Question 1 (1 point)
Which step is not one of the five steps of the NIST Framework?
Question 1 options:
Detect
Identify
Protect
Recover
Execute
Question 2 (1 point)
What is NOT a motivation for cyber threat actors?
Question 2 options:
Espionage
Political Tampering
Financial Gain
System Optimization
Question 3 (1 point)
Which is NOT one of the six steps of the CVE process?
Question 3 options:
Record
Publish
Discover
Request
Submit
Reserve
, Question 4 (1 point)
What is MITRE ATT&CK?
Question 4 options:
MITRE ATT&CK is a high-performance computing environment run by MITRE.
MITRE ATT&CK is a virtualization platform for running container images.
MITRE ATT&CK is a globally accessible knowledge base of adversary tactics and techniques based on
real-world observations of cyberattacks.
MITRE ATT&CK is an application executed to compromise vulnerable systems.
Question 5 (1 point)
MITRE creates or manages processes for all of the following, with the
exception of what?
Question 5 options:
CVEs
APTs
ATT&CK
CAR
Question 6 (1 point)
How can previous incident reports provide intelligence data when
operationalizing MITRE ATT&CK?
Question 6 options:
By providing an analytical model for the blue team
By providing a scope of work during purple teaming exercises
By mapping the behaviors to tactics and technique
By providing the red team with a template