Cybersecurity Defense EngineerSplunk Certified Cybersecurity Defense Engineer

Practice Exam 2

5 of this form’s 60 questions, drawn from across its domains, free. The explanation on every one of them is free too, at every tier, and always will be.

  1. Question 1 of 5

    1-3Data Engineering

    An engineer needs to know which fields exist in a CIM dataset before writing a detection. Which command does Splunk document?

  2. Question 2 of 5

    2-2Detection Engineering

    An engineer adds a field to a correlation search that has no statistical transformation. Which change does Splunk document?

  3. Question 3 of 5

    3-3Building Effective Security Processes and Programs

    An engineer asks what an Analytic Story provides besides the searches themselves. What does Splunk document?

  4. Question 4 of 5

    4-3Automation and Efficiency

    An engineer wants to create a search job through the API and read its results later. Which endpoint does Splunk document?

  5. Question 5 of 5

    5-1Auditing and Reporting on Security Programs

    An engineer asks what populates the security metrics shown by a key indicator. What does Splunk document?

0 of 60 completed

0%

The other 55 questions are the rest of this form: same 75 minute clock, same 750 cut score, and the same explanation on every question, which is never behind the wall. Practice Exam 2 of 2 on Cybersecurity Defense Engineer.

What this exam covers

  • Data Engineering6 questions / 10% of the exam
  • Detection Engineering24 questions / 40% of the exam
  • Building Effective Security Processes and Programs12 questions / 20% of the exam
  • Automation and Efficiency12 questions / 20% of the exam
  • Auditing and Reporting on Security Programs6 questions / 10% of the exam

Checking what you already have access to.

Every question is original, written from the published objectives. We never reproduce, paraphrase, or imitate real exam content, and neither should anything else you study from.