Free Certification Practice Questions

CSA-TAISE

Loading…
Which of the following is the best example of 'AI-assisted social engineering' as an emerging threat?
#1
Which of the following best describes the role of 'system prompts' in LLM application security?
#2
Which cloud-native security control is most effective at preventing unauthorized lateral movement from an AI training cluster to sensitive data stores?
#3
What is the primary function of a vector database in a Retrieval-Augmented Generation (RAG) architecture?
#4
Which MLSecOps practice helps maintain AI model integrity by continuously checking production predictions against a baseline quality threshold?
#5
Which of the following is an example of AI being used responsibly to improve cybersecurity defense at scale?
#6
The CSA AI Controls Matrix (AICM) contains how many control objectives across how many domains?
#7
Which of the following is a key principle of the NIST AI RMF's GOVERN function regarding organizational accountability?
#8
Membership inference attacks exploit which property of over-fitted ML models?
#9
An AI ethics review board within an organization serves primarily to:
#10
Retrieval-Augmented Generation (RAG) primarily addresses which LLM limitation?
#11
AI systems that autonomously optimize for a proxy metric that diverges from the true human objective are exhibiting which alignment failure?
#12
Parameter-efficient fine-tuning (PEFT) techniques like LoRA (Low-Rank Adaptation) are used to:
#13
Fine-tuning a pre-trained LLM on domain-specific data is best categorized as which type of machine learning approach?
#14
Algorithmic bias in an AI hiring tool is most likely to cause which type of harm?
#15
A healthcare organization deploys an LLM to draft patient-facing summaries. The primary ethical concern with this use case is:
#16
Which of the following best describes 'AI governance' as distinct from 'AI ethics'?
#17
Data minimization in AI systems means:
#18
What is the primary purpose of 'prompt engineering' in working with large language models?
#19
A prompt injection attack against an LLM-powered application involves:
#20
Which of the following is NOT a recommended practice for securing an AI model API endpoint?
#21
The EU AI Act classifies AI systems used for biometric identification of individuals in public spaces by law enforcement as:
#22
An AI model deployed in a financial institution recommends loan denials with no explanation. Under GDPR's right to explanation, the institution must:
#23
Which of the following best describes the 'temperature' parameter in LLM inference?
#24
Which cloud deployment model is most commonly used for training large-scale foundation models due to elastic compute and managed GPU clusters?
#25
Which of the following is an example of an AI use case that carries a HIGH risk of generating deepfakes?
#26
MITRE ATLAS (Adversarial Threat Landscape for AI Systems) is primarily used to:
#27
Which of the following risks is MOST unique to agentic AI systems compared to traditional ML classifiers?
#28
The concept of 'human-in-the-loop' (HITL) in AI deployment primarily serves to:
#29
Which of the following is a primary concern when using public cloud-managed AI services (e.g., AWS Bedrock, Azure OpenAI) for processing sensitive enterprise data?
#30