
SplunkCertified Cybersecurity Defense Architect
Domain 5Objective 3
Describe How to Create and Leverage a SBOM (Software Bill of Materials) in Cybersecurity Defenses. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 1)
Part of the Scaling Cybersecurity Defenses and DevSecOps domain, which accounts for 15% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~5–8 in this domain), expect 1–1 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
8concepts
15%of the exam
Questions 1–5
- 1
What is the best practice for updating an SBOM when a software component changes?
Select an answer first - 2
A security analyst receives an SBOM for a web application and needs to identify which components are affected by a newly disclosed critical vulnerability in a specific open-source library. The SBOM is in SPDX format. What is the most effective first step for the analyst to take?
Select an answer first - 3
What is a key feature of the CycloneDX SBOM standard?
Select an answer first - 4
A company has a policy that requires all production applications to have an up-to-date SBOM. The company uses a centralized artifact repository. A security auditor finds that some applications have SBOMs that are over a year old. What is the most effective process improvement to ensure SBOMs are always current?
Select an answer first - 5
What is the primary purpose of a Software Bill of Materials (SBOM) in cybersecurity defense?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.