Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilThreat Intelligence Essentials

Domain 2Objective 2

Use Cases for Different Types of Threat Intelligence TIE Practice Questions (Page 5)

Part of the Types of Threat Intelligence domain, which makes up ~11% of our current practice bank.

29questions here
6free pages
5concepts

Questions 21–25

  1. 21expert · hard

    A security team is configuring a new intrusion detection system (IDS). They have a limited budget and must choose between purchasing a commercial IoC feed or a threat intelligence platform that provides TTPs and campaign analysis. The team's primary goal is to detect known malware and malicious domains. Which option should they choose?

    Select an answer first
  2. 22expert · hard

    A security team has a limited budget and must choose between two threat intelligence subscriptions. Subscription A provides detailed reports on threat actor motivations and industry trends, updated quarterly. Subscription B provides real-time feeds of malicious IPs and domains, updated every few minutes. The team's primary need is to reduce the time to detect and block known malicious infrastructure. Which subscription should they choose?

    Select an answer first
  3. 23foundation · easy

    A chief information security officer (CISO) needs a high-level overview of emerging cyber threats to present to the board, while a SOC analyst needs specific indicators to block an ongoing attack. Which pair of threat intelligence types correctly matches these two needs?

    Select an answer first
  4. 24application · medium

    A government agency is planning its cybersecurity budget for the next five years. It needs to understand the long-term evolution of cyber threats targeting critical infrastructure, including the potential impact of nation-state actors. Which type of threat intelligence should the agency use for this planning?

    Select an answer first
  5. 25foundation · easy

    A security analyst is reviewing a report that details the specific tools, techniques, and procedures (TTPs) used by a known ransomware group. The analyst wants to use this information to improve detection rules. Which type of threat intelligence is being applied?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.