ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 1 - CS0-003 discussion

Report
Export

Which of the following would a security analyst most likely use to compare TTPs between different known adversaries of an organization?

A.
MITRE ATTACK
Answers
A.
MITRE ATTACK
B.
Cyber Kill Cham
Answers
B.
Cyber Kill Cham
C.
OWASP
Answers
C.
OWASP
D.
STIXTAXII
Answers
D.
STIXTAXII
Suggested answer: A

Explanation:

MITRE ATT&CK is a framework and knowledge base that describes the tactics, techniques, and procedures (TTPs) used by various adversaries in cyberattacks. MITRE ATT&CK can help security analysts compare TTPs between different known adversaries of an organization, as well as identify patterns, gaps, or trends in adversary behavior. MITRE ATT&CK can also help security analysts improve threat detection, analysis, and response capabilities, as well as share threat intelligence with other organizations or communities

asked 02/10/2024
Yedron Rojas Acosta
49 questions
NextNext
User
Your answer:
0 comments
Sorted by

Leave a comment first