Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
Splunk logo

SplunkCertified Cybersecurity Defense Architect

Domain 6Objective 5

Explain How Security Technologies and Controls Fit into the Organizations Governance, Risk, and Compliance Program and Overall Risk Management. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 1)

Part of the Governance, Risk, and Compliance domain, which accounts for 10% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~3–5 in this domain), expect 1–1 from this objective — we provide 23 practice questions to prepare you well beyond it. (estimate)

23questions here
5free pages
7concepts
10%of the exam

Questions 1–5

  1. 1foundation · easy

    Which compliance requirement is most directly addressed by implementing a data loss prevention (DLP) solution?

    Select an answer first
  2. 2foundation · easy

    Which security technology is specifically designed to orchestrate and automate response actions across multiple security tools, thereby supporting the organization's risk management objectives?

    Select an answer first
  3. 3foundation · easy

    An organization's risk appetite statement indicates that it is willing to accept a moderate level of risk for its internal business applications but requires strict controls for customer data. How should security controls be selected and implemented?

    Select an answer first
  4. 4expert · hard

    A financial institution is required by PCI DSS to regularly test security controls. The security team uses a SIEM and a vulnerability scanner. The risk assessment shows that the most critical risk is a web application vulnerability. The team has a limited budget and must balance the need for continuous monitoring with the cost of tools. Which approach best meets the PCI DSS testing requirement and the risk assessment?

    Select an answer first
  5. 5application · medium

    A manufacturing company is adopting ISO/IEC 27001 and needs to implement a security monitoring capability. The company has a moderate risk appetite and limited budget. Which control implementation best aligns with ISO 27001's guidance?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.