
EC-CouncilThreat Intelligence Essentials
Domain 7Objective 5
Threat Hunting Tool Selection and Techniques TIE Practice Questions (Page 1)
Part of the Threat Hunting and Detection domain, which makes up ~12% of our current practice bank.
40questions here
8free pages
7concepts
Questions 1–5
- 1
What is the first step in anomaly-based threat hunting?
Select an answer first - 2
When selecting a threat hunting tool, which factor is most important to ensure the tool can actually use the data your organization already collects?
Select an answer first - 3
Which tool category is specifically designed to monitor and respond to malicious activity on individual endpoints, providing visibility into processes, files, and system calls?
Select an answer first - 4
What is the primary benefit of integrating threat hunting tools into a cohesive workflow?
Select an answer first - 5
A security team has a SIEM with 90 days of log retention and an EDR with 30 days of endpoint data. They receive a threat intelligence report containing IOCs from a campaign that occurred 60 days ago. They want to determine if their environment was compromised. Which approach is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.