CHAPTER 1

The Importance of Threat Data and Intelligence

This chapter includes questions on the following topics:

•  The foundations of threat intelligence

•  Common intelligence sources and the intelligence cycle

•  Effective use of indicators of compromise

•  Information sharing best practices

We discovered in our research that insider threats are not viewed as seriously as external threats, like a cyberattack. But when companies had an insider threat, in general, they were much more costly than external incidents. This was largely because the insider that is smart has the skills to hide the crime, for months, for years, sometimes forever.

–Dr. Larry Ponemon

Threat actors are taking advantage of technology proliferation and utilizing ...

Get CompTIA CySA+ Cybersecurity Analyst Certification Practice Exams (Exam CS0-002), 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.