
EC-CouncilThreat Intelligence Essentials
Domain 2Objective 3
The Threat Intelligence Generation Process TIE Practice Questions (Page 4)
Part of the Types of Threat Intelligence domain, which makes up ~11% of our current practice bank.
42questions here
9free pages
6concepts
Questions 16–20
- 16
Which sequence best represents the overall threat intelligence generation process from raw data to actionable insights?
Select an answer first - 17
What is the primary purpose of the dissemination stage in the threat intelligence generation process?
Select an answer first - 18
A threat intelligence team has developed a new automated alert system that sends real-time alerts to the SOC. However, the SOC team reports that they are receiving too many false positives and are starting to ignore the alerts. The team needs to improve the system. What is the most effective way to address this using the feedback loop?
Select an answer first - 19
A security operations center collects firewall logs, DNS logs, and threat feeds from multiple vendors. Analysts notice that the same IP address appears in different formats across sources (e.g., with and without leading zeros, and in both IPv4 and IPv6 notations). To ensure the correlation engine can match these entries, what should the team do first?
Select an answer first - 20
After analyzing a series of malware samples, a threat intelligence analyst has identified a new ransomware family and its command-and-control (C2) infrastructure. The analyst needs to share this information with the incident response team and the network security team. What is the most appropriate intelligence product to produce?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.