Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 96 Topic 10 Discussion

CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 96 Topic 10 Discussion

CS0-003 Exam Topic 10 Question 96 Discussion:
Question #: 96
Topic #: 10

The threat intelligence team is using the MITRE ATT & CK framework to map threat actors’ TTPs to the team’s internal reference library. Which of the following best describes the reason visualization and stage alignment are helpful for the incident response team?


A.

Having a common framework provides structure for relaying the known indicators of concern to the security monitoring team.


B.

Knowing the attack stage helps the incident response team determine how to structure custom SIEM alerts to detect security events of interest.


C.

A visual mapping helps the incident response team identify the stage and relevant TTPs faster than a white paper for each threat actor.


D.

Aligning an action to a specific stage in an incident allows the incident response team to better define intent and anticipate the next action.


Get Premium CS0-003 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.