
EC-CouncilThreat Intelligence Essentials
Domain 4Objective 5
Legal and Ethical Considerations for Threat Data Collection TIE Practice Questions (Page 9)
Part of the Data Collection and Sources domain, which makes up ~13% of our current practice bank.
55questions here
11free pages
10concepts
Questions 41–45
- 41
A threat intelligence team subscribes to a commercial threat intelligence feed that provides indicators of compromise (IOCs) under a license that permits internal use only. The team wants to enrich these IOCs with data from an open-source intelligence (OSINT) source and then redistribute the combined dataset to a partner organization. What should the team do?
Select an answer first - 42
A threat intelligence team is collecting data from multiple sources, including social media, public forums, and dark web monitoring services. The team is based in a country with strict data protection laws, and the data includes personal information of individuals. What should the team do to ensure compliance with data protection regulations?
Select an answer first - 43
What is the purpose of the EU-US Data Privacy Framework (DPF) in the context of cross-border threat data transfers?
Select an answer first - 44
Which access control measure is most appropriate for handling highly sensitive threat intelligence data?
Select an answer first - 45
A security analyst is asked to collect threat data from a competitor's public website to gain a competitive advantage. The data includes customer reviews and employee names. The analyst's manager says it is for security research. What should the analyst do?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.