
SplunkCertified Cybersecurity Defense Architect
Domain 2Objective 2
Identify Data Sources Critical to Cybersecurity Operations, Such as Event Sources, Identity Directories, Asset Management Systems, and Vulnerability - Assessments. This Can Include Non-Security Data Sources, Eg. Observability Tools. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 2)
Part of the Security Data Management domain, which accounts for 20% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~6–10 in this domain), expect 1–1 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
6concepts
20%of the exam
Questions 6–10
- 6
A security analyst is investigating a spike in CPU usage on a server that occurred at the same time as a security alert. Which non-security data source would help determine if the CPU spike is related to the security event?
Select an answer first - 7
A security team needs to prioritize patching efforts based on the most exploitable vulnerabilities in their environment. Which data source should they rely on to identify and rank these vulnerabilities?
Select an answer first - 8
Which type of data is typically provided by a vulnerability assessment tool to inform security operations?
Select an answer first - 9
What is the primary purpose of a vulnerability scanner in a cybersecurity operations context?
Select an answer first - 10
Which type of data source is primarily used to monitor application performance and user experience, but can also provide valuable context for security investigations?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.