CompTIA CS0-003 Practice Test 1
Question 1 / 40
Which of the following would a security analyst most likely use to compare TTPs between different known adversaries of an organization?
MITRE ATTACK
Cyber Kill Cham
OWASP
STIXTAXII
Comment (0)
Suggested answer: A
Explanation:
MITRE ATT&CK is a framework and knowledge base that describes the tactics, techniques, and procedures (TTPs) used by various adversaries in cyberattacks. MITRE ATT&CK can help security analysts compare TTPs between different known adversaries of an organization, as well as identify patterns, gaps, or trends in adversary behavior. MITRE ATT&CK can also help security analysts improve threat detection, analysis, and response capabilities, as well as share threat intelligence with other organizations or communities