
EC-CouncilThreat Intelligence Essentials
Domain 8Objective 5
Threat Intelligence in Incident Response TIE Practice Questions (Page 11)
Part of the Sharing, Collaboration, and Incident Response domain, which makes up ~13% of our current practice bank.
53questions here
11free pages
8concepts
Questions 51–53
- 51
A multinational company is responding to a ransomware incident that affects operations in multiple regions. The incident response team has identified the ransomware family and its C2 infrastructure. They want to share intelligence with external partners but are concerned about legal and privacy implications. What is the best approach?
Select an answer first - 52
During an incident investigation, the response team discovers a suspicious file on a compromised host. They want to determine if this file is related to a known threat actor and understand the potential scope of the attack. Which action would best utilize threat intelligence to enrich the investigation?
Select an answer first - 53
What is a common challenge when using threat intelligence in incident response?
Select an answer first
Finished these 3 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to TIE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.