Month End Sale - 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: amulet75

CY0-001 Exam Dumps - CompTIA SecAI+ Questions and Answers

Question # 14

A security analyst reviews a recently released chatbot ' s log and discovers that outputs sometimes include personally identifiable information (PII) from other chatbot users.

Which of the following corrective actions should the security analyst take first to resolve this issue?

Options:

A.

Take the chatbot offline and restore it from a backup.

B.

Disable memory from the chat history for all users.

C.

Ask all users to refrain from using PII with the chatbot.

D.

Require users to label the sensitivity of their requests.

Buy Now
Question # 15

Which of the following job roles in an organizational governance structure develops a model from business use cases?

Options:

A.

Platform architect

B.

AI risk analyst

C.

Machine learning operations (MLOps) engineer

D.

Data scientist

Buy Now
Question # 16

Which of the following describes the number of training cycles used in an AI model for threat detection?

Options:

A.

k-means clustering

B.

Tokens

C.

Temperature

D.

Epoch

Buy Now
Question # 17

A detection engineering team wants to use AI to automatically prevent vulnerable code from reaching production.

Which of the following is the most effective way to accomplish this task?

Options:

A.

Deploying an integrated development environment (IDE) plug-in that will warn developers of dangerous code before compiling

B.

Using a security orchestration, automation, and response (SOAR) with a machine learning (ML) model to classify code

C.

Implementing a large language model (LLM) in the continuous integration and continuous deployment (CI/CD) runner to examine code and pass or fail build jobs

D.

Developing an agentic penetration testing tool to validate potential vulnerable code

Buy Now
Question # 18

A company deploys an internet-facing chatbot using RAG. Logs show that an administrator can retrieve employee names and usernames while an employee receives ' information not available. ' Which of the following is reducing the risk of sensitive data exposure in this scenario?

Options:

A.

Data access controls

B.

Model-specific guardrails

C.

Rate limiting

D.

Prompt templates

Buy Now
Question # 19

A healthcare company deploys an AI chatbot that implements retrieval-augmented generation (RAG) using the company ' s historical data set. The chatbot output contains patient information.

Which of the following is the most effective technique to mitigate this vulnerability?

Options:

A.

Masking

B.

Classification

C.

Minimization

D.

Normalization

Buy Now
Question # 20

Which of the following is the most concerning risk for a company that allows corporate end users to use public-facing large language models (LLMs)?

Options:

A.

Inaccuracies due to hallucinations

B.

Out-of-date acceptable use policies

C.

Data security regulatory violations

D.

Malicious code generation

Buy Now
Question # 21

Which of the following is the best example of an AI model that is trained to identify multiple points from input using a neural network to provide output for authentication?

Options:

A.

Facial recognition

B.

Encryption key

C.

Open Authorization (OAuth)

D.

Bounding box

Buy Now
Question # 22

A security engineer needs to monitor an AI-based system for runtime operations. The engineer is mostly concerned about the visibility of internal activity.

Which of the following is the most appropriate monitoring solution?

Options:

A.

Deploying a security information and event management (SIEM) tool

B.

Implementing a web application firewall (WAF) with header logging

C.

Relying on vendor model controls and monitoring prompt inputs

D.

Enabling stack call and debugging level traces at the function level

Buy Now
Question # 23

A security analyst is aware of an active penetration test in the environment. The analyst examines SIEM log data and notices the following AI system output:

Which of the following is the vulnerability that has occurred and the control the analyst should implement?

Options:

A.

The vulnerability is prompt injection, and the analyst should use endpoint detection response (EDR).

B.

The vulnerability is model hallucinations, and the analyst should develop output validations.

C.

The vulnerability is jailbreaking, and the analyst should utilize role-based access control.

D.

The vulnerability is sensitive information disclosure, and the analyst should employ masking.

E.

The vulnerability is role impersonation, and the analyst should use validation.

Buy Now
Exam Code: CY0-001
Exam Name: CompTIA SecAI+ v1 Exam
Last Update: Aug 29, 2026
Questions: 134
CY0-001 pdf

CY0-001 PDF

$21.25  $84.99
CY0-001 Engine

CY0-001 Testing Engine

$23.75  $94.99
CY0-001 PDF + Engine

CY0-001 PDF + Testing Engine

$33.75  $134.99