Cisco CyberOps Associate (CBROPS) 200-201Vulnerability ManagementMedium
An organization is considering implementing a continuous vulnerability management program. Which of the following is a primary benefit of integrating threat intelligence feeds into their vulnerability management process?
- AIt automates the patching of all identified vulnerabilities.
- BIt eliminates the need for regular vulnerability scanning.
- CIt guarantees 100% protection against zero-day attacks.
- DIt provides context on active exploits and attacker methodologies, aiding prioritization.
Show answer & explanationAnswer & explanation
Correct answer: D. It provides context on active exploits and attacker methodologies, aiding prioritization.
Threat intelligence provides crucial context by detailing current threats, active exploits, and attacker tactics, techniques, and procedures (TTPs). This information helps security teams prioritize which vulnerabilities to address first based on the actual likelihood and impact of exploitation.
Why the other options are wrong
- A. Threat intelligence informs prioritization, it does not automate patching.
- B. Threat intelligence complements scanning, it does not replace it.
- C. No security measure guarantees 100% protection, especially against zero-days.
Threat Intelligence Integration
The practice of incorporating actionable information about current and emerging cyber threats into an organization's security operations, including vulnerability management, to make more informed decisions.
- Provides context on attacker TTPs.
- Aids in prioritizing vulnerabilities based on real-world risk.
- Enhances proactive defense strategies.
Memory trick: Intel makes the most critical vulnerabilities visible.