
EC-CouncilSOC Essentials
Domain 7Objective 5
Leveraging Threat Intelligence for Hunting SCE Practice Questions (Page 8)
Part of the Threat Intelligence and Hunting domain, which makes up ~12% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~6–10 in this domain), expect 1–2 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
9concepts
Questions 36–40
- 36
Which of the following is an example of an Indicator of Compromise (IOC)?
Select an answer first - 37
Why do TTPs provide deeper context for threat hunting compared to IOCs?
Select an answer first - 38
Which of the following is an example of an open-source threat intelligence source?
Select an answer first - 39
How are Indicators of Compromise (IOCs) typically used in threat hunting?
Select an answer first - 40
A threat hunter is reviewing a report about an advanced persistent threat (APT) group that uses spear-phishing emails with malicious attachments. The hunter wants to proactively search for signs of this activity in the email gateway logs. Which approach is most aligned with TTP-based hunting?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “SCE” is a trademark of its owner, used for identification only.