CY0-001 CompTIA SecAI+ v1 Exam Free Practice Exam Questions (2026 Updated)
Prepare effectively for your CompTIA CY0-001 CompTIA SecAI+ v1 Exam certification with our extensive collection of free, high-quality practice questions. Each question is designed to mirror the actual exam format and objectives, complete with comprehensive answers and detailed explanations. Our materials are regularly updated for 2026, ensuring you have the most current resources to build confidence and succeed on your first attempt.
Which of the following should an auditor reference when reviewing a company ' s human resources AI systems for legal non-compliance?
A customer-facing, AI-powered chatbot has been jailbroken through prompt injections. As a result, the AI model is offering a 99% discount on the purchase of a new vehicle.
Which of the following should be implemented to enhance the model ' s robustness against such attacks?
A data scientist asks about controls for public vs. private models used for training. A security agent responds by listing several factors to evaluate when making that determination. Which of the following is the most critical control?
Which of the following describes the number of training cycles used in an AI model for threat detection?
A cybersecurity analyst wants to choose a machine learning (ML) model to classify log entries while providing the best explainability.
Which of the following models should the analyst use?
An administrator must conduct generative AI cost monitoring for use in the healthcare industry.
Which of the following criteria is the best way to calculate this cost?
A detection engineering team wants to use AI to automatically prevent vulnerable code from reaching production.
Which of the following is the most effective way to accomplish this task?
A security analyst notices that regardless of user-submitted prompts, an AI model always returns unsanitized responses. These responses are then passed to multiple plug-ins. The analyst is concerned with the potential security implications.
Which of the following Open Worldwide Application Security Project (OWASP) categories addresses this vulnerability?
An organization develops a chatbot that does not provide harmful or explicit responses, must use clean and professional language, and ensures that responses are accurate.
Which of the following should the organization conduct after the chatbot is fully developed but before a customer-facing deployment?
Security analysts want to track potential user behavior anomalies over time. Which of the following is the most comprehensive approach?
Which of the following technologies is used in deepfake?
A team of engineers builds an application using a large language model (LLM). The application is built on Linux and is hosted on a virtual server. Users must create an account in order to access and use the platform.
Which of the following should the team do to protect the account credentials?
Which of the following explains the reason a cybersecurity analyst prefers a machine learning (ML) model over a statistical model for attack classification?
A disgruntled employee changed the company policies that a chatbot references in order to create confusion and disrupt the business.
Which of the following AI-generated vulnerabilities is the employee exploiting?
Customer feedback for an AI chatbot has a high-rate of non-answers, which is causing higher central processing unit (CPU) utilization.
Which of the following should be implemented?
A manufacturing company wants to use AI within its operations to improve the efficiency and accuracy of its processes.
Which of the following should the organization do first to enable adoption and achieve the business objectives?
A customer using a travel chatbot reports that the chatbot responds with the following:
def choose_location(location):
if location == " United States of America " :
print( " You have selected an authorized travel destination " )
elif location == " Europe " :
print( " You have selected an unauthorized travel destination " )
Which of the following remediates this issue?
A developer is selecting authentication controls for an AI system.
Which of the following is the best way to prevent threat actor replay attacks?
Which of the following describes the most significant risk associated with AI agents that make autonomous decisions?
An analyst wants to develop a solution to review security information and event management (SIEM) logs for endpoint analytics. Which of the following is a benefit of a small language model (SLM) compared to a large language model (LLM) when cost efficiency is a consideration?