Câu 57: 312-39V2: Certified SOC Analyst (CSA) v2
A security analyst working in a multinational corporation's Threat Intelligence team is tasked with enhancing the organization's ability to detect stealthy malware infections. During an investigation, the analyst observes an unusually high volume of DNS requests directed toward domains that follow patterns commonly as…
Nội dung câu hỏi
A security analyst working in a multinational corporation's Threat Intelligence team is tasked with enhancing the organization's ability to detect stealthy malware infections. During an investigation, the analyst observes an unusually high volume of DNS requests directed toward domains that follow patterns commonly associated with Domain Generation Algorithms (DGAs). Recognizing that these automated domain queries could indicate a malware strain attempting to establish communication with its Command & Control (C2) infrastructure, the analyst realizes that existing detection capabilities may not be sufficient. To effectively counter such threats, the security team needs to define intelligence requirements – including identifying critical data sources, refining detection criteria, and improving threat monitoring strategies. Which stage of the Cyber Threat Intelligence (CTI) process does this scenario align with?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Requirement Analysis — đáp án hiện tại
- B. Filtering CTI
- C. Intelligence Buy-In
- D. Automated tool
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.