Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the CompTIA CompTIA SecAI+ CY0-001 Questions and answers with CertsForce

Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions
Questions # 1:

An AI architect reviews AI utilization and wants to improve the user experience.

Which of the following should the architect review within the logs?

Options:

A.

Rate monitoring


B.

Model accuracy


C.

Access controls


D.

Data storage


Expert Solution
Questions # 2:

A disgruntled employee changed the company policies that a chatbot references in order to create confusion and disrupt the business.

Which of the following AI-generated vulnerabilities is the employee exploiting?

Options:

A.

Data reduction


B.

Data masking


C.

Data poisoning


D.

Data leaking


Expert Solution
Questions # 3:

Which of the following attacks is most enabled by AI-generated content?

Options:

A.

Model poisoning


B.

Phishing


C.

Ransomware


D.

Remote code execution


Expert Solution
Questions # 4:

A healthcare organization plans to deploy a chatbot for appointment scheduling and patient records.

Which of the following is the first step a security administrator should take?

Options:

A.

Implement prompt firewalls.


B.

Enable role-based access management


C.

Conduct a risk assessment.


D.

Use a secure data communication channel for chat.


Expert Solution
Questions # 5:

Which of the following International Organization for Standardization (ISO) standards contains compliance requirements for building an AI management system?

Options:

A.

20000


B.

27001


C.

27018


D.

42001


Expert Solution
Questions # 6:

An AI security administrator receives an inquiry about an unusually high monthly bill from the AI solution provider. The administrator thinks the majority of staff might be using the most powerful model available.

Which of the following AI measures should the administrator implement to lower costs?

Options:

A.

Storage monitoring


B.

Modality types


C.

Prompt firewalls


D.

Token limits


Expert Solution
Questions # 7:

A security analyst is aware of an active penetration test in the environment. The analyst examines SIEM log data and notices the following AI system output:

Question # 7

Which of the following is the vulnerability that has occurred and the control the analyst should implement?

Options:

A.

The vulnerability is prompt injection, and the analyst should use endpoint detection response (EDR).


B.

The vulnerability is model hallucinations, and the analyst should develop output validations.


C.

The vulnerability is jailbreaking, and the analyst should utilize role-based access control.


D.

The vulnerability is sensitive information disclosure, and the analyst should employ masking.


E.

The vulnerability is role impersonation, and the analyst should use validation.


Expert Solution
Questions # 8:

An AI security administrator notices that the information referenced by the model is incorrectly formatted and missing values.

Which of the following job roles would most likely be responsible for correcting this error?

Options:

A.

Platform engineer


B.

Machine learning operations (MLOps) engineer


C.

Data engineer


D.

AI architect


Expert Solution
Questions # 9:

A team of data scientists is ready to release a model for enterprise use. The team wants to protect the model from unintentional changes or tampering.

Which of the following is the most appropriate action?

Options:

A.

Change the model to a large language model (LLM) for interactive features with guardrails.


B.

Provide secure copies of the model for local runtime usage.


C.

Restrict access to only IT professionals in the organization.


D.

Integrate an application programming interface (API) with identity and access management (IAM) roles to interact with the model.


Expert Solution
Questions # 10:

A group of security engineers is developing a SIEM system that will be able to ingest data from multiple structured and unstructured sources, have a chatbot integrated with an LLM that the security analyst can interact with, and provide insights from the SIEM alert data.

Which of the following techniques should the security engineers consider before collecting the data from the respective sources?

Options:

A.

Balancing


B.

Verification


C.

Cleansing


D.

Vector storage


Expert Solution
Viewing page 1 out of 4 pages
Viewing questions 1-10 out of questions