IBM Cybersecurity Analyst Professional Certificate • STUDY MODE
PRACTICE QUIZ
QUESTION 1 OF 30
Which three (3) of these were among the top 5 security drivers in 2019? (Select 3)
A
New security and privacy laws that went into effect in 2019
B
Human error accounting for the majority of security breachesCorrect Answer
C
The number of breached records in 2019 more than 3 times that of 2018Correct Answer
D
IOT device attacks moving from targeting consumer electronics to targeting enterprise devicesCorrect Answer
QUESTION 2 OF 30
What was the average cost of a data breach in 2019 in US dollars?
A
$262K
B
$3.92MCorrect Answer
C
$42.7M
D
$237M
QUESTION 3 OF 30
What was the average size of a data breach in 2019?
A
5,270 records
B
25,575 recordsCorrect Answer
C
362,525 records
D
1,221,750 records
E
100,535,220 records
QUESTION 4 OF 30
According to the Threat Intelligence Strategy Map, The threat intelligence process can be broken down into 4 steps: Collect, Process, Analyze, and Share. Which step would contain activities such as gathering data from internal, external, technical and human sources?
A
CollectCorrect Answer
B
Process
C
Analyze
D
Share
QUESTION 5 OF 30
Crowdstrike organizes threat intelligence into which three (3) areas? (Select 3)
A
TacticalCorrect Answer
B
Control
C
StrategicCorrect Answer
D
OperationalCorrect Answer
QUESTION 6 OF 30
According to the Crowdstrike model, Endpoints, SIEMs and Firewalls belong in which intelligence area?
A
Control
B
Strategic
C
Operational
D
TacticalCorrect Answer
QUESTION 7 OF 30
Which three (3) sources are recommended reading for any cybersecurity professional? (Select 3)
A
DarkReadingCorrect Answer
B
BleepingComputerCorrect Answer
C
Journal of the American Association of Cybersecurity Professionals
D
Trend MicroCorrect Answer
QUESTION 8 OF 30
Which two (2) of these were among the 4 threat intelligence platforms covered in the Threat Intelligence Platforms video? (Select 2)
THREAT INTELLIGENCE FRAMEWORK KNOWLEDGE CHECK
A
Recorded FutureCorrect Answer
B
FireEyeCorrect Answer
C
MS RapidDeploy
D
IBM Resilient
QUESTION 9 OF 30
True or False. The average enterprise has 85 different security tools from 45 vendors.
A
TrueCorrect Answer
B
False
QUESTION 10 OF 30
Which threat intelligence framework can be described as a system that is effective if there are only 2 players and the adversary is motivated by socioeconomic or sociopolitical payoffs?
A
Mitre Att&ck Knowledgebase
B
Diamond Model of Intrusion AnalysisCorrect Answer
C
Cyber Threat Framework
D
Lockheed Martin Cyber Kill Chain
QUESTION 11 OF 30
True or False. An organization)s security immune system should not be considered fully integrated until it is integrated with the extended partner ecosystem.
A
TrueCorrect Answer
B
False
QUESTION 12 OF 30
Which term can be defined as "The real-time collection, normalization, and analysis of the data generated by users, applications, and infrastructure that impacts the IT security and risk posture of an enterprise"?
A
Security IntelligenceCorrect Answer
B
Cybersecurity
C
Security Analytics
D
Threat Intelligence
QUESTION 13 OF 30
What are the three (3) pillars of effective threat detection? (Select 3)
A
Automate intelligenceCorrect Answer
B
Analyze everything
C
See everythingCorrect Answer
D
Become proactive
QUESTION 14 OF 30
True or False. According to the FireEye Mandiant)s Security Effectiveness Report 2020, organizations have an average of 50-70 security tools in their IT environments.
THREAT INTELLIGENCE GRADED ASSESSMENT
A
TrueCorrect Answer
B
False
QUESTION 15 OF 30
What was the average time to identify and contain a breach in 2019?
A
12 hours
B
7 days
C
46 days
D
279 daysCorrect Answer
QUESTION 16 OF 30
Which industry had the highest average cost per breach in 2019 at $6.45M
A
Manufacturing
B
Finance
C
Government
D
HealthcareCorrect Answer
E
Technology
F
Retail
QUESTION 17 OF 30
Breaches caused by which source resulted in the highest cost per incident in 2019?
A
Employee or contractor negligence
B
Credentials theftCorrect Answer
C
Criminal insider
D
Politically motivated hactivists
QUESTION 18 OF 30
According to the Threat Intelligence Strategy Map, The threat intelligence process can be broken down into 4 steps: Collect, Process, Analyze, and Share. Which step would contain activities such as normalize, correlate, confirm and enrich the data?
A
Collect
B
ProcessCorrect Answer
C
Analyze
D
Share
QUESTION 19 OF 30
According to the Threat Intelligence Strategy Map, The threat intelligence process can be broken down into 4 steps: Collect, Process, Analyze, and Share. Which step would contain activities such as investigate, contain, remediate and prioritize?
A
Collect
B
Process
C
AnalyzeCorrect Answer
D
Share
QUESTION 20 OF 30
According to the Crowdstrike model, threat hunters, vulnerability management and incident response belong in which intelligence area?
A
OperationalCorrect Answer
B
Control
C
Tactical
D
Strategic
QUESTION 21 OF 30
Which two (2) of these were among the 4 threat intelligence platforms covered in the Threat Intelligence Platforms video? (Select 2)
A
AVG Ultimate
B
BigFix
C
IBM X-Force ExchangeCorrect Answer
D
TruSTARCorrect Answer
QUESTION 22 OF 30
Which threat intelligence framework is divided into 3 levels. Level 1 is getting to know your adversaries. Level 2 involves mapping intelligence yourself and level 3 where you map more information and use that to plan your defense?
A
Lockheed Martin Cyber Kill Chain
B
Diamond Model of Intrusion Analysis
C
Cyber Threat Framework
D
Mitre Att&ck KnowledgebaseCorrect Answer
QUESTION 23 OF 30
True or False. An organization)s security immune system should be isolated from outside organizations, including vendors and other third-parties to keep it from being compromised.
A
True
B
FalseCorrect Answer
QUESTION 24 OF 30
Activities performed as a part of security intelligence can be divided into pre-exploit and post-exploit activities. Which two (2) of these are pre-exploit activities? (Select 2)
A
Prioritize vulnerabilities to optimize remediation processes and close critical exposuresCorrect Answer
B
Detect deviations from the norm that indicate early warnings of APTsCorrect Answer
C
Gather full situational awareness through advanced security analytics
D
Perform forensic investigation
QUESTION 25 OF 30
True or False. According to the FireEye Mandiant)s Security Effectiveness Report 2020, more that 50% of successful attacks are able to infiltrate without detection.
A
TrueCorrect Answer
B
False
QUESTION 26 OF 30
True or False. An organization’s security immune system should not be considered fully integrated until it is integrated with the extended partner ecosystem.
A
TrueCorrect Answer
B
False
QUESTION 27 OF 30
Which term can be defined as “The real-time collection, normalization, and analysis of the data generated by users, applications, and infrastructure that impacts the IT security and risk posture of an enterprise”?
A
Security IntelligenceCorrect Answer
B
Cybersecurity
C
Security Analytics
D
Threat Intelligence
QUESTION 28 OF 30
True or False. According to the FireEye Mandiant’s Security Effectiveness Report 2020, organizations have an average of 50-70 security tools in their IT environments.
A
TrueCorrect Answer
B
False
QUESTION 29 OF 30
True or False. An organization’s security immune system should be isolated from outside organizations, including vendors and other third-parties to keep it from being compromised.
A
True
B
FalseCorrect Answer
QUESTION 30 OF 30
True or False. According to the FireEye Mandiant’s Security Effectiveness Report 2020, more that 50% of successful attacks are able to infiltrate without detection.
A
TrueCorrect Answer
B
False
C
Google Advanced Data Analytics
D
Google Cybersecurity Professional Certificate
E
Meta Marketing Analytics Professional Certificate
F
Google Digital Marketing & E-commerce Professional Certificate
G
Google UX Design Professional Certificate
H
Meta Social Media Marketing Professional Certificate
I
Google Project Management Professional Certificate
J
Meta Front-End Developer Professional Certificate
Ready to test your recall?
Which three (3) of these were among the top 5 security drivers in 2019? (Select 3)
💡Select all 3 correct answers before submitting (0 of 3 selected).
A
New security and privacy laws that went into effect in 2019
B
Human error accounting for the majority of security breaches
C
The number of breached records in 2019 more than 3 times that of 2018
D
IOT device attacks moving from targeting consumer electronics to targeting enterprise devices