Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilThreat Intelligence Essentials

Domain 2Objective 4

Augmenting Vulnerability Management with Threat Intelligence TIE Practice Questions (Page 7)

Part of the Types of Threat Intelligence domain, which makes up ~11% of our current practice bank.

46questions here
10free pages
6concepts

Questions 31–35

  1. 31foundation · easy

    How does threat intelligence add context to a vulnerability that a CVSS score alone does not provide?

    Select an answer first
  2. 32application · medium

    After integrating threat intelligence into their vulnerability management program, a security team wants to measure whether the integration has improved their ability to focus on the most relevant risks. Which metric would best demonstrate the impact of threat intelligence on prioritization?

    Select an answer first
  3. 33expert · hard

    A security team is designing an automated vulnerability management workflow that uses threat intelligence. They want to ensure that the workflow is both efficient and accurate. They are considering whether to fully automate the remediation process or to include a manual approval step. Which factor is MOST important in this decision?

    Select an answer first
  4. 34application · medium

    A company is establishing a vulnerability management program and wants to incorporate threat intelligence to improve decision-making. At which stage of the vulnerability management lifecycle should threat intelligence be integrated to have the most significant impact?

    Select an answer first
  5. 35expert · hard

    A vulnerability management team is prioritizing vulnerabilities for remediation. They have a vulnerability with a CVSS score of 8.5 that affects a critical internal system but is not being exploited and has no known exploit code. They also have a vulnerability with a CVSS score of 6.0 that affects an internet-facing system and is being actively exploited by a known threat actor group. The team has limited resources and can only remediate one vulnerability this sprint. Which vulnerability should they remediate first?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.