CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 109 Topic 11 Discussion

CompTIA CyberSecurity Analyst CySA+ Certification Exam CS0-003 Question # 109 Topic 11 Discussion

CS0-003 Exam Topic 11 Question 109 Discussion:
Question #: 109
Topic #: 11

An analyst is reviewing a dashboard from the company’s SIEM and finds that an IP address known to be malicious can be tracked to numerous high-priority events in the last two hours. The dashboard indicates that these events relate to TTPs. Which of the following is the analyst most likely using?


A.

MITRE ATT&CK


B.

OSSTMM


C.

Diamond Model of Intrusion Analysis


D.

OWASP


Get Premium CS0-003 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.