[Mar-2026] The Best CompTIA SecAI+ CY0-001 Professional Exam Questions [Q46-Q64]

Share

[Mar-2026] The Best CompTIA SecAI+ CY0-001 Professional Exam Questions

Try 100% Updated CY0-001 Exam Questions [2026]

NEW QUESTION # 46
Which of the following is the most concerning risk for a company that allows corporate end users to use public-facing large language models (LLMs)?

  • A. Data security regulatory violations
  • B. Malicious code generation
  • C. Out-of-date acceptable use policies
  • D. Inaccuracies due to hallucinations

Answer: A

Explanation:
The greatest concern with employees using public-facing LLMs is the potential exposure of sensitive or regulated corporate data. Submitting such information to external systems may violate data protection laws (e.g., GDPR, HIPAA), creating legal and compliance risks that outweigh issues like hallucinations or malicious outputs.


NEW QUESTION # 47
During the selection of a machine learning (ML)-based threat classification model, a cybersecurity administrator verifies that label distribution is highly unbalanced. Which of the following processing techniques should the engineer use to balance the model?

  • A. Data augmentation
  • B. Data provenance
  • C. Data lineage
  • D. Data verification

Answer: A

Explanation:
When label distribution is highly unbalanced, data augmentation generates additional synthetic samples for the underrepresented classes. This balances the dataset, improving the ML model's ability to classify threats accurately across all categories.


NEW QUESTION # 48
Which are indicators of lateral movement? (Choose two.)

  • A. Repeated SMB login attempts between internal hosts
  • B. DNS tunneling traffic
  • C. Encrypted outbound traffic to a suspicious domain
  • D. Use of Pass-the-Hash techniques
  • E. Sudden increase in CPU usage

Answer: A,D

Explanation:
Lateral movement often involves internal SMB attacks and credential reuse.


NEW QUESTION # 49
Which of the following controls is the best way to mitigate a denial-of-service (DoS) attack?

  • A. Model guardrails
  • B. Rate limiting
  • C. End-to-end encryption
  • D. Access controls

Answer: B

Explanation:
Rate limiting restricts the number of requests within a set timeframe, preventing attackers from overwhelming the system with excessive traffic, making it the best control to mitigate a DoS attack.


NEW QUESTION # 50
Which of the following is used to train an AI model with unstructured data?

  • A. Reinforcement training
  • B. Fine-tuning
  • C. Supervised learning
  • D. Statistical learning

Answer: B

Explanation:
Fine-tuning allows an AI model to adapt to unstructured data (such as text, audio, or images) by retraining it on domain-specific datasets. This process improves the model's ability to handle and generate outputs aligned with the unstructured data context.


NEW QUESTION # 51
A human resources officer is using AI to evaluate resumes and help select candidates that meet minimum criteria. To improve the results, the human resources officer adjusts the query parameters and includes an example resume that matches a successful candidate. Which if the following best describes this query?

  • A. One-shot prompting
  • B. Prompt template
  • C. System role
  • D. Distillation

Answer: A

Explanation:
One-shot prompting provides the model with a single example (in this case, a successful resume) to guide how it should process future inputs. This technique helps the AI better align its output with the desired evaluation criteria.


NEW QUESTION # 52
An employee wants a consulting company to procure a data set that contains age, ethnicity, and diabetes status. During development, the employer wants to ensure the integrity of the data.
Which of the following is the best strategy to accomplish this task?

  • A. Enabling log monitoring
  • B. Querying the model
  • C. Implementing checksums
  • D. Conducting human evaluation

Answer: C

Explanation:
Checksums ensure data integrity by detecting any unauthorized or accidental changes to the dataset. This provides a reliable way to confirm that sensitive attributes such as age, ethnicity, and diabetes status remain unaltered during development.


NEW QUESTION # 53
A security consultant needs to detect attacks across a large language model (LLM) firewall.
Which of the following techniques should the consultant use?

  • A. Vulnerability enumeration
  • B. Distributed denial-of-service
  • C. Translation analysis
  • D. Signature matching

Answer: D

Explanation:
Signature matching allows the detection of known malicious patterns, inputs, or behaviors targeting an LLM firewall. It is an effective technique for identifying and blocking prompt injection or other recognized attack methods.


NEW QUESTION # 54
Which of the following are considered threat intelligence sources? (Choose two.)

  • A. File integrity monitoring
  • B. ISACs
  • C. Netflow logs
  • D. Group policy objects
  • E. Open-source intelligence (OSINT)

Answer: B,E

Explanation:
ISACs and OSINT provide structured and open-source threat intelligence feeds.


NEW QUESTION # 55
Which of the following is the best example of an AI model that is trained to identify multiple points from input using a neural network to provide output for authentication?

  • A. Facial recognition
  • B. Bounding box
  • C. Open Authorization (OAuth)
  • D. Encryption key

Answer: A

Explanation:
Facial recognition uses neural networks to analyze multiple points or features from an input image (such as eyes, nose, mouth, and facial structure) to generate a unique identifier for authentication purposes.


NEW QUESTION # 56
Which of the following is an example of how a security analyst uses generative AI in the triage process?

  • A. To predict the next attack target with higher accuracy
  • B. To summarize security findings by category
  • C. To use statistical analysis for malicious code assessment
  • D. To tag malware using machine learning (ML) algorithms

Answer: B

Explanation:
In triage, generative AI is most effective for quickly summarizing and categorizing large volumes of alerts or findings. This helps analysts prioritize incidents and streamline the investigation process.


