AIGP
What should you ask in an AIGP interview, and how should candidates answer?
AIGP holders are tested on four domains: foundations, law, governing development, and governing deployment and use. These questions check each one in practice, with what a strong answer covers. Candidates get the questions to prepare for and three to ask back.
What should an employer ask an AIGP candidate?
Each question maps to an exam domain, so you test what the role needs. Score each answer 1 to 4 on the free scorecard below.
Walk me through how you would decide whether a new AI use case needs a governance review.
Listen for: An intake step, a risk tier, a named owner and a written decision. Vague answers about "best practice" without a process are a flag.
Domain I.C: policies and procedures across the life cycle
How would you explain our AI policy to the board in five minutes?
Listen for: Risk appetite, who is accountable, the top three risks and how progress is measured. Short and specific beats complete.
Domain I.B: organizational expectations
How does data protection law reach the data we use to train or tune a model?
Listen for: Lawful basis, purpose limitation, data minimization, a data protection impact assessment where the risk is high, and how data subject rights still apply.
Domain II.A: data privacy laws
Which EU AI Act duties apply to us, and from when?
Listen for: First our role (provider or deployer) and the risk category. Then dates: Article 4 literacy and the Article 5 bans since 2 February 2025, and Annex III high-risk duties from 2 December 2027 after Regulation (EU) 2026/1744.
Domain II.C: AI-specific laws
What does ISO/IEC 42001 give us that the law does not?
Listen for: A certifiable management system with continual improvement. Not a substitute for meeting legal duties.
Domain II.D: standards and tools
How would you govern a model after it is released?
Listen for: Monitoring with set thresholds, an incident route, change control for retraining, and a record of decisions.
Domain III.C: release, monitoring and maintenance
A team wants a vendor's generative AI tool. What do you check before we sign?
Listen for: Intended use, data terms, the vendor's documentation, whether our use is high-risk, transparency duties, and who owns the decision to deploy.
Domain IV.A: deciding whether to deploy
Tell me about a time you changed or stopped an AI deployment.
Listen for: The evidence used, who was involved, what changed afterward. Candidates new to the field can use a project or case study.
Domain IV.C: governing deployment and use
AIGP interview scorecard
AIGP interview scorecard
Candidate: ______ Interviewer: ______ Date: ______
| # | Question | Listen for | Score 1 to 4 |
|---|---|---|---|
| 1 | Walk me through how you would decide whether a new AI use case needs a governance review. | An intake step, a risk tier, a named owner and a written decision. Vague answers about "best practice" without a process are a flag. | |
| 2 | How would you explain our AI policy to the board in five minutes? | Risk appetite, who is accountable, the top three risks and how progress is measured. Short and specific beats complete. | |
| 3 | How does data protection law reach the data we use to train or tune a model? | Lawful basis, purpose limitation, data minimization, a data protection impact assessment where the risk is high, and how data subject rights still apply. | |
| 4 | Which EU AI Act duties apply to us, and from when? | First our role (provider or deployer) and the risk category. Then dates: Article 4 literacy and the Article 5 bans since 2 February 2025, and Annex III high-risk duties from 2 December 2027 after Regulation (EU) 2026/1744. | |
| 5 | What does ISO/IEC 42001 give us that the law does not? | A certifiable management system with continual improvement. Not a substitute for meeting legal duties. | |
| 6 | How would you govern a model after it is released? | Monitoring with set thresholds, an incident route, change control for retraining, and a record of decisions. | |
| 7 | A team wants a vendor's generative AI tool. What do you check before we sign? | Intended use, data terms, the vendor's documentation, whether our use is high-risk, transparency duties, and who owns the decision to deploy. | |
| 8 | Tell me about a time you changed or stopped an AI deployment. | The evidence used, who was involved, what changed afterward. Candidates new to the field can use a project or case study. |
Source: https://credentialpress.com/guides/aigp-interview-questions
Which questions should an AIGP candidate prepare for?
Why AIGP and not a technical AI course?
How to answer: Tie it to the role: AIGP tests governing AI across law, development and deployment, which is the job. Name the domain closest to your work.
Which part of the exam did you find hardest?
How to answer: Be honest, name the domain, and say what you did about it. Interviewers listen for self-awareness, not a perfect score.
How would you start an AI inventory here?
How to answer: Start with what is in use, who owns each system, what data it touches and its risk tier. Offer a first 30 days.
What changed in the EU AI Act in 2026?
How to answer: Regulation (EU) 2026/1744 moved the Annex III high-risk date to 2 December 2027 and rewrote Article 4 on AI literacy. Say how that changes the plan, not just the date.
What should a candidate ask the employer?
- Who owns AI risk today, and who signs off a deployment?
- Do you have an AI inventory, and when was it last updated?
- Which of your AI systems do you provide, and which do you deploy?
Where next?
Also free: the AIGP mind map and the AIGP 10-question quiz, plus every other credential on our study tools page. For the full syllabus, the AIGP Exam Guide and the AIGP Practice Questions go domain by domain.
Frequently asked questions
What should an employer ask an AIGP candidate?
Questions that test each exam domain in practice, for example: Walk me through how you would decide whether a new AI use case needs a governance review. How would you explain our AI policy to the board in five minutes? How does data protection law reach the data we use to train or tune a model?
What should an AIGP candidate ask the employer?
Who owns AI risk today, and who signs off a deployment? Do you have an AI inventory, and when was it last updated? Which of your AI systems do you provide, and which do you deploy?
How should a candidate prepare for an AIGP interview?
Tie it to the role: AIGP tests governing AI across law, development and deployment, which is the job. Name the domain closest to your work.
Which books go deeper on AIGP?

Artificial Intelligence Governance Professional. 21 chapters, 385 pages.
