Courseiva
hardMultiple Choice

AIF-C01 Practice Question: A healthcare startup is building a patient…

A healthcare startup is building a patient inquiry system using Amazon Bedrock. They must ensure the model does not generate responses containing medical advice or unverified treatment suggestions. The compliance team also requires that no personally identifiable information (PII) is output. Which Bedrock feature should the startup configure to meet both requirements?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Bedrock Guardrails with topic denial and PII detection

Bedrock Guardrails provides content filtering, topic denial (to block medical advice), and PII detection/redaction. Topic denial can block entire categories of unwanted responses, and PII detection prevents leakage of personal data.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Bedrock Knowledge Bases with a custom chunking strategy

    Why it's wrong here

    Knowledge Bases with custom chunking control how source documents are split and retrieved; they do not filter generated output for medical advice or PII. Chunking suits improving retrieval relevance over large document sets, whereas the scenario requires output filtering, which Guardrails performs.

  • ✓

    Bedrock Guardrails with topic denial and PII detection

    Why this is correct

    Bedrock Guardrails enforce configurable policies at inference time: topic denial blocks medical advice and unverified treatment suggestions, while PII detection filters personally identifiable information from outputs. Both compliance constraints are satisfied within a single guardrail configuration, avoiding custom prompt engineering or post-processing logic.

  • ✗

    Amazon Comprehend for PII detection and a separate content moderation service

    Why it's wrong here

    Amazon Comprehend detects PII in text but does not block medical advice, and pairing it with a separate moderation service adds external components outside Bedrock's native controls. Guardrails applies both content and sensitive-information filters to model responses directly, which is the intended feature for this requirement.

  • ✗

    Bedrock Agents with a Lambda function that validates responses

    Why it's wrong here

    A Lambda function validating responses requires custom code and cannot reliably detect all medical advice or PII, and Bedrock Agents orchestrate tasks rather than enforce output policy. Guardrails provide configurable content and sensitive-information filters that block such responses natively, which is the intended control for this requirement.

About these practice questions

This AIF-C01 question is part of Courseiva's 862-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This AIF-C01 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the AIF-C01 exam.