NEW QUESTION # 57
A social media company with more than a million lines of code wants to reduce the mean time to fix bugs and issues. Which of the following is the most balanced AI strategy to automate the vulnerability management flow?

  • A. Having security analysts triage discovered issues and create tickets, but having a software engineer merge software
  • B. Using AI to triage discovered issues, create tickets, and merge software fixes
  • C. Using AI to triage discovered issues and create tickets, but having a software engineer merge software
  • D. Having security analysts triage discovered issues and create tickets, but using AI to merge software

Answer: C

Explanation:
This approach balances automation and human oversight. AI accelerates vulnerability management by triaging issues and generating tickets, while software engineers retain responsibility for merging code changes, ensuring quality and reducing the risk of insecure or unstable code being deployed.


NEW QUESTION # 58
A group of security engineers is developing a security incident and event management (SIEM) system that will:
- Be able to ingest data from multiple structured and unstructured
sources.
- Have a chatbot integrated with a large language model (LLM) that the
security analyst can interact with.
- Provide insights from the SIEM alert data.
Which of the following techniques should the security engineers consider before collecting the data from the respective sources?

  • A. Vector storage
  • B. Verification
  • C. Cleansing
  • D. Balancing

Answer: C

Explanation:
Data cleansing ensures that structured and unstructured data ingested into the SIEM is accurate, consistent, and free from errors or irrelevant information. This step is critical before integrating with an LLM chatbot, as clean data improves the reliability and quality of insights generated.


NEW QUESTION # 59
A short AI-generated video shows a celebrity's likeness talking about a fake public security event.
Which of the following was used to create this video?

  • A. Statistical analysis
  • B. Convolutional neural network
  • C. Random forest
  • D. Machine learning (ML) classifier

Answer: B

Explanation:
Convolutional neural networks (CNNs) are commonly used in generating deepfake videos, where a person's likeness is realistically mapped and animated to create fake but convincing audiovisual content.


NEW QUESTION # 60
A machine learning (ML) engineer is working with a security engineer to identify the best practices for securing a system with various AI models.
Which of the following actions should the engineers suggest?

  • A. Using a secure software development life cycle (SDLC)
  • B. Following a secure model development life cycle (MDLC)
  • C. Implementing comprehensive security architecture
  • D. Conducting guardrail testing and security validation

Answer: B

Explanation:
A secure MDLC is tailored to AI and ML systems, ensuring security is integrated throughout the model's design, training, validation, deployment, and monitoring phases. This directly addresses best practices for securing systems with AI models.


NEW QUESTION # 61
User experience is declining since the launch of a large language model (LLM) in internal networks. Which of the following should be the highest priority for the prompt engineers?

  • A. Quality control
  • B. Sales life cycle
  • C. Business objectives
  • D. Customer success management

Answer: A

Explanation:
When user experience is declining after an LLM launch, the top priority for prompt engineers is quality control. Ensuring prompts produce accurate, relevant, and safe outputs directly improves usability and restores user trust.


NEW QUESTION # 62
Which of the following is required first in order to send a prompt query and response in a language model (LLM) system when authentication is enabled?

  • A. Front-end web proxy gateway
  • B. Endpoint access control
  • C. Back-end access gateway
  • D. Application programming interface gateway

Answer: B

Explanation:
When authentication is enabled, the first requirement for sending a prompt query and receiving a response is endpoint access control. It ensures only authenticated and authorized users or systems can interact with the LLM endpoint.


NEW QUESTION # 63
SIMULATION
Instructions
Part1
Use drop-down menu to select the most appropriate protocol or cipher for each system component.
Part2
Use the drop-down menu to select the most appropriate technique to apply to the modified data.
It at any time you would like to bring back the initial state of the simulation, please click the Reset All button.
An engineer is analyzing findings from a penetration test that indicate insufficient data encryption.
The engineer must implement data security.

Answer:

Explanation:


Explanation:
Part 1 (Protocols/Ciphers):
API Gateway: TLS 1.2
* Database: AES-512
* AI Model: gRPC
Part 2 (Techniques):
1. {pin:"999-99-9999", name:"john doe"} → {pin:"999-99-9999", name:"john doe", sensitivity:"SECRET"} → Classification
2. {ip_addr:"1.2.3.4", cookie:"aK3idkd==", name:"John Doe" uid="1111"} → {cookie:"aK3idkd==", uid="1111"} → De-identification
3. {pin:"999-99-9999", name:"john doe"} → {pin:"999-99-XXXX", name:"john doe"} → Masking
4. {card_number:"1111222233334444", name:"john doe", user_id:"1"} →
{card_number:"0x019238829", name:"john doe", user_id:"1"} → Tokenization
5. {name:"john doe", patient_id:"10000", dob:"1980-Jan-05"} → {patient_id:"10000", dob:"1980- Jan-05"} → Anonymization Part 1:
* TLS 1.2 secures client-to-gateway communications.
* AES-512 provides strong encryption for data at rest in the database.
* gRPC ensures efficient, secure communication between services (AI model).
Part 2:
* Classification tags sensitive data for handling.
* De-identification strips direct identifiers.
* Masking obscures part of sensitive values while keeping format.
* Tokenization replaces sensitive data with a reversible placeholder.
* Anonymization removes identifying attributes, making re-identification impossible.


NEW QUESTION # 64
......

CY0-001 Exam Questions Get Updated [2026] with Correct Answers: https://ensurepass.testkingfree.com/CompTIA/CY0-001-practice-exam-dumps.html