100% Real 312-85 dumps - Brilliant 312-85 Exam Questions PDF [Q25-Q44]

Share

100% Real 312-85 dumps  - Brilliant 312-85 Exam Questions PDF

312-85 Exam PDF [2024] Tests Free Updated Today with Correct 50 Questions


The CTIA certification is designed to provide professionals with a comprehensive understanding of the various types of cyber threats that exist and how to identify them. Certified Threat Intelligence Analyst certification also covers various techniques for analyzing and interpreting data to identify potential threats. This knowledge is crucial for professionals who are responsible for safeguarding their organization’s critical information and data assets.

 

NEW QUESTION # 25
Kathy wants to ensure that she shares threat intelligence containing sensitive information with the appropriate audience. Hence, she used traffic light protocol (TLP).
Which TLP color would you signify that information should be shared only within a particular community?

  • A. Green
  • B. White
  • C. Amber
  • D. Red

Answer: A


NEW QUESTION # 26
An attacker instructs bots to use camouflage mechanism to hide his phishing and malware delivery locations in the rapidly changing network of compromised bots. In this particular technique, a single domain name consists of multiple IP addresses.
Which of the following technique is used by the attacker?

  • A. DNS interrogation
  • B. Dynamic DNS
  • C. Fast-Flux DNS
  • D. DNS zone transfer

Answer: C


NEW QUESTION # 27
Alison, an analyst in an XYZ organization, wants to retrieve information about a company's website from the time of its inception as well as the removed information from the target website.
What should Alison do to get the information he needs.

  • A. Alison should recover cached pages of the website from the Google search engine cache to extract the required website information.
  • B. Alison should use https://archive.org to extract the required website information.
  • C. Alison should run the Web Data Extractor tool to extract the required website information.
  • D. Alison should use SmartWhois to extract the required website information.

Answer: B


NEW QUESTION # 28
Tyrion, a professional hacker, is targeting an organization to steal confidential information. He wants to perform website footprinting to obtain the following information, which is hidden in the web page header.
Connection status and content type
Accept-ranges and last-modified information
X-powered-by information
Web server in use and its version
Which of the following tools should the Tyrion use to view header content?

  • A. AutoShun
  • B. Burp suite
  • C. Hydra
  • D. Vanguard enforcer

Answer: B


NEW QUESTION # 29
An organization suffered many major attacks and lost critical information, such as employee records, and financial information. Therefore, the management decides to hire a threat analyst to extract the strategic threat intelligence that provides high-level information regarding current cyber-security posture, threats, details on the financial impact of various cyber-activities, and so on.
Which of the following sources will help the analyst to collect the required intelligence?

  • A. Active campaigns, attacks on other organizations, data feeds from external third parties
  • B. Human, social media, chat rooms
  • C. OSINT, CTI vendors, ISAO/ISACs
  • D. Campaign reports, malware, incident reports, attack group reports, human intelligence

Answer: C


NEW QUESTION # 30
Mr. Bob, a threat analyst, is performing analysis of competing hypotheses (ACH). He has reached to a stage where he is required to apply his analysis skills effectively to reject as many hypotheses and select the best hypotheses from the identified bunch of hypotheses, and this is done with the help of listed evidence. Then, he prepares a matrix where all the screened hypotheses are placed on the top, and the listed evidence for the hypotheses are placed at the bottom.
What stage of ACH is Bob currently in?

  • A. Inconsistency
  • B. Evidence
  • C. Refinement
  • D. Diagnostics

Answer: D


NEW QUESTION # 31
During the process of threat intelligence analysis, John, a threat analyst, successfully extracted an indication of adversary's information, such as Modus operandi, tools, communication channels, and forensics evasion strategies used by adversaries.
Identify the type of threat intelligence analysis is performed by John.

  • A. Technical threat intelligence analysis
  • B. Strategic threat intelligence analysis
  • C. Operational threat intelligence analysis
  • D. Tactical threat intelligence analysis

Answer: D


NEW QUESTION # 32
Miley, an analyst, wants to reduce the amount of collected data and make the storing and sharing process easy. She uses filtering, tagging, and queuing technique to sort out the relevant and structured data from the large amounts of unstructured data.
Which of the following techniques was employed by Miley?

  • A. Sandboxing
  • B. Convenience sampling
  • C. Data visualization
  • D. Normalization

Answer: D


NEW QUESTION # 33
Daniel is a professional hacker whose aim is to attack a system to steal data and money for profit. He performs hacking to obtain confidential data such as social security numbers, personally identifiable information (PII) of an employee, and credit card information. After obtaining confidential data, he further sells the information on the black market to make money.
Daniel comes under which of the following types of threat actor.

  • A. Organized hackers
  • B. Insider threat
  • C. State-sponsored hackers
  • D. Industrial spies

Answer: A


NEW QUESTION # 34
Henry. a threat intelligence analyst at ABC Inc., is working on a threat intelligence program. He was assigned to work on establishing criteria for prioritization of intelligence needs and requirements.
Which of the following considerations must be employed by Henry to prioritize intelligence requirements?

  • A. Develop a collection plan
  • B. Understand data reliability
  • C. Understand frequency and impact of a threat
  • D. Produce actionable data

Answer: C


NEW QUESTION # 35
Steve works as an analyst in a UK-based firm. He was asked to perform network monitoring to find any evidence of compromise. During the network monitoring, he came to know that there are multiple logins from different locations in a short time span. Moreover, he also observed certain irregular log in patterns from locations where the organization does not have business relations. This resembles that somebody is trying to steal confidential information.
Which of the following key indicators of compromise does this scenario present?

  • A. Geographical anomalies
  • B. Unexpected patching of systems
  • C. Unusual outbound network traffic
  • D. Unusual activity through privileged user account

Answer: A


NEW QUESTION # 36
In which of the following forms of bulk data collection are large amounts of data first collected from multiple sources in multiple formats and then processed to achieve threat intelligence?

  • A. Structured form
  • B. Production form
  • C. Unstructured form
  • D. Hybrid form

Answer: C


NEW QUESTION # 37
Kim, an analyst, is looking for an intelligence-sharing platform to gather and share threat information from a variety of sources. He wants to use this information to develop security policies to enhance the overall security posture of his organization.
Which of the following sharing platforms should be used by Kim?

  • A. OmniPeek
  • B. Blueliv threat exchange network
  • C. Cuckoo sandbox
  • D. PortDroid network analysis

Answer: B


NEW QUESTION # 38
Cybersol Technologies initiated a cyber-threat intelligence program with a team of threat intelligence analysts. During the process, the analysts started converting the raw data into useful information by applying various techniques, such as machine-based techniques, and statistical methods.
In which of the following phases of the threat intelligence lifecycle is the threat intelligence team currently working?

  • A. Planning and direction
  • B. Analysis and production
  • C. Dissemination and integration
  • D. Processing and exploitation

Answer: D


NEW QUESTION # 39
An analyst wants to disseminate the information effectively so that the consumers can acquire and benefit out of the intelligence.
Which of the following criteria must an analyst consider in order to make the intelligence concise, to the point, accurate, and easily understandable and must consist of a right balance between tables, narrative, numbers, graphics, and multimedia?

  • A. The right order
  • B. The right time
  • C. The right content
  • D. The right presentation

Answer: D


NEW QUESTION # 40
Tim is working as an analyst in an ABC organization. His organization had been facing many challenges in converting the raw threat intelligence data into meaningful contextual information. After inspection, he found that it was due to noise obtained from misrepresentation of data from huge data collections. Hence, it is important to clean the data before performing data analysis using techniques such as data reduction. He needs to choose an appropriate threat intelligence framework that automatically performs data collection, filtering, and analysis for his organization.
Which of the following threat intelligence frameworks should he choose to perform such task?

  • A. Threat grid
  • B. HighCharts
  • C. TC complete
  • D. SIGVERIF

Answer: C


NEW QUESTION # 41
ABC is a well-established cyber-security company in the United States. The organization implemented the automation of tasks such as data enrichment and indicator aggregation. They also joined various communities to increase their knowledge about the emerging threats. However, the security teams can only detect and prevent identified threats in a reactive approach.
Based on threat intelligence maturity model, identify the level of ABC to know the stage at which the organization stands with its security and vulnerabilities.

  • A. Level 1: preparing for CTI
  • B. Level 0: vague where to start
  • C. Level 2: increasing CTI capabilities
  • D. Level 3: CTI program in place

Answer: C


NEW QUESTION # 42
What is the correct sequence of steps involved in scheduling a threat intelligence program?
1. Review the project charter
2. Identify all deliverables
3. Identify the sequence of activities
4. Identify task dependencies
5. Develop the final schedule
6. Estimate duration of each activity
7. Identify and estimate resources for all activities
8. Define all activities
9. Build a work breakdown structure (WBS)

  • A. 3-->4-->5-->2-->1-->9-->8-->7-->6
  • B. 1-->2-->3-->4-->5-->6-->7-->8-->9
  • C. 1-->9-->2-->8-->3-->7-->4-->6-->5
  • D. 1-->2-->3-->4-->5-->6-->9-->8-->7

Answer: C


NEW QUESTION # 43
Lizzy, an analyst, wants to recognize the level of risks to the organization so as to plan countermeasures against cyber attacks. She used a threat modelling methodology where she performed the following stages:
Stage 1: Build asset-based threat profiles
Stage 2: Identify infrastructure vulnerabilities
Stage 3: Develop security strategy and plans
Which of the following threat modelling methodologies was used by Lizzy in the aforementioned scenario?

  • A. VAST
  • B. OCTAVE
  • C. TRIKE
  • D. DREAD

Answer: B


NEW QUESTION # 44
......


ECCouncil 312-85 certification is recognized globally and is highly valued by employers in the cybersecurity industry. Certified Threat Intelligence Analyst certification demonstrates that the holder has the skills and knowledge to identify and mitigate cyber threats, which is a critical skill in today's rapidly evolving cybersecurity landscape.


The CTIA certification exam is an excellent way for professionals to demonstrate their expertise in the field of threat intelligence analysis. Certified Threat Intelligence Analyst certification demonstrates that the candidate has a thorough understanding of the various aspects of threat intelligence analysis and is capable of identifying, assessing, and mitigating potential threats. Certified Threat Intelligence Analyst certification also shows that the candidate is committed to staying up-to-date with the latest developments in the field of cybersecurity and is dedicated to providing the best services to their clients.

 

Verified & Correct 312-85 Practice Test Reliable Source Mar 16, 2024 Updated: https://lead2pass.prep4sureexam.com/312-85-dumps-torrent.html