
SplunkCertified Cybersecurity Defense Architect
Domain 3Objective 1
Align Cybersecurity Incident Response with an Organizations Incident Management, Change Management, and Other ITSM/ITIL Processes. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 2)
Part of the Advanced Incident Response and Management domain, which accounts for 10% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~3–5 in this domain), expect 1–2 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
6concepts
10%of the exam
Questions 6–10
- 6
What is the primary purpose of defining communication paths between cybersecurity incident response and organizational ITSM procedures?
Select an answer first - 7
What is the purpose of an emergency change in the context of a cybersecurity incident?
Select an answer first - 8
How should the findings of a post-incident review be incorporated into ITSM processes?
Select an answer first - 9
During a major security incident, the incident commander needs to communicate status updates to executives, the service desk, and affected business units. The organization has an ITSM tool with notification capabilities. What is the best way to ensure consistent and timely communication?
Select an answer first - 10
A company's IT service desk is receiving multiple reports of a network outage. The security team suspects it might be a distributed denial-of-service (DDoS) attack. How should the security team and the service desk collaborate to handle this situation effectively?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.