최신Splunk Certified Cybersecurity Defense Architect - SPLK-5003무료샘플문제
문제1
Which Splunk ES content type allows analysts to visually track the status of a security control or process, such as incident response stages?
Which Splunk ES content type allows analysts to visually track the status of a security control or process, such as incident response stages?
정답: B
설명: (KoreaDumps 회원만 볼 수 있음)
문제2
Which MLTK command can be combined with tstats in an ES detection to apply a machine learning model to search results?
Which MLTK command can be combined with tstats in an ES detection to apply a machine learning model to search results?
정답: A
설명: (KoreaDumps 회원만 볼 수 있음)
문제3
The cybersecurity team at a logistics management company plans to partner with their software engineering practice in a "shift-left" approach to secure the software development life cycle (SDLC). What improvement might the team recommend to facilitate early detection of software vulnerabilities?
The cybersecurity team at a logistics management company plans to partner with their software engineering practice in a "shift-left" approach to secure the software development life cycle (SDLC). What improvement might the team recommend to facilitate early detection of software vulnerabilities?
정답: B
설명: (KoreaDumps 회원만 볼 수 있음)
문제4
Which NIST RMF Step should the cybersecurity team execute to ensure organizational security controls are operating as intended and producing the desired results?
Which NIST RMF Step should the cybersecurity team execute to ensure organizational security controls are operating as intended and producing the desired results?
정답: C
설명: (KoreaDumps 회원만 볼 수 있음)
문제5
How should the control network be separated from other networks in a water treatment plant?
How should the control network be separated from other networks in a water treatment plant?
정답: B
설명: (KoreaDumps 회원만 볼 수 있음)
문제6
Siobhan is a security architect for a financial services company. They have determined the organization has a low risk tolerance for data breaches and insider threats, but a higher tolerance for minor system outages. How would this influence security program metrics Siobhan wants to implement? (Choose all that apply.)
Siobhan is a security architect for a financial services company. They have determined the organization has a low risk tolerance for data breaches and insider threats, but a higher tolerance for minor system outages. How would this influence security program metrics Siobhan wants to implement? (Choose all that apply.)
정답: A,D
설명: (KoreaDumps 회원만 볼 수 있음)
문제7
A SOC wants new detections to automatically map to MITRE ATT&CK techniques for reporting purposes. Where in Splunk ES should this mapping be configured?
A SOC wants new detections to automatically map to MITRE ATT&CK techniques for reporting purposes. Where in Splunk ES should this mapping be configured?
정답: B
설명: (KoreaDumps 회원만 볼 수 있음)
문제8
Which of the following are valid reasons to implement index-time field extraction instead of search-time extraction? (Choose all that apply.)
Which of the following are valid reasons to implement index-time field extraction instead of search-time extraction? (Choose all that apply.)
정답: C,D
설명: (KoreaDumps 회원만 볼 수 있음)
문제9
Buttercup games has implemented over 100 detections in their SOC. These detections consist mostly of vendor provided signatures and field matching that have been tuned, with a few that have been custom built. What more advanced detection methods should they deploy?
Buttercup games has implemented over 100 detections in their SOC. These detections consist mostly of vendor provided signatures and field matching that have been tuned, with a few that have been custom built. What more advanced detection methods should they deploy?
정답: B
설명: (KoreaDumps 회원만 볼 수 있음)