMaker notebook with a colleague from a different AWS account. The colleague should be able to open and run the notebook but not delete it. Which combination of actions should the team take?
Explanation: SageMaker notebook instances do not support resource-based policies for cross-account access. To share a SageMaker notebook (the .ipynb file) with a colleague from a different AWS account, the notebook should be stored in an S3 bucket. A bucket policy can grant the colleague's account read access to the notebook file, and IAM roles can allow them to open and run it without delete permissions. Option A (Lake Formation) is used for sharing data lake resources, not typically for SageMaker notebooks directly. Option B is invalid because resource-based policies are not available for notebook instances. Option C grants too broad permissions.
A company is deploying a generative AI application using Amazon Bedrock and needs to ensure that the model's responses do not include any sensitive information. Which TWO Bedrock Guardrail configurations should be used together to meet this requirement? (Select TWO.)
Explanation: Amazon Bedrock Guardrails provide multiple mechanisms to control model outputs. PII redaction specifically identifies and removes or masks personally identifiable information, directly addressing the requirement to prevent sensitive data exposure. Content policies, on the other hand, filter outputs based on harmful content categories (e.g., hate, violence) and do not target sensitive information like PII. Therefore, only PII redaction (Option A) is needed to meet this specific requirement.
A company uses Amazon SageMaker to train sensitive ML models. Which AWS service should they use to encrypt the training data and model artifacts at rest?
Explanation: AWS Key Management Service (KMS) allows customers to create and manage encryption keys used to encrypt data at rest in SageMaker, including training data and model artifacts.
A data scientist needs to allow a foundation model in Amazon Bedrock to access a specific S3 bucket containing reference documents. The bucket is in a different AWS account. What is the MOST secure way to grant access?
Explanation: Cross-account access requires both the S3 bucket policy to grant the Bedrock service role and the Bedrock resource policy to allow the bucket, ensuring least privilege.
+15 more Security, Compliance, and Governance for AI Solutions questions available
Practice all Security, Compliance, and Governance for AI Solutions questions1. Baseline your knowledge
Start with 10 questions to gauge your current understanding of Security, Compliance, and Governance for AI Solutions. This tells you whether you need a concept refresher or just practice.
2. Review every explanation
For each question — right or wrong — read the full explanation. Understanding why an answer is correct is more valuable than knowing the answer itself.
3. Focus on exam traps
Security, Compliance, and Governance for AI Solutions questions on the AIF-C01 frequently use trap wording. Look for subtle differences in answers that test your precision, not just general knowledge.
4. Reach 80% consistently
Do repeated sessions until you score 80%+ three times in a row. Then move to mixed-mode practice to test cross-topic recall under realistic conditions.
The exact number varies per candidate. Security, Compliance, and Governance for AI Solutions is tested as part of the AWS Certified AI Practitioner AIF-C01 blueprint. Practicing with targeted Security, Compliance, and Governance for AI Solutions questions ensures you can handle any format or difficulty that appears.
Yes. Courseiva provides free AIF-C01 practice questions across all exam topics and domains. The platform includes topic-based practice, mock exams, missed-question review, bookmarked questions, and readiness tracking — no account required.
Difficulty is subjective, but Security, Compliance, and Governance for AI Solutions is a high-priority exam concept tested in multiple ways — direct recall, scenario analysis, and command-output interpretation. Consistent practice is the best way to build confidence.
Launch a full Security, Compliance, and Governance for AI Solutions practice session with instant scoring and detailed explanations.
Start Security, Compliance, and Governance for AI Solutions Practice →