
EC-CouncilThreat Intelligence Essentials
Domain 4Objective 3
Bulk Data Collection Methods and Considerations TIE Practice Questions (Page 3)
Part of the Data Collection and Sources domain, which makes up ~13% of our current practice bank.
47questions here
10free pages
7concepts
Questions 11–15
- 11
A threat intelligence team has collected a large volume of data and is now in the analysis phase. They have identified several indicators of compromise (IOCs). What should they do next to ensure the intelligence is effectively used?
Select an answer first - 12
What does data normalization address in the context of bulk-collected data?
Select an answer first - 13
A threat intelligence analyst is collecting data from public social media posts to identify potential insider threats. The analyst plans to store the data in a central database. What is a key legal consideration?
Select an answer first - 14
An analyst collects a large dataset of threat indicators from a public malware repository to enrich their SIEM. After loading the data, they notice many indicators are outdated and some are duplicates. What should the analyst do first to improve the dataset's usefulness?
Select an answer first - 15
An organization collects billions of DNS records daily from multiple sensors to identify domain generation algorithm (DGA) activity. The raw data is stored in a distributed file system, but analysts complain that queries are slow and the data is difficult to search. The team needs to improve query performance without losing raw data. Which approach best addresses this challenge?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.