300-220 CBRTHD: Conducting Threat Hunting and Defending using Cisco Technologies for Cybersecurity
By Cisco · Question Mode
QuestionQ23
Threat Hunting Techniques
The SOC team receives threat intelligence about a new ransomware variant spreading across businesses. After validating existing suspicious-email use cases, the team creates a new use case using known indicators of compromise for that specific ransomware variant. The focus is on detecting the ransomware attack during its execution phase.
What should be monitored?
Community Discussion
No comments yet. Be the first to start the discussion!
Community Discussion