Question 11
Which National Institute of Standards and Technology (NIST) incident handling phase involves removing malware and persistence mechanisms from a compromised host?
Question 12
Which statement best describes the MITRE ATT&CK framework?
Question 13
Which role does a threat hunter play within a SOC?
Question 14
During a security incident analysis, if an adversary's behavior is identified as 'Credential Dumping', it maps to which MITRE ATT&CK technique?
Question 15
Which three end user logs does FortiAnalyzer use to identify possible IOC compromised hosts? (Choose three.)
