
SplunkCertified Cybersecurity Defense Architect
Domain 3Objective 1
Align Cybersecurity Incident Response with an Organizations Incident Management, Change Management, and Other ITSM/ITIL Processes. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 6)
Part of the Advanced Incident Response and Management domain, which accounts for 10% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~3–5 in this domain), expect 1–2 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
6concepts
10%of the exam
Questions 26–28
- 26
What is the primary goal of a post-incident review in the context of ITSM continuous improvement?
Select an answer first - 27
An organization is defining its cybersecurity incident response communication plan. They want to ensure that during a major security incident, the right stakeholders are informed at the right time. Which of the following best aligns with ITIL/ITSM communication and escalation procedures?
Select an answer first - 28
During a cybersecurity incident, a security analyst needs to implement an emergency firewall rule to block malicious traffic. Which ITIL process should be engaged to authorize this change?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CYBERSECURITY-DEFENSE-ARCHITECT
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.