
SplunkCertified Cybersecurity Defense Architect
Domain 8Objective 4
Explain Methodologies Used to Select Security Technologies Aligned to Business Need, Organizational Technology Landscape, and Security Controls. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 3)
Part of the Security Capability Selection, Placement, Configuration domain, which accounts for 15% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~5–8 in this domain), expect 1–1 from this objective — we provide 17 practice questions to prepare you well beyond it. (estimate)
17questions here
4free pages
4concepts
15%of the exam
Questions 11–15
- 11
A government agency is selecting a new email security gateway. The agency has a strict requirement to prevent data exfiltration and to detect phishing attempts. The existing email system is on-premises, but the agency is planning to migrate to a cloud-based email service in the next year. Which factor should the security architect consider to ensure the email security gateway meets both current and future needs?
Select an answer first - 12
A financial services firm is implementing a new security information and event management (SIEM) system. The firm's security policy requires preventive, detective, and corrective controls. The SIEM will be used primarily for detective controls. Which additional technology should the firm consider to ensure a balanced set of security controls?
Select an answer first - 13
A multinational retail company is expanding into a new region with strict data residency regulations. The security team must select a cloud access security broker (CASB) to enforce data protection policies across SaaS applications. The company's existing infrastructure is predominantly on-premises with a hybrid identity solution. Which approach should the security architect take to ensure the CASB selection aligns with business and regulatory needs?
Select an answer first - 14
A security architect is leading the selection of a new endpoint detection and response (EDR) solution for a large enterprise. The organization has a mature security operations center (SOC) that relies on a specific SIEM for correlation. The business requires minimal disruption to existing workflows and a solution that can be integrated with the current SIEM. The architect has identified three potential EDR products. Which methodology should the architect use to make the final decision?
Select an answer first - 15
Which of the following is an example of a corrective security control?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.