nerdexam
Cisco

300-220 · Question #121

The process of removing outdated threat intelligence involves:

The correct answer is C. Reviewing and discarding no longer relevant data. Removing outdated threat intelligence is fundamentally a data management process - it means periodically reviewing your intelligence feeds and discarding indicators, signatures, or context that no longer reflects the current threat landscape (e.g., expired IP blocklists…

Threat Hunting Processes

Question

The process of removing outdated threat intelligence involves:

Options

  • AUpdating firewall rules
  • BRetraining machine learning models
  • CReviewing and discarding no longer relevant data
  • DPatching software vulnerabilities

How the community answered

(26 responses)
  • A
    4% (1)
  • B
    8% (2)
  • C
    88% (23)

Explanation

Removing outdated threat intelligence is fundamentally a data management process - it means periodically reviewing your intelligence feeds and discarding indicators, signatures, or context that no longer reflects the current threat landscape (e.g., expired IP blocklists, defunct malware hashes, or decommissioned attacker infrastructure). Options A and D (firewall rules and patching) are reactive security controls, not intelligence lifecycle activities. Option B (retraining ML models) may be a downstream consequence of refreshed data, but it is not the removal process itself.

Memory tip: Think of threat intelligence like a newspaper subscription - you keep current issues and throw out old ones. "Removing outdated" = review and discard, not fix or retrain.

Topics

#threat intelligence lifecycle#data hygiene#intelligence retirement#threat management

Community Discussion

No community discussion yet for this question.

Full 300-220 Practice