CTI Fundamentals Flashcards

(25 cards)

1
Q

What is the primary purpose of Cyber Threat Intelligence (CTI)?

A

To enable organizations to understand, predict, and adapt to cyber threats.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Name the four key components of CTI.

A

Threat actors, Tactics Techniques and Procedures (TTPs), Indicators of Compromise (IoCs), Vulnerabilities and exploits.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

How does CTI align with Amazon’s ‘Think Big’ principle?

A

It involves looking ‘around corners’ for future threats and opportunities, considering long-term trends and high-level implications.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What is the focus of Strategic Analysis in CTI?

A

Long-term trends and high-level implications of cyber threats.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How does Operational Analysis in CTI relate to Amazon’s ‘Dive Deep’ principle?

A

It requires diving deep into details of campaign tracking and threat actor profiling while maintaining a broader perspective.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the primary focus of Tactical Analysis in CTI?

A

Short-term, technical focus on specific threats and indicators.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

How does Tactical Analysis embody Amazon’s ‘Bias for Action’ principle?

A

It emphasizes quick response to immediate threats.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is the Diamond Model in CTI?

A

A framework that analyzes relationships between adversaries, capabilities, infrastructure, and victims.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

How does the Kill Chain Analysis support Amazon’s ‘Insist on the Highest Standards’?

A

It helps identify gaps in defenses by mapping threat activities to stages of an attack lifecycle.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

How does CTI at Amazon need to account for scale and complexity?

A

It must consider Amazon’s massive scale and diverse operations, requiring innovative approaches.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How does a customer-centric approach in CTI align with Amazon’s principles?

A

All CTI efforts should ultimately tie back to customer protection and trust, embodying ‘Customer Obsession’.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

How does CTI leverage Amazon’s ‘Are Right, A Lot’ principle?

A

By using data-driven decision making, leveraging vast data resources for threat analysis.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How does CTI reflect Amazon’s ‘Learn and Be Curious’ principle?

A

It requires staying updated on evolving threats and techniques, reflecting continuous learning.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What CTI practice aligns with Amazon’s ‘Earn Trust’ principle?

A

Collaborating across teams to share insights and improve overall security posture.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

How does CTI embody Amazon’s ‘Frugality’ principle?

A

By developing processes that are both effective and resource-efficient.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is threat modeling in CTI?

A

The process of identifying and prioritizing potential threats to an organization’s assets.

17
Q

How does intelligence production in CTI align with Amazon’s practices?

A

It focuses on creating actionable reports for various stakeholders, using ‘working backwards’ documents to clarify threat scenarios.

18
Q

How does CTI support Amazon’s ‘Bias for Action’ in security operations?

A

By ensuring CTI insights are operationalized effectively for quick threat response.

19
Q

How does CTI align with Amazon’s ‘Deliver Results’ principle?

A

By developing KPIs to measure CTI program effectiveness, focusing on tangible outcomes.

20
Q

How does CTI reflect Amazon’s ‘Success and Scale Bring Broad Responsibility’?

A

By balancing security needs with privacy and ethical concerns in intelligence gathering and use.

21
Q

What is the significance of ‘working backwards’ in Amazon’s approach to CTI?

A

It ensures that CTI efforts start with customer needs and work backwards to define necessary actions and capabilities.

22
Q

How does Amazon’s narrative format influence CTI reporting?

A

CTI reports should be written in a clear, detailed narrative style rather than bullet points or slides.

23
Q

How does CTI support Amazon’s ‘Think Big’ principle in security strategy?

A

By considering broad, future impacts and potential threats that could affect Amazon’s diverse operations.

24
Q

How does CTI at Amazon need to balance speed with quality?

A

By rapidly identifying and responding to threats while ensuring accuracy and thoroughness in analysis.

25
How does CTI contribute to Amazon's culture of innovation?
By continuously seeking new methods and technologies to identify and mitigate evolving cyber threats.