Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilThreat Intelligence Essentials

Domain 2Objective 2

Use Cases for Different Types of Threat Intelligence TIE Practice Questions (Page 3)

Part of the Types of Threat Intelligence domain, which makes up ~11% of our current practice bank.

29questions here
6free pages
5concepts

Questions 11–15

  1. 11expert · hard

    A security team is investigating a breach that occurred three months ago. They have logs but no IoCs from the time of the breach. They need to determine if the attacker used a known TTP that was documented after the breach. Which type of threat intelligence would be most useful?

    Select an answer first
  2. 12expert · hard

    A CISO must present a cybersecurity budget proposal to the board. The board is concerned about the rising number of ransomware attacks in the industry. The CISO needs to justify funding for both new detection tools and employee training. Which type of threat intelligence should be used to support this proposal?

    Select an answer first
  3. 13expert · hard

    A security team is investigating a series of intrusions that all used a novel phishing technique. The team has collected IoCs from the incidents, but the IoCs are not matching any known threat actor. The team needs to understand the attack pattern to develop a proactive defense. Which type of threat intelligence should the team prioritize?

    Select an answer first
  4. 14application · medium

    A security analyst at a healthcare organization is configuring the endpoint detection and response (EDR) tool to block known malicious files and domains. The analyst has access to a feed of hashes, IPs, and domain names from a commercial threat intelligence provider. Which type of threat intelligence is the analyst applying?

    Select an answer first
  5. 15expert · hard · select all that apply

    A security team is building a threat intelligence program for a mid-sized company. They need to support multiple functions: executive reporting, SOC detection, incident response, and malware analysis. Select all the correct pairings of intelligence type and use case.

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.