CompTIA SecAI+ CY0-001 Dumps in PDF

Free CompTIA CY0-001 Real Questions (page: 5)

Which of the following helps in managing potential security issues related to model training?

  1. National Institute of Standards and Technology (NIST) AI Risk Management Framework (RMF)
  2. International Organization for Standardization (ISO) 27001
  3. Organization for Economic Co-operation and Development (OECD)
  4. General Data Protection Regulation (GDPR)

Answer(s): A

Explanation:

The NIST AI RMF provides structured guidance for identifying, assessing, and managing risks specific to AI systems, including those arising during model training. It addresses issues like bias, security, and data integrity, making it the best framework for managing training-related security concerns.



Which of the following improves the observability and auditing of an AI system?

  1. Redeploying the model
  2. Using manual detection
  3. Implementing machine learning operations (MLOps)
  4. Using anomaly detections

Answer(s): C

Explanation:

MLOps provides structured monitoring, logging, and version control for AI models. This improves observability and ensures detailed auditing of model behavior, data pipelines, and changes throughout the AI lifecycle.



Users report that the output of a generative AI application seems unrelated to the prompts and contains offensive content. A security team investigates and determines that there was an on-path attack.
Which of the following is the most likely attack method?

  1. Application server hijacking
  2. Session hijacking
  3. Domain hijacking
  4. Model hijacking

Answer(s): D



Which of the following is used to train an AI model with unstructured data?

  1. Statistical learning
  2. Fine-tuning
  3. Supervised learning
  4. Reinforcement training

Answer(s): A



A security architect performs threat modeling of an AI system. The architect needs to determine which attacks can be performed against the system.
Which of the following actions should the architect take next?

  1. Leverage a large language model (LLM) to map likely attack paths based on the code base.
  2. Quantify the risk of known vulnerabilities identified in the AI system.
  3. Identify trust boundaries and perform threat modeling with Open Worldwide Application Security Project
    (OWASP) Top 10.
  4. Analyze MITRE Adversarial Threat Landscape for AI Systems (ATLAS) for tactics, techniques, and procedures (TTPs).

Answer(s): D

Explanation:

MITRE ATLAS is specifically designed to catalog adversarial TTPs targeting AI systems. By analyzing ATLAS, the architect can determine which types of attacks are possible against the AI system, making it the most appropriate resource for threat modeling in this context.



Which of the following is the most impactful security risk associated with the use of a generative AI chatbot?

  1. Overly permissive access
  2. Data leakage
  3. Weak encryption
  4. Model validation

Answer(s): B

Explanation:

The most significant risk with generative AI chatbots is data leakage, where sensitive or regulated information could be exposed through prompts or outputs. This risk directly impacts confidentiality and compliance, making it more critical than access scope, encryption, or validation concerns.



A security operations center (SOC) analyst needs to automate multiple security tasks by breaking them down into smaller parts.
Which of the following AI tools is the best for this task?

  1. Agentic AI
  2. Retrieval-augmented generation (RAG) AI
  3. Generative AI
  4. Chatbot

Answer(s): A

Explanation:

Agentic AI is designed to autonomously break down complex tasks into smaller steps and execute them in sequence. This makes it the best tool for automating multiple security tasks in a SOC environment.



Which of the following responsible AI standards refers to a principle that clearly states the reasons behind the decisions for a particular conclusion?

  1. Accountability
  2. Auditability
  3. Transparency
  4. Explainability

Answer(s): D

Explanation:

Explainability is the responsible AI principle that ensures AI systems can provide clear reasoning for their decisions, allowing users to understand how and why a particular conclusion was reached.



Share your comments for CompTIA CY0-001 exam with other users:

M
mo
6/11/2026 9:00:16 AM

beautiful exams

AI Tutor 👋 I’m here to help!