During the process of threat intelligence analysis, John, a threat analyst, successfully extracted an indication of adversary's information, such as Modus operandi, tools, communication channels, and forensics evasion strategies used by adversaries.
Identify the type of threat intelligence analysis is performed by John.
Tactical threat intelligence analysis focuses on the immediate, technical indicators of threats, such as the tactics, techniques, and procedures (TTPs) used by adversaries, their communication channels, the tools and software they utilize, and their strategies for evading forensic analysis. This type of analysis is crucial for operational defenses and is used by security teams to adjust their defenses against current threats. Since John successfully extracted information related to the adversaries' modus operandi, tools, communication channels, and evasion strategies, he is performing tactical threat intelligence analysis. This differs from strategic and operational threat intelligence, which focus on broader trends and specific operations, respectively, and from technical threat intelligence, which deals with technical indicators like malware signatures and IPs. Reference:
'Tactical Cyber Intelligence,' by Cyber Threat Intelligence Network, Inc.
'Intelligence-Driven Incident Response: Outwitting the Adversary,' by Scott J. Roberts and Rebekah Brown
Jerilyn
5 months agoGeorgeanna
6 months agoShantell
6 months agoRyan
6 months agoRebecka
6 months agoMariann
6 months agoTalia
7 months agoSherly
7 months agoRonnie
7 months agoVal
7 months agoFausto
7 months agoLawanda
8 months agoMozell
8 months agoChanel
10 months agoChantell
10 months agoJoana
10 months agoOlene
10 months agoArdella
10 months agoPage
8 months agoJeanice
9 months agoEvangelina
10 months agoDaren
10 months agoValentine
10 months agoHillary
10 months agoAfton
9 months agoQuentin
10 months ago