CompTIA SecAI+ Practice Questions: 3.0 AI-assisted Security

12 free, exam-style CompTIA SecAI+ (CY0-001) practice questions covering 3.0 AI-assisted Security. Each question shows the correct answer and a clear explanation. Ready for the real thing? Take the full timed quiz below.

🚀 Take the full CompTIA SecAI+ quiz 📘 CompTIA SecAI+ study guide

Q1. An organization is using AI to automate code scanning in their CI/CD pipeline. Which AI capability is primarily being leveraged here?

Explanation: AI-enhanced SAST tools scan source code to identify vulnerabilities, coding errors, and compliance issues during the CI/CD process. Learn more.

Q2. In the context of AI-assisted security, how can Deepfakes enhance social engineering attacks?

Explanation: Deepfakes use Generative AI to create hyper-realistic audio or video impersonations, significantly increasing the success rate of BEC (Business Email Compromise) and vishing attacks. Learn more.

Q3. Which of the following is an example of an AI-enabled defensive tool?

Explanation: Security Orchestration, Automation, and Response (SOAR) platforms often use AI to automate incident response playbooks and triage alerts. Learn more.

Q4. When using AI for 'Automated Attack Generation', what is a primary advantage for the attacker?

Explanation: AI allows attackers to generate polymorphic malware that constantly changes its code structure (signature) while maintaining functionality, bypassing traditional AV. Learn more.

Q5. A company wants to ensure their AI coding assistant does not suggest insecure libraries. They configure the tool to cross-reference suggestions against a known vulnerability database (like CVE). This is an example of:

Explanation: SCA tools identify open-source components and libraries in code and check them against vulnerability databases (CVEs) to manage risk. Learn more.

Q6. A security team uses an AI tool to automatically categorize alerts as 'Critical', 'High', or 'False Positive' to reduce alert fatigue. This is an example of:

Explanation: AI is widely used in SOCs (Security Operations Centers) to triage high volumes of alerts, allowing analysts to focus on genuine threats. Learn more.

Q7. What is the primary function of the 'Model Context Protocol' (MCP)?

Explanation: The Model Context Protocol (MCP) is an open standard that enables developers to build secure, two-way connections between AI systems and data sources. Learn more.

Q8. A SOC uses an AI model to summarize long incident timelines. What is the main security analyst responsibility?

Explanation: AI-generated summaries can be incomplete or inaccurate, so analysts must validate them against evidence. Learn more.

Q9. Which risk occurs when an AI coding assistant suggests vulnerable code patterns?

Explanation: AI coding tools can produce insecure examples, so generated code still needs secure review and testing. Learn more.

Q10. Which AI-assisted SOC task can help reduce alert fatigue by grouping related alerts?

Explanation: AI can group related alerts into incidents or clusters to reduce duplicate triage effort. Learn more.

Q11. Which risk is created when AI-generated detections are deployed without analyst review?

Explanation: Generated detection logic can be wrong or incomplete and should be tested before production use. Learn more.

Q12. Which cybersecurity use case uses AI to identify emails with malicious intent?

Explanation: AI models can classify emails using content, sender, links, and behavioral indicators. Learn more.

More CompTIA SecAI+ practice topics