
SplunkCertified Cybersecurity Defense Architect
Domain 6Objective 2
Explain How Regulations Like GDPR Affect Cyber Defense Architecture in Relation to Data Privacy Impact on Logging, Data Sovereignty, and Data Residency. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 2)
Part of the Governance, Risk, and Compliance domain, which accounts for 10% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~3–5 in this domain), expect 1–1 from this objective — we provide 21 practice questions to prepare you well beyond it. (estimate)
21questions here
5free pages
5concepts
10%of the exam
Questions 6–10
- 6
A Swedish software company's SIEM logs all employee authentication events, including the username, source IP, and the specific resource accessed. The company's works council has raised concerns that this logging is excessive. The security team argues that the logs are needed to detect account compromise. The DPO has asked the team to demonstrate compliance with the data minimization principle. What should the security architect do?
Select an answer first - 7
What does 'data residency' refer to in the context of GDPR?
Select an answer first - 8
A Spanish telecom company's SIEM stores call detail records (CDRs) for fraud detection. A data subject has submitted a request to access all personal data the company holds about them. The security team has identified CDRs that contain the data subject's phone number and call timestamps. The company's legal team has confirmed the request is valid. What must the security architect ensure happens with the CDR data?
Select an answer first - 9
A French bank's SIEM is deployed in a single EU region. The bank is acquired by a US-based financial group. The new parent company requires the SIEM to be replicated to a US region for disaster recovery. The bank's DPO has confirmed that the US is not an adequate country. The bank cannot avoid the US replication requirement. What is the most appropriate architectural control to implement?
Select an answer first - 10
A German financial services firm uses a US-based SIEM vendor. The firm's security operations center (SOC) in Frankfurt sends raw security logs containing customer account numbers to the vendor's cloud platform for analysis. The vendor's platform processes data in the US and stores it in the US. The firm's DPO has determined that the US is not an adequate country under GDPR. The firm cannot stop using the vendor's analytics engine. What architectural change should the security architect prioritize?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.