Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CrowdStrike logo

CrowdStrikeCertified Falcon Hunter (CCFH)

Domain 1Objective 3

1.3 Operationalize the MITRE ATT&CK Framework to Research Threat Models, TTPs and Threat Actors, and Pivot as Necessary and Convey to Non-Technical Audiences CCFH Practice Questions (Page 4)

Part of the ATT&CK Frameworks domain, which makes up ~10% of our current practice bank.

19questions here
4free pages
6concepts

Questions 16–19

  1. 16application · medium

    A security analyst has completed a threat model for a healthcare organization, identifying that a specific ransomware group uses techniques such as 'Scheduled Task/Job' for persistence and 'Data Encrypted for Impact' for impact. The analyst must present these findings to the hospital's board of directors, who are not technical. Which presentation approach is most effective?

    Select an answer first
  2. 17foundation · easy

    Which statement best exemplifies translating a technical finding into non-technical language?

    Select an answer first
  3. 18foundation · easy

    When researching threat models for an organization using MITRE ATT&CK, which factor is most important to consider first?

    Select an answer first
  4. 19application · medium

    A security analyst has identified that a threat actor is using a technique called 'Valid Accounts' to access the network. The analyst needs to explain this to a non-technical manager who is concerned about the risk. Which explanation is most effective?

    Select an answer first
Finished these 4 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to CCFH

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CrowdStrike. “CCFH” is a trademark of its owner, used for identification only.