CREST CPTIA 試験概要:
| 認定ベンダー: | CREST |
|---|---|
| 試験名: | CREST Practitioner Threat Intelligence Analyst (CPTIA) 試験 |
| 試験番号: | CPTIA |
| 試験形式: | 記述式分析およびレポート作成タスク, 実践的なシナリオベースのアセスメント, 選択式問題(実施形式により異なる) |
| 関連資格: | CREST Certified Threat Intelligence Analyst (CCTIA) CREST Registered Threat Intelligence Analyst (CRTIA) |
| 対応言語: | 英語 |
| 推奨トレーニング: | CREST Practitioner Threat Intelligence トレーニングプロバイダー |
| 受験申し込み: | CREST公式サイト |
| サンプル問題: | CREST CPTIA サンプル問題 |
| 受験方法: | 通常、地域やプロバイダーの取り決めに従い、CREST認定の試験センターまたは認定されたリモートプロクタープロバイダーを通じて、監視付きアセスメントとして実施されます。 |
| 前提条件: | 厳格な必須前提条件はありませんが、サイバーセキュリティ、インシデント対応、またはスレットインテリジェンスにおける実務経験が強く推奨されます。 |
| 公式シラバスのURL: | https://www.crest-approved.org/ |
CREST CPTIA 試験シラバストピック:
| セクション | 目標 |
|---|---|
| データ収集と情報源 | - OSINTと技術的収集
|
| レポート作成と配布 | - インテリジェンスレポート
|
| スレットインテリジェンスの基礎 | - スレットインテリジェンスの種類
|
| 法的、倫理的、および運用上の考慮事項 | - 法規とコンプライアンス
|
| 脅威分析とフレームワーク | - 分析手法
|
CREST Practitioner Threat Intelligence Analyst 認定 CPTIA 試験問題:
問題 #1
Employee monitoring tools are mostly used by employers to find which of the following?
A. Lost registry keys
B. Stolen credentials
C. Malicious insider threats
D. Conspiracies
問題 #2
ABC is a well-established cyber-security company in the United States. The organization implemented the automation of tasks such as data enrichment and indicator aggregation. They also joined various communities to increase their knowledge about the emerging threats. However, the security teams can only detect and prevent identified threats in a reactive approach.
Based on threat intelligence maturity model, identify the level of ABC to know the stage at which the organization stands with its security and vulnerabilities.
A. Level 3: CTI program in place
B. Level 0: vague where to start
C. Level 1: preparing for CTI
D. Level 2: increasing CTI capabilities
問題 #3
Tyrion, a professional hacker, is targeting an organization to steal confidential information. He wants to perform website footprinting to obtain the following information, which is hidden in the web page header.
Connection status and content type
Accept-ranges and last-modified information
X-powered-by information
Web server in use and its version
Which of the following tools should the Tyrion use to view header content?
A. AutoShun
B. Burp suite
C. Vanguard enforcer
D. Hydra
問題 #4
An attack on a network is BEST blocked using which of the following?
A. Load balancer
B. IPS device inline
C. Web proxy
D. HIPS
問題 #5
Which of the following port scanning techniques involves resetting the TCP connection between client and server abruptly before completion of the three-way handshake signals, making the connection half-open?
A. Xmas scan
B. Stealth scan
C. Null scan
D. Full connect scan
解説:
| 問題 #1 正解: C | 問題 #2 正解: A | 問題 #3 正解: B | 問題 #4 正解: B | 問題 #5 正解: B |














788 お客様のコメント
品質保証JPexamはIT認定試験のシラバスに従って、試験問題の範囲を正確に絞って、的中率が99%の最新問題集を捧げます。
1年間の無料更新サービスJPexamは1年以内に問題集の無料更新サービスを提供し、お客様がいつでも最新版の問題集を持つことを保証いたします。もし試験の内容が変更されたら、弊社は直ちにお客様にお知らせします。それに、弊社の問題集が更新されたら、早速メールで最新バージョンを送付いたします。
全額返金JPexamの問題集を利用すると、短時間で勉強しても試験に合格できるのを保証いたします。試験に不合格になってしまった場合、弊社は全額返金いたします。(
ご購入前のお試しJPexamは問題集のサンプルを無料で提供いたします。ご購入前にサンプルを試用して製品の品質を確認することができます。ご遠慮なく利用してください。
