CCNP Security 350-701 SCOR Practice Test 6

CCNP Security 350-701 SCOR Practice Test 6 (Hard) - Threat Intelligence Frameworks - STIX/TAXII and Related Concepts

CISCO CCNP Security Exam Logo

1 / 10

What is the primary purpose of the STIX (Structured Threat Information eXpression) standard in cyber threat intelligence?

2 / 10

Which protocol is specifically designed to enable the automated exchange of STIX-formatted threat intelligence between organizations and platforms?

3 / 10

Which threat intelligence framework organizes adversary behavior into a matrix of tactics and techniques based on real-world observed attacker activity, widely used to map detection and defense coverage?

4 / 10

Which type of data object in a STIX-formatted threat intelligence feed would represent a specific observable pattern used to detect malicious activity, such as a known-bad file hash or IP address?

5 / 10

Which operational benefit does consuming a structured, automated threat intelligence feed (via STIX/TAXII) provide over manually reading vendor security blog posts?

6 / 10

Which MITRE ATT&CK concept represents a specific method an adversary uses to achieve a tactical objective, such as 'Phishing' as a way to achieve 'Initial Access'?

7 / 10

Which threat intelligence sharing consideration is most important for an organization consuming intelligence from an external TAXII server before acting on it automatically?

8 / 10

Which STIX relationship object type would be used to express that a specific threat actor is known to use a particular piece of malware?

9 / 10

Which practical challenge is commonly associated with consuming threat intelligence feeds from multiple different providers simultaneously?

10 / 10

Which use of the MITRE ATT&CK framework would most directly help a security operations team identify gaps in their current detection capabilities?

Your score is

The average score is 0%

0%