Match each threat intelligence concept on the left with its primary operational role within an enterprise security framework on the right.
- STIX / TAXII ProtocolsStandardized machine-readable format and transport mechanism for automated ingestion of indicator data.
- Information Sharing and Analysis Center (ISAC)Sector-specific trust community facilitating peer-to-peer threat information sharing among critical infrastructure organizations.
- Open-Source Intelligence (OSINT)Publicly accessible information gathered from open web resources, code repositories, and public vulnerability registries.
- Commercial Threat Intelligence FeedSubscription-based curated intelligence service providing validated threat actor attribution and high-fidelity indicators.
Answer
STIX / TAXII Protocols pairs with standardized machine-readable format and transport mechanism; ISAC pairs with sector-specific trust community for peer sharing; OSINT pairs with publicly accessible information gathered from open web resources; Commercial Threat Intelligence Feed pairs with subscription-based curated intelligence service.
Each concept correctly maps to its functional definition in security operations: STIX/TAXII provides standardized machine-readable data formatting and transport; ISAC serves as a peer-to-peer industry trust community; OSINT refers to publicly available intelligence gathered from open sources; and Commercial Threat Intelligence Feeds deliver curated, proprietary subscription-based threat data.
Step-by-Step Solution
Key Concept
Threat Intelligence Sources and Information Sharing Protocols