Objective 8.6
Cybersecurity Defense ArchitectEnsure that resilient solutions aligned to the business and operational requirements are selected and deployed. -
Objective 8.6 sits in Security Capability Selection, Placement, Configuration, which carries 15% of the Cybersecurity Defense Architect exam. The questions below are original, written from the official objective title above, and each explanation cites the Splunk page it rests on.
Objective title verbatim from the official objectives. Splunk exam page ↗
A worked example
Shown solved, with the whole explanation open: this is what every question here carries.
An administrator specifies resilience requirements. Which four capabilities does NIST associate with cyber resiliency engineering?
Correct.
Checked against nvlpubs.nist.gov, August 2026Concept
Resilience assumes the attack succeeds. Naming adaptation alongside recovery is what stops a design that restores exactly the system that was breached.
Why A
NIST documents cyber resiliency engineering as sustaining systems with the capability to anticipate, withstand, recover from and adapt to adverse conditions, stresses, attacks or compromises.
Source
NIST SP 800-160 Volume 2 Revision 1: Developing Cyber-Resilient Systems, checked August 2026Cyber resiliency engineering intends to architect, design, develop, implement, maintain, and sustain the trustworthiness of systems with the capability to anticipate, withstand, recover from, and adapt to adverse conditions, stresses, attacks, or compromises that use or are enabled by cyber resources.
Now you: objective 8.6 questions
No account needed. The explanation opens when you answer.
Sample question 1 of 3
An administrator asks what cyber resiliency is intended to reduce from a risk management perspective. What does NIST document?
Sample question 2 of 3
An administrator asks how NIST positions cyber resiliency engineering relative to systems security engineering. What does SP 800-160 Volume 2 state?
Sample question 3 of 3
An architect asks what Splunk documents Detection studio helps a security team gain confidence in. Which does the documentation state?
Full Cybersecurity Defense Architect question bank coming
We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.
Read the sources
These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.
More objectives in Security Capability Selection, Placement, Configuration
- 8.1 Identify organizational coverage for prevention, detection, response and recovery capabilities
- 8.2 Determine how coverage gaps can be mitigated by architecture changes, config changes, or process changes
- 8.3 Affect organizational and company priorities and budgets based on key capabilities required for security that are aligned to security and business goals
- 8.4 Explain methodologies used to select security technologies aligned to business need, organizational technology landscape, and security controls
- 8.5 Define technology implementation strategies to provide desired capabilities