Review questions
Answer the following questions to check your knowledge of this chapter:
- (True or false) Cyber threat hunting is reactive in nature.
- The NIST incident response life cycle is made up of which four stages?
- Preparation, Detection and Analysis, Re-Baselining Systems, Policy Alignment
- Planning, Preparation, Detection, Recovery
- Preparation, Detection and Analysis, Containment, Eradication, and Recovery, Post-Incident Activity
- Planning, Detection, Containment, Post-Incident Activity
- Threat hunting is mainly a part of which phase of the NIST incident response life cycle?
- (True or false) Threat hunting is unique to cyber defense.
- (Insert the correct answer) Steady-state defenses such as incident response will normally want low ______ _______ rates. Threat hunters will normally want high ______ ______ rates.
- False positive
- True positive
- False negative
- True negative