Objective 7.1

Cybersecurity Defense Architect

Explain how to define, measure, and report on metrics to assess and monitor a security program’s effectiveness

Objective 7.1 sits in Measuring and Improving Security Program Effectiveness, which carries 15% of the Cybersecurity Defense Architect exam. The questions below are original, written from the official objective title above, and each explanation cites the Splunk page it rests on.

Objective title verbatim from the official objectives. Splunk exam page

A worked example

Shown solved, with the whole explanation open: this is what every question here carries.

7-1Measuring and Improving Security Program Effectiveness

A team lead asks how NIST defines a measure for a security programme. Which description matches SP 800-55?

Numerically expressed data gatheredCorrect · your answerCorrect.
A qualitative expert opinionQualitative judgement can inform a measure but is not one.
A control implementation statusImplementation status is one thing a measure may report.
A published industry benchmarkA benchmark is external rather than gathered.

Correct.

Checked against nvlpubs.nist.gov, August 2026

Concept

Insisting on numbers is what makes a programme comparable with itself over time. An opinion cannot be tracked, only repeated.

Why A

NIST documents that measures are numerically expressed data that are gathered through the process of measurement.

Source

Measures are numerically expressed data that are gathered through the process of measurement.

NIST SP 800-55 Volume 1: Measurement Guide for Information Security, checked August 2026
#metrics#definitions

Now you: objective 7.1 questions

No account needed. The explanation opens when you answer.

Sample question 1 of 3

7-1Measuring and Improving Security Program Effectiveness

A team lead asks what a measurement statement should begin with under NIST guidance. Which set does SP 800-55 name?

Sample question 2 of 3

7-1Measuring and Improving Security Program Effectiveness

A team lead defines a target for a measure. What does NIST document a target to be?

Sample question 3 of 3

7-1Measuring and Improving Security Program Effectiveness

A team lead asks which NIST measure type reports the progress of specific controls. Which is documented?

Full Cybersecurity Defense Architect question bank coming

We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.

Read the sources

These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.

More objectives in Measuring and Improving Security Program Effectiveness