CAS-003 · Question #526
An organization wants to arm its cybersecurity defensive suite automatically with intelligence on zero-day threats shortly after they emerge. Acquiring tools and services that support which of the…
The correct answer is E. CVE. CVE (Common Vulnerabilities and Exposures) is the industry-standard naming scheme for publicly disclosed vulnerabilities. When zero-day threats emerge and are disclosed, they are assigned CVE identifiers. Security tools (SIEMs, vulnerability scanners, threat intel platforms)…
Question
An organization wants to arm its cybersecurity defensive suite automatically with intelligence on zero-day threats shortly after they emerge. Acquiring tools and services that support which of the following data standards would BEST enable the organization to meet this objective?
Options
- AXCCDF
- BOVAL
- CSTIX
- DCWE
- ECVE
How the community answered
(38 responses)- A5% (2)
- B3% (1)
- D5% (2)
- E87% (33)
Explanation
CVE (Common Vulnerabilities and Exposures) is the industry-standard naming scheme for publicly disclosed vulnerabilities. When zero-day threats emerge and are disclosed, they are assigned CVE identifiers. Security tools (SIEMs, vulnerability scanners, threat intel platforms) can subscribe to CVE data feeds and automatically update their defensive databases in near real-time. This makes CVE the most practical standard for arming a defensive suite automatically. STIX is a threat intelligence sharing format but is broader and less directly tied to automated tooling integration. OVAL assesses vulnerability states but doesn't drive real-time intelligence feeds. XCCDF is for configuration checklists. CWE categorizes software weakness types, not specific vulnerabilities.
Topics
Community Discussion
No community discussion yet for this question.