Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Splunk logo

SplunkCertified Cybersecurity Defense Architect

Domain 5Objective 2

Describe How to Integrate Security Sensors and Controls into DevOps Workflows. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 3)

Part of the Scaling Cybersecurity Defenses and DevSecOps domain, which accounts for 15% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~5–8 in this domain), expect 1–1 from this objective — we provide 25 practice questions to prepare you well beyond it. (estimate)

25questions here
5free pages
4concepts
15%of the exam

Questions 11–15

  1. 11expert · hard

    A company's CI/CD pipeline includes a SAST scan that takes 45 minutes to complete. This is slowing down the development process, and developers are complaining. The security team wants to maintain the security gate without significantly impacting developer velocity. Which strategy is the most effective to address this conflict?

    Select an answer first
  2. 12foundation · easy

    What is the primary purpose of integrating security sensors and controls into a DevOps workflow?

    Select an answer first
  3. 13application · medium

    A team is using a CI/CD pipeline to build and deploy a containerized application. They want to ensure that the base images used in the build are free of known critical vulnerabilities. What is the most effective way to integrate this security sensor into the pipeline?

    Select an answer first
  4. 14application · medium

    A security team wants to automatically isolate a compromised container in a Kubernetes cluster. They have a monitoring tool that detects the compromise and sends an alert to Splunk. How can they automate the response to this threat?

    Select an answer first
  5. 15application · medium

    A DevOps team is deploying a web application and wants to monitor for runtime security threats. They have deployed a web application firewall (WAF) in front of the application. How can the team integrate the WAF logs into their Splunk environment to enable continuous security monitoring?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.