IT Exam Items Repository Which threat intelligence sharing open standard specifies, captures, characterizes, and communicates events and properties of network operations?ITExamAnswers Editorial Team asked 5 years ago • CCNA CyberOps, Cyber Threat ManagementWhat federal act law would an individual be subject to if they knowingly accessed a government computer without permission?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat Management, Cybersecurity EssentialsWhen a network baseline is being established for an organization, which network profile element indicates the time between the establishment of a data flow and its termination?ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementWhat is a statement of applicability (SOA)?ITExam Editorial Team asked 3 years ago • Cyber Threat ManagementHow does FireEye detect and prevent zero-day attacks?ITExam Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementIn which situation would a detective control be warranted?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat Management, Cybersecurity EssentialsA user is asked to evaluate the security posture of a company. The user looks at past attempts to break into the company and evaluates the threats and exposures to create a report. Which type of risk analysis could the user perform?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat Management, Cybersecurity EssentialsWhat is a MITRE ATT&CK framework?ITExamAnswers Editorial Team asked 5 years ago • CCNA CyberOps, Cyber Threat ManagementWhich meta-feature element in the Diamond Model describes tools and information (such as software, black hat knowledge base, username and password) that the adversary uses for the intrusion event?ITExamAnswers Editorial Team asked 5 years ago • CCNA CyberOps, Cyber Threat ManagementThe CEO of a company is concerned that if a data breach should occur and customer data is exposed, the company could be sued. The CEO makes the decision to buy insurance for the company. What type of risk mitigation is the CEO implementing?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat Management, Cybersecurity EssentialsAccording to the Cyber Kill Chain model, after a weapon is delivered to a targeted system, what is the next step that a threat actor would take?ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementWhich NIST-defined incident response stakeholder is responsible for coordinating incident response with other stakeholders and minimizing the damage of an incident?ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementWhat is the first step in the risk management process that helps to reduce the impact of threats and vulnerabilities?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat ManagementIn addressing an identified risk, which strategy aims to decrease the risk by taking measures to reduce vulnerability?ITExamAnswers Editorial Team asked 6 years ago • CCNA CyberOps, Cyber Threat ManagementYour risk manager just distributed a chart that uses three colors to identify the level of threat to key assets in the information security systems. Red represents high level of risk, yellow represents average level of threat and green represents low level of threat. What type of risk analysis does this chart represent?ITExamAnswers Editorial Team asked 4 years ago • Cyber Threat Management, Cybersecurity Essentials