Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Ethical Hacker

Domain 1Objective 8

Threat Intelligence and Incident Management CEH Practice Questions (Page 11)

Part of the Information Security and Ethical Hacking Overview domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~16–27 in this domain), expect 2–3 from this objective — we provide 60 practice questions to prepare you well beyond it. (estimate)

60questions here
12free pages
12concepts

Questions 51–55

  1. 51expert · hard

    After a ransomware incident, the incident response team has completed eradication and recovery. The CISO wants to ensure that the organization is better prepared for future incidents. The team has limited time and budget. Which post-incident activity should the team prioritize?

    Select an answer first
  2. 52application · medium

    A company wants to shift from a reactive security posture to a proactive one. The CISO asks the security team to implement a program that uses threat intelligence to anticipate and mitigate attacks before they occur. Which initiative best aligns with this goal?

    Select an answer first
  3. 53application · medium

    After a ransomware incident, the incident response team has successfully contained the threat and restored systems from backups. The CISO requests a report detailing what happened and how to prevent recurrence. Which post-incident activity is most directly aligned with this request?

    Select an answer first
  4. 54application · medium

    A threat intelligence analyst needs to collect data about a new ransomware group that is targeting the organization's industry. The analyst wants to gather both technical indicators and contextual information about the group's tactics, techniques, and procedures (TTPs). Which combination of sources would provide the most comprehensive data?

    Select an answer first
  5. 55foundation · easy

    What is a common method for collecting threat data from external sources?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.