Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the CompTIA CompTIA SecAI+ CY0-001 Questions and answers with CertsForce

Viewing page 3 out of 4 pages
Viewing questions 21-30 out of questions
Questions # 21:

Customer feedback for an AI chatbot has a high-rate of non-answers, which is causing higher central processing unit (CPU) utilization.

Which of the following should be implemented?

Options:

A.

Guardrails


B.

Response confidence level


C.

Prompt logging


D.

Cost monitoring


Expert Solution
Questions # 22:

A security consultant needs to detect attacks across a large language model (LLM) firewall.

Which of the following techniques should the consultant use?

Options:

A.

Signature matching


B.

Distributed denial-of-service


C.

Translation analysis


D.

Vulnerability enumeration


Expert Solution
Questions # 23:

A security analyst is preparing a presentation for the sales team that describes the most common vulnerabilities that are specific to AI applications.

Which of the following is the best source for the analyst to consult?

Options:

A.

International Organization for Standards (ISO) 27001


B.

Common Weakness Enumeration (CWE)


C.

Open Worldwide Application Security Project (OWASP)


D.

National Institute of Technologies Risk Management Framework (NIST-RMF)


Expert Solution
Questions # 24:

A developer is selecting authentication controls for an AI system.

Which of the following is the best way to prevent threat actor replay attacks?

Options:

A.

Identity provider (IdP) federation


B.

Secure Shell (SSH)-based certificate authentication


C.

Expiring session tokens


D.

Identity and access management access keys


Expert Solution
Questions # 25:

A company develops an AI model to diagnose patients. Hospitals access the model through an integrated application programming interface (API). The security team performs a denial-of-service (DoS) attack via brute force on the model.

Which of the following controls would have prevented this issue?

Options:

A.

Tokenization


B.

Model guardrails


C.

Rate limiting


D.

Prompt firewall


Expert Solution
Questions # 26:

Which of the following roles best supports the implementation of AI governance, risk, and compliance (GRC)? (Choose two.)

Options:

A.

Desktop specialist


B.

Data scientist


C.

Software developer


D.

Security architect


E.

Security operations center (SOC) analyst


F.

Network engineer


Expert Solution
Questions # 27:

A security engineer needs to monitor an AI-based system for runtime operations. The engineer is mostly concerned about the visibility of internal activity.

Which of the following is the most appropriate monitoring solution?

Options:

A.

Deploying a security information and event management (SIEM) tool


B.

Implementing a web application firewall (WAF) with header logging


C.

Relying on vendor model controls and monitoring prompt inputs


D.

Enabling stack call and debugging level traces at the function level


Expert Solution
Questions # 28:

As a compliance requirement, a large language model (LLM) application requires setting up guardrails.

Which of the following resources is most appropriate to use?

Options:

A.

Retrieval-augmented generation (RAG)


B.

Open Worldwide Application Security Project (OWASP)


C.

LLM libraries


D.

Security incident and event management (SIEM)


Expert Solution
Questions # 29:

An organization develops a chatbot that does not provide harmful or explicit responses, must use clean and professional language, and ensures that responses are accurate.

Which of the following should the organization conduct after the chatbot is fully developed but before a customer-facing deployment?

Options:

A.

Data labeling and classification


B.

Model auditing and evaluation


C.

Guardrail testing and validation


D.

Regression modeling and minimization


Expert Solution
Questions # 30:

An organization wants to reduce vulnerabilities after deployment. The organization decides to incorporate an AI-assisted early detection and vulnerability identification process in its development workflow.

Which of the following AI-assisted functions is the best option?

Options:

A.

Code linting


B.

Incident management


C.

Automated deployment/rollback


D.

System auditing


Expert Solution
Viewing page 3 out of 4 pages
Viewing questions 21-30 out of questions