A security engineering team is implementing an automated threat intelligence platform to exchange structured cyber threat data with an industry ISAC and ingest machine-readable indicators into internal security tools. Which of the following components specifically define the standardized language for expressing threat data and the automated transport protocol for exchanging it? (Select TWO.)
- STIX (Structured Threat Information eXpression)Cevap
- TAXII (Trusted Automated eXchange of Indicator Information)Cevap
- CCVE (Common Vulnerabilities and Exposures)
- DHoneypot network deployment
- EFirewall access control list (ACL) rules
Cevap
STIX (Structured Threat Information eXpression) and TAXII (Trusted Automated eXchange of Indicator Information)
Structured Threat Information eXpression defines the standardized schema for representing threat intelligence in a consistent machine-readable format, while Trusted Automated eXchange of Indicator Information defines the automated transport protocol for exchanging that intelligence over HTTPS.
Adım Adım Çözüm
Anahtar Kavram
STIX/TAXII Threat Intelligence Standards
Tahmini Süre:1m 30s