nerdexam
Isaca

CISA · Question #563

An organization uses AI models to analyze customer complaints and generate responses. Which type of audit should be performed to determine whether AI-generated text in responses to complaints meets sp

The correct answer is C. Compliance audit. A compliance audit is performed to determine whether processes, such as AI-generated customer communications, adhere to applicable regulatory and legal requirements. In this case, it ensures that the AI-generated text meets all regulatory obligations related to consumer protectio

Submitted by sofia.br· Apr 18, 2026Information System Auditing Process

Question

An organization uses AI models to analyze customer complaints and generate responses. Which type of audit should be performed to determine whether AI-generated text in responses to complaints meets specific regulatory requirements?

Options

  • AThird-party service audit
  • BComputer forensic audit
  • CCompliance audit
  • DPerformance audit

How the community answered

(23 responses)
  • A
    4% (1)
  • B
    4% (1)
  • C
    91% (21)

Explanation

A compliance audit is performed to determine whether processes, such as AI-generated customer communications, adhere to applicable regulatory and legal requirements. In this case, it ensures that the AI-generated text meets all regulatory obligations related to consumer protection, data privacy, and fair communication standards.

Topics

#Compliance audit#Regulatory requirements#AI auditing#Audit types

Community Discussion

No community discussion yet for this question.

Full CISA Practice