Splunk SPLK-5003 試験概要:
| 認定ベンダー: | Splunk |
|---|---|
| 試験名: | Splunk Certified Cybersecurity Defense Architect |
| 試験番号: | SPLK-5003 |
| 関連資格: | Splunk Certified Cybersecurity Defense Engineer Splunk Certified Cybersecurity Defense Analyst |
| 受験料: | $0 USD(ベータ版;ベータ期間終了後に変更される場合があります) |
| 出題数: | 120 |
| 試験時間: | 120 分 |
| 対応言語: | English |
| 試験形式: | 多肢選択式 |
| 推奨トレーニング: | Splunk Cybersecurity Defense Architect ラーニングパス Splunk 認定試験学習リソース |
| 受験申し込み: | Splunk 認定試験登録 試験登録チュートリアル |
| サンプル問題: | Splunk SPLK-5003 サンプル問題 |
| 受験方法: | Pearson VUEテストセンターにてオンラインまたは会場受験 |
| 前提条件: | 推奨経験:サイバーセキュリティ/セキュリティアーキテクチャ分野での実務経験約5〜7年;正式な前提条件となる試験は不要。 |
| 公式シラバスのURL: | https://www.splunk.com/en_us/training/certification-track/splunk-certified-cybersecurity-defense-architect.html |
Splunk SPLK-5003 試験シラバストピック:
| セクション | 比重 | 目標 |
|---|---|---|
| 高度な脅威インテリジェンスと分析 | 5% | - 敵対者モデリングとエミュレーション
|
| セキュリティアーキテクチャと防御設計 | - エンタープライズセキュリティアーキテクチャの設計
| |
| セキュリティデータ管理 | 20% | - セキュリティデータ統合戦略
|
| セキュリティオペレーション戦略 | - セキュリティオペレーションの計画
|
Splunk Certified Cybersecurity Defense Architect 認定 SPLK-5003 試験問題:
問題 #1
Of the following options, which is the best approach to implementing an effective business continuity plan?
A. Develop the plan based on IT infrastructure.
B. Store data backups offsite.
C. Define recovery objectives and regularly test the plan.
D. Create a one-time plan.
問題 #2
What distributed computing model can be used to enable analysis of data closest to the data source for real-time monitoring?
A. Supercomputing
B. General purpose computing
C. Middle computing
D. Edge computing
問題 #3
An architect wants to reduce alert fatigue by aggregating multiple low-severity detections into a single higher-fidelity notable event tied to a specific entity. Which ES capability should be used?
A. Adaptive Response Actions
B. Threat intelligence framework
C. Glass tables
D. Risk-Based Alerting (RBA)
問題 #4
Buttercup Games is trying to address control NIST AC-2(7):
ACCOUNT MANAGEMENT | PRIVILEGED USER ACCOUNTS
(a) Establish and administer privileged user accounts in accordance
with [Selection: a role-based access scheme; an attribute-based access
scheme];
(b) Monitor privileged role or attribute assignments;
(c) Monitor changes to roles or attributes; and
(d) Revoke access when privileged role or attribute assignments are no
longer appropriate.
What is the best method to address this control?
A. Deploy hardware tokens to all privileged users
B. Deploy a DLP solution
C. Enable MFA on all accounts
D. Collect and monitor IAM logs
問題 #5
An organization is migrating from their current firewalls to a next generation firewall system. As they begin to collect telemetry from their new firewalls, which of the following methods will ensure continuity of existing detections?
A. Log retention
B. Data normalization
C. Calculated fields
D. Data tiering
解説:
| 問題 #1 正解: C | 問題 #2 正解: D | 問題 #3 正解: D | 問題 #4 正解: D | 問題 #5 正解: B |














3 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
