
EC-CouncilThreat Intelligence Essentials
Domain 7Objective 2
The Threat Hunting Process TIE Practice Questions (Page 2)
Part of the Threat Hunting and Detection domain, which makes up ~12% of our current practice bank.
46questions here
10free pages
6concepts
Questions 6–10
- 6
A threat hunter is about to start a hunt based on a new threat intelligence report about a malware family that uses scheduled tasks for persistence. The hunter has already formulated a hypothesis. According to the threat hunting process, what should the hunter do next?
Select an answer first - 7
Why is documenting the threat hunting process and findings important?
Select an answer first - 8
Which statement best describes threat hunting in a cybersecurity context?
Select an answer first - 9
What does 'reducing dwell time' mean in the context of threat hunting?
Select an answer first - 10
A threat hunter has just completed a hunt that found no evidence of the hypothesized malicious activity. The hunter's manager asks for a summary of the work. What should the hunter include in the report to best support future hunts and demonstrate the value of the process?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.