Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIASecAI+

Domain 3Objective 3

Apply AI Techniques in Operations CY0-001 Practice Questions (Page 2)

Part of the AI-assisted security domain, which accounts for 24% of the CY0-001 exam. CompTIA does not publish an official question count, but from its 60-minute exam (~25–40 total, ~6–10 in this domain), expect 2–3 from this objective — we provide 29 practice questions to prepare you well beyond it. (estimate)

29questions here
6free pages
8concepts
24%of the exam

Questions 6–10

  1. 6application · medium

    A SOC is implementing an AI-driven automation to handle the initial response to phishing emails reported by employees. The automation is designed to collect the email, extract the URL, and check it against a threat intelligence feed. If the URL is malicious, the automation should automatically delete the email from all user mailboxes. What is the MOST significant risk associated with this automation?

    Select an answer first
  2. 7foundation · easy

    What is the primary purpose of AI-driven anomaly detection in security operations?

    Select an answer first
  3. 8application · medium

    A security analyst is responsible for monitoring emerging threats. They currently spend several hours each day manually reading blog posts, forum discussions, and security vendor reports to find new indicators of compromise (IOCs). The analyst wants to automate this process to free up time for other tasks. Which AI technique is MOST directly applicable to this goal?

    Select an answer first
  4. 9foundation · easy

    Which task is most suitable for AI-driven automation in a security operations center (SOC)?

    Select an answer first
  5. 10expert · hard

    A security team has deployed an AI-based anomaly detection system to monitor user behavior. The system has a very low false positive rate, but the team is concerned that it might be missing sophisticated attackers who slowly escalate their privileges over several months. The team wants to improve the system's ability to detect this type of slow-and-low attack without significantly increasing the alert volume. Which approach is the MOST effective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “CY0-001” is a trademark of its owner, used for identification only.