Understanding and adapting ICD 203 to CTI
The ICDs are guidelines and tradecraft standards developed by the US government to oversee intelligence operations (https://bit.ly/2NMkjDz). There are several standards in the ICD sets that tackle different aspects of cyber intelligence. This section looks at how ICD 203 can be adapted to CTI processes and analytics. ICD 203 is a threat intelligence analytic standard that manages the production and assessment of intelligence products and programs. The standard describes the analyst's responsibility to produce great intelligence. Because we cannot paste the entire standard guidelines in this section, we will highlight some key elements that can be useful for CTI analysts worldwide (not just US citizens). The whole document can be downloaded from the link at https://bit.ly/2YxFThe. The ICD can be adapted to threat intelligence using the following guidelines:
- Integrating intelligence in each analytic product by considering the organization...