Question 4 of 10Pro Only

Explain the Diamond Model of Intrusion Analysis, including its four core features and how analysts use analytic pivoting to expand their understanding of an intrusion. How does the Diamond Model compare to the Cyber Kill Chain and MITRE ATT&CK framework?

Sample answer preview

The Diamond Model of Intrusion Analysis is a framework designed to help analysts structure their understanding of cyber intrusions by examining the relationships between four core features.

Diamond Modeladversarycapabilityinfrastructurevictimanalytic pivoting

Unlock the full answer

Get the complete model answer, key points, common pitfalls, and access to 9+ more SOC Analyst interview questions.

Upgrade to Pro

Starting at $19/month • Cancel anytime