
EC-CouncilCertified Threat Intelligence Analyst (CTIA)
Domain 4Objective 1
Threat Intelligence Data Collection CTIA Practice Questions (Page 15)
Part of the Data Collection and Processing domain, which makes up ~29% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–23 in this domain), expect 8–12 from this objective — we provide 175 practice questions to prepare you well beyond it. (estimate)
175questions here
35free pages
62concepts
Questions 71–75
- 71
A malware analyst has received a suspicious executable file from a threat intelligence sharing community. The analyst needs to collect indicators of compromise (IOCs) and behavioral data from the file. Which approach should be taken?
Select an answer first - 72
When an analyst pulls indicators from a TISP into their internal threat intelligence platform, which of the following is the most important first step before using those indicators in detection rules?
Select an answer first - 73
A mid-sized company wants to enhance its threat intelligence capabilities by collecting external data. They have a limited budget and want to start with free or low-cost sources. Which external source should they prioritize?
Select an answer first - 74
Which of the following is a common use case for a custom script in automated threat data collection?
Select an answer first - 75
Which of the following is a key characteristic of data collected through continuous monitoring?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CTIA” is a trademark of its owner, used for identification only.