
SplunkCertified Cybersecurity Defense Architect
Domain 2Objective 2
Identify Data Sources Critical to Cybersecurity Operations, Such as Event Sources, Identity Directories, Asset Management Systems, and Vulnerability - Assessments. This Can Include Non-Security Data Sources, Eg. Observability Tools. CYBERSECURITY-DEFENSE-ARCHITECT Practice Questions (Page 6)
Part of the Security Data Management domain, which accounts for 20% of the CYBERSECURITY-DEFENSE-ARCHITECT exam. Splunk does not publish an official question count, but from its 75-minute exam (~30–50 total, ~6–10 in this domain), expect 1–1 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
6concepts
20%of the exam
Questions 26–28
- 26
A security analyst is investigating a potential data breach that may have involved an attacker using a legitimate user's credentials. The analyst has access to firewall logs, Active Directory logs, and APM traces. Which data source would be most valuable to determine if the attacker accessed sensitive application data?
Select an answer first - 27
A security team is planning to implement a vulnerability management program. They have a limited budget and need to choose between investing in a vulnerability scanner or an asset management system. Which approach would provide the most value for security operations?
Select an answer first - 28
A security team is planning a vulnerability management program. They have limited resources and need to prioritize remediation based on the risk to critical business systems. Which data source combination would provide the most effective prioritization?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to CYBERSECURITY-DEFENSE-ARCHITECT
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Splunk. “CYBERSECURITY-DEFENSE-ARCHITECT” is a trademark of its owner, used for identification only.