nerdexam
Microsoft

SC-100 · Question #151

When developing a security operations life cycle for managing threats, what is done at the threat analytics stage?

The correct answer is B. Stay informed with threat intelligence. In a security operations life cycle, the threat analytics stage focuses on consuming and acting on threat intelligence - understanding current attacker campaigns, TTPs (tactics, techniques, and procedures), and indicators of compromise so the SOC stays ahead of emerging…

Design security operations, identity, and compliance capabilities

Question

When developing a security operations life cycle for managing threats, what is done at the threat analytics stage?

Options

  • ADiscover vulnerable assets
  • BStay informed with threat intelligence
  • CIdentify suspicious behaviors
  • DRemediate compromised assets

How the community answered

(33 responses)
  • B
    94% (31)
  • C
    3% (1)
  • D
    3% (1)

Explanation

In a security operations life cycle, the threat analytics stage focuses on consuming and acting on threat intelligence - understanding current attacker campaigns, TTPs (tactics, techniques, and procedures), and indicators of compromise so the SOC stays ahead of emerging threats. Discovering vulnerable assets (A) belongs to the asset/vulnerability management phase. Identifying suspicious behaviors (C) is the detection phase. Remediating compromised assets (D) is the response/recovery phase.

Topics

#Security Operations Life Cycle#Threat Analytics#Threat Intelligence

Community Discussion

No community discussion yet for this question.

Full SC-100 Practice