Splunk Enterprise Security Certified Admin — Question 28
Which of the following threat intelligence types can ES download? (Choose all that apply.)
Answer options
- A. Text
- B. STIX/TAXII
- C. VulnScanSPL
- D. SplunkEnterpriseThreatGenerator
Correct answer: B
Explanation
The correct answer is B, as STIX/TAXII is a recognized format for sharing threat intelligence that ES can download. The other options, while relevant to security and threat analysis, do not represent formats or types that ES is designed to download.