adplus-dvertising
frame-decoration

Question

How do threat hunting and penetration testing differ in their approach?

a.

Threat hunters search for artifacts of a successful attack, while penetration testers evaluate security controls.

b.

Threat hunters focus on testing security controls, while penetration testers search for evidence of successful attacks.

c.

Threat hunters and penetration testers have the same approach and goals.

d.

Threat hunters only conduct postmortem analysis, while penetration testers actively search for vulnerabilities.

Answer: (a).Threat hunters search for artifacts of a successful attack, while penetration testers evaluate security controls. Explanation:Threat hunters search for artifacts of a successful attack, while penetration testers evaluate security controls.

Engage with the Community - Add Your Comment

Confused About the Answer? Ask for Details Here.

Know the Explanation? Add it Here.

Q. How do threat hunting and penetration testing differ in their approach?

Similar Questions

Discover Related MCQs

Q. What cybersecurