
SplunkCertified Cybersecurity Defense Architect
Domain 6Objective 1
Explain How Governmental Directives and Regulations Guidance Publications Like NIST CSF Help Influence the Design of Defense Capabilities. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 4)
Part of the Governance, Risk, and Compliance domain, which accounts for 10% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~3–5 in this domain), expect 1–1 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)
27questions here
6free pages
6concepts
10%of the exam
Questions 16–20
- 16
What is the primary purpose of the NIST Cybersecurity Framework (CSF)?
Select an answer first - 17
A financial services firm uses the NIST CSF to assess its cybersecurity posture. The current profile shows that the organization has strong endpoint protection but lacks centralized logging and monitoring. The target profile requires centralized logging to meet regulatory expectations. Which action best aligns with using NIST CSF profiles to inform defense capability design?
Select an answer first - 18
An organization is implementing the NIST CSF and wants to ensure it can quickly identify and respond to security incidents. Which two CSF core functions should the organization focus on?
Select an answer first - 19
A large financial institution is subject to GDPR and is adopting the NIST CSF. The security team has limited budget and must choose between two initiatives: (1) implementing a data loss prevention (DLP) solution to protect personal data, or (2) developing a formal incident response plan to meet GDPR breach notification requirements. The organization's current NIST CSF tier is Partial. Which initiative should be prioritized to best align with GDPR obligations and improve CSF maturity?
Select an answer first - 20
A company is considering adopting the NIST CSF, but the board is concerned about the effort required. The CISO explains that the framework is voluntary and can be tailored. Which statement best describes how the NIST CSF can be tailored to the organization's needs?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.