Module 8: Ongoing AI Issues and Concerns: Awareness of AI Auditing and Accountability Issues Flashcards
Which regulations/guidance documents call for first party auditing of AI systems?
- Algorithmic Accountability Act (US)
- GDPR
- The Federal Reserve and Office of the Comptroller of the Currency’s SR 11-7 guidance on model risk management
What are some solutions to existing challenges facing AI auditors?
- Leverage existing frameworks and codes of ethics ( such as COBIT Framework, Institute of Internal Auditors AI Auditing Framework, and COSO ERM Framework)
- Internal auditors need to build a new way of auditing AI, including by incorporating data, models, outputs and processes to guarantee compliance, ethics and transparency.
- Utilize third party audits (EU Digital Services Act calls for this)
What are the main elements of ISACA’s COBIT 2019 framework?
- Process descriptions
- Desired outcomes
- Base practices
- Work products
Name some examples of risks related to AI strategy.
- Lack of alignment between IT plans and business needs.
- IT plans that are inconsistent with the organization’s expectations or requirements.
- Improper translation of IT tactical plans from the IT strategic plans.
- Ineffective governance structures failing to ensure accountability and responsibility for IT processes related to the AI function.
Name some AI auditing frameworks.
- COBIT 2019
- COSO
- GAO
- IIA
- PDPC
Which framework provides human rights-related goals for businesses?
UN Guiding Principles Reporting Framework
What set of AI objectives were published by the European Commission’s High-Level Expert Group on AI?
2019 Ethics Guidelines for Trustworthy AI
What are the 2 different types of AI audits?
- Bias/discrimination
- Ethical/responsible
What are 3 different means of AI audits identified by UK regulators?
- Technical audits (data/code)
- Empirical audits (inputs/outputs)
- Governance audits (procedures/decisions)
What does the Ada Lovelace Institute’s taxonomy of social media audit methods focus on?
- Scraping
- Accessing data through application programming interfaces
- Analyzing code
What are the markers/indicators that determine when an AI system should be subject to enhanced accountability, such as third-party audits (e.g., automated decision-making or sensitive data)?
- Accountability mechanisms required by governments, companies and civil society
- EU AI Act - requires providers of high risk AI systems to conduct a prior conformity assessment before placing them in the market
- Adequate and appropriate human review measures
What is AI Verify?
An AI governance testing framework and toolkit to ensure systems meet declared performance benchmarks launched by the Singapore government.