
EC-CouncilThreat Intelligence Essentials
Domain 6Objective 1
Data Analysis Techniques TIE Practice Questions (Page 11)
Part of the Threat Intelligence Analysis domain, which makes up ~14% of our current practice bank.
59questions here
12free pages
12concepts
Questions 51–55
- 51
Why is it important to tailor threat intelligence reports to different audiences?
Select an answer first - 52
An analyst is reviewing a set of IoCs from a recent incident. One IoC is a file hash that is associated with a known banking trojan, but the hash has a low reputation score on a commercial feed. Another IoC is an IP address that has been observed in multiple campaigns. Which IoC should be prioritized for blocking?
Select an answer first - 53
A threat intelligence analyst must prepare a report for the board of directors about a recent ransomware attack. The board is not technical and is primarily concerned with business impact. What is the most appropriate way to present the findings?
Select an answer first - 54
What is the main benefit of using visualization techniques in threat intelligence analysis?
Select an answer first - 55
A security team is analyzing network traffic to detect anomalies. They have a baseline of normal traffic patterns. They notice a sudden spike in outbound traffic to a specific external IP address during off-hours. The team wants to determine if this is a security incident or just a false positive. Which statistical method is most appropriate to assess this anomaly?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.