Security Operations第 86 / 100 题
Which threat intelligence source consists of shared indicators of compromise that defenders can ingest to detect attacks?
a.Marketing feed
b.Firmware feed
c.Social media feed
d.Threat feed
解析
A threat intelligence feed supplies indicators of compromise such as malicious IPs, domains, and file hashes. Ingesting these into detection tools helps identify known threats quickly. Feeds should be evaluated for relevance and timeliness to be useful.
免费刷完整 100 道题库 — 无需注册。
同考点相关题目
- Which practice ensures logs cannot be tampered with by centralizing them on a protected, write-once server?
- A discussion-based session where a team walks through their response to a hypothetical incident is called a:
- Which automation approach uses playbooks to coordinate tools and streamline security operations tasks?
- Which principle requires that two people perform a sensitive action together to prevent fraud?
- Rotating employees through different roles helps detect fraud and reduce dependence on any one person. This control is:
- Which secure disposal method makes data on a drive unrecoverable by destroying the media physically?