CompTIA CySA+ (CS0-002) — Question 7
A cybersecurity analyst is supporting an incident response effort via threat intelligence. Which of the following is the analyst MOST likely executing?
Answer options
- A. Requirements analysis and collection planning
- B. Containment and eradication
- C. Recovery and post-incident review
- D. Indicator enrichment and research pivoting
Correct answer: D
Explanation
The correct answer is D, as indicator enrichment and research pivoting involve utilizing threat intelligence to enhance understanding of the threat landscape. Options A, B, and C pertain to other phases of incident response that do not focus specifically on leveraging threat intelligence.