Exam objectives

Cybersecurity Defense Analyst

Splunk Certified Cybersecurity Defense Analyst exam objectives

The published blueprint is the contract: the exam can only test what is on this list. Domains carry their official weightings, and objectives with a practice page link straight to questions written for that objective.

Titles and weightings from the official objectives. Splunk exam page

The Cyber Landscape, Frameworks, and Standards

10%of exam

Threat and Attack Types, Motivations, and Tactics

20%of exam

Defenses, Data Sources, and SIEM Best Practices

20%of exam

Investigation, Event Handling, Correlation, and Risk

20%of exam

SPL and Efficient Searching

20%of exam

Threat Hunting and Remediation

10%of exam

Objectives marked Practice open a page of original questions written for that objective, each with a full explanation cited to Splunk documentation.

Keep reading

Every guide and cost breakdown, by vendor