SC-100 · Question #151
When developing a security operations life cycle for managing threats, what is done at the threat analytics stage?
The correct answer is B. Stay informed with threat intelligence. In a security operations life cycle, the threat analytics stage focuses on consuming and acting on threat intelligence - understanding current attacker campaigns, TTPs (tactics, techniques, and procedures), and indicators of compromise so the SOC stays ahead of emerging…
Question
When developing a security operations life cycle for managing threats, what is done at the threat analytics stage?
Options
- ADiscover vulnerable assets
- BStay informed with threat intelligence
- CIdentify suspicious behaviors
- DRemediate compromised assets
How the community answered
(33 responses)- B94% (31)
- C3% (1)
- D3% (1)
Explanation
In a security operations life cycle, the threat analytics stage focuses on consuming and acting on threat intelligence - understanding current attacker campaigns, TTPs (tactics, techniques, and procedures), and indicators of compromise so the SOC stays ahead of emerging threats. Discovering vulnerable assets (A) belongs to the asset/vulnerability management phase. Identifying suspicious behaviors (C) is the detection phase. Remediating compromised assets (D) is the response/recovery phase.
Topics
Community Discussion
No community discussion yet for this question.