Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilThreat Intelligence Essentials

Domain 5Objective 3

Automation and Orchestration of Threat Intelligence TIE Practice Questions (Page 11)

Part of the Threat Intelligence Platforms domain, which makes up ~13% of our current practice bank.

56questions here
12free pages
11concepts

Questions 51–55

  1. 51foundation · easy

    Which of the following is a best practice for implementing automation and orchestration in threat intelligence?

    Select an answer first
  2. 52expert · hard

    A threat intelligence team wants to automate the sharing of indicators with external partners. They want to share only indicators that have been verified as malicious and have a confidence score above 80. They also want to automatically revoke sharing if an indicator is later found to be a false positive. What is the best way to configure this in the TIP?

    Select an answer first
  3. 53foundation · easy

    What is the primary purpose of integrating a TIP with a firewall?

    Select an answer first
  4. 54foundation · easy

    How does orchestration streamline incident response in threat intelligence?

    Select an answer first
  5. 55application · medium

    A threat intelligence team wants to automatically generate a weekly report showing the number of indicators ingested, enriched, and blocked, as well as the number of false positives. They want this report to be emailed to management every Monday. What is the best way to achieve this?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.