
EC-CouncilThreat Intelligence Essentials
Domain 7Objective 3
Threat Hunting Methodologies and Frameworks TIE Practice Questions (Page 3)
Part of the Threat Hunting and Detection domain, which makes up ~12% of our current practice bank.
53questions here
11free pages
20concepts
Questions 11–15
- 11
A security analyst at a mid-sized company notices that several employees in the finance department have recently received phishing emails with subject lines referencing 'invoice overdue'. The emails contain a link that, when clicked, downloads a ZIP file. The analyst wants to proactively hunt for any signs of compromise related to this campaign. Which approach best aligns with hypothesis-driven hunting?
Select an answer first - 12
What is the primary purpose of the Cyber Kill Chain in threat hunting?
Select an answer first - 13
What is the correct sequence of the general phases of a threat hunting engagement?
Select an answer first - 14
Which activity best exemplifies situational awareness-driven threat hunting?
Select an answer first - 15
In MITRE ATT&CK, what is the difference between a tactic and a technique?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.