nerdexam
CompTIA

CAS-005 · Question #464

An organization's senior security architect would like to develop cyberdefensive strategies based on standardized adversary techniques, tactics, and procedures commonly observed. Which of the…

The correct answer is C. MITRE ATT&CK. The MITRE ATT&CK framework provides a comprehensive, standardized taxonomy of adversary tactics, techniques, and procedures (TTPs) observed across real-world incidents. By mapping threats to ATT&CK, security teams can develop targeted defensive strategies, gap analyses, and…

Submitted by ahmad_uae· Mar 6, 2026Security Architecture

Question

An organization’s senior security architect would like to develop cyberdefensive strategies based on standardized adversary techniques, tactics, and procedures commonly observed. Which of the following would best support this objective?

Options

  • AOSINT analysis
  • BThe Diamond Model of Intrusion Analysis
  • CMITRE ATT&CK
  • DDeepfake generation
  • EClosed-source intelligence reporting

How the community answered

(51 responses)
  • A
    4% (2)
  • B
    6% (3)
  • C
    86% (44)
  • D
    2% (1)
  • E
    2% (1)

Explanation

The MITRE ATT&CK framework provides a comprehensive, standardized taxonomy of adversary tactics, techniques, and procedures (TTPs) observed across real-world incidents. By mapping threats to ATT&CK, security teams can develop targeted defensive strategies, gap analyses, and threat-informed detection and response playbooks based on documented attacker behavior.

Community Discussion

No community discussion yet for this question.

Full CAS-005 Practice