Question 4 of 10Pro Only

How would you use the MITRE ATT&CK framework to build and mature a threat hunting program? Walk through a practical example of hypothesis-driven hunting using ATT&CK techniques.

Sample answer preview

The MITRE ATT&CK framework is an invaluable resource for building a structured, intelligence-driven threat hunting program. It provides a comprehensive matrix of adversary tactics, techniques, and procedures that serves as both a common language for describing threats and a…

mitre-attackthreat-huntinghypothesis-drivencredential-dumpingdetection-engineeringttp-analysis

Unlock the full answer

Get the complete model answer, key points, common pitfalls, and access to 9+ more Cybersecurity Analyst interview questions.

Upgrade to Pro

Starting at $19/month • Cancel anytime