Splunk SPLK-5003 試験概要:
| 認定ベンダー: | Splunk |
|---|---|
| 試験名: | Splunk Certified Cybersecurity Defense Architect |
| 試験番号: | SPLK-5003 |
| 認定の有効期間: | 3年 |
| 対応言語: | 英語 |
| 関連資格: | Splunk Certified Cybersecurity Defense Analyst Splunk Certified Cybersecurity Defense Engineer |
| 試験形式: | 選択式 |
| サンプル問題: | Splunk SPLK-5003 サンプル問題 |
| 受験方法: | Pearson VUEの試験プラットフォーム。地域によっては、オンライン監督試験および認定試験センターでの受験が利用できる場合があります。 |
| 前提条件: | 現在、公式な前提資格は公開されていません。企業のセキュリティ運用を設計・拡張する、経験豊富なサイバーセキュリティアーキテクトおよび上級セキュリティ専門家を対象としています。 |
| 公式シラバスのURL: | https://www.splunk.com/en_us/training/certification-track/splunk-certified-cybersecurity-defense-architect.html |
Splunk SPLK-5003 試験シラバストピック:
| セクション | 比重 | 目標 |
|---|---|---|
| トピック 1: 高度なインシデント対応と管理 | 10% | - インシデント対応アーキテクチャ
|
| トピック 2: セキュリティ機能の選定、配置、構成 | 15% | - セキュリティ制御アーキテクチャ
|
| トピック 3: セキュリティプログラムの有効性の測定と改善 | 15% | - セキュリティメトリクスとパフォーマンス
|
| トピック 4: サイバーセキュリティ防御とDevSecOpsのスケーリング | 15% | - 大規模環境におけるセキュリティアーキテクチャ
|
| トピック 5: 高度な脅威インテリジェンスと分析 | 5% | - 脅威インテリジェンスアーキテクチャ
|
| トピック 6: セキュリティデータ管理 | 20% | - データアーキテクチャ設計
|
| トピック 7: 高度な自動化とオーケストレーション | 10% | - SOARアーキテクチャ
|
| トピック 8: ガバナンス、リスク、コンプライアンス | 10% | - セキュリティガバナンス
|
Splunk Certified Cybersecurity Defense Architect 認定 SPLK-5003 試験問題:
問題 #1
An organization wants to enforce role-based access so that a subset of analysts can only view notable events related to their business unit's assets. What is the best mechanism to achieve this?
A. Creating a separate Splunk instance per business unit
B. Index-level permissions only
C. Asset/identity-based data filtering combined with role-based access controls
D. Disabling search for all but admin roles
問題 #2
TighCo is a multi-national application delivery company that delivers content across the world to millions of users. The company requires all solutions are highly resilient and provide maximum uptime. They are looking to deploy a new security solution to help with authentication abuse.
They have identified a solution that can meet their needs with a single appliance. How should they architect this solution?
A. Deploy as a virtual machine.
B. Ensure backups are collected on a nightly basis should the appliance fail.
C. Use object storage as the underlying storage layer for global availability.
D. Deploy in the cloud using an auto scaling group.
問題 #3
Which of the following describes CIS controls?
A. A collection of administrative security controls that map to NIST guidelines
B. A collection of administrative and technical security controls that map to specific threat models
C. A prioritized list of technical security controls that protect against the most common attack vectors
D. A prioritized list of technical security controls that map to ISO standards
問題 #4
Analyze the output in the screenshot below.
What is the first step that should be taken to harden this host?
A. Verify if running services are necessary.
B. Implement two-factor authentication for telnet.
C. Turn off host based file integrity checking.
D. Turn on modsecurity for the http service.
問題 #5
How does a highly segmented network architecture impact security orchestration capabilities?
(Choose all that apply.)
A. Constrains security orchestration integrations because of complex firewall rules.
B. Reduces points of failure.
C. Depends heavily on automation broker to perform automation.
D. Simplifies API and service accessibility.
解説:
| 問題 #1 正解: C | 問題 #2 正解: D | 問題 #3 正解: C | 問題 #4 正解: A | 問題 #5 正解: A、C |














1 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
