CompTIA CySA+ (CS0-003) — Question 202
Which of the following is a benefit of the Diamond Model of Intrusion Analysis?
Answer options
- A. It provides analytical pivoting and identifies knowledge gaps.
- B. It guarantees that the discovered vulnerability will not be exploited again in the future.
- C. It provides concise evidence that can be used in court.
- D. It allows for proactive detection and analysis of attack events.
Correct answer: A
Explanation
The correct answer is A because the Diamond Model emphasizes analytical pivoting, which helps identify knowledge gaps in intrusion analysis. Option B is incorrect as the model does not guarantee that vulnerabilities won't be exploited again. Option C is also incorrect since while it aids analysis, it does not specifically ensure that evidence is court-admissible, and D, while related to detection, does not capture the primary benefit of analytical pivoting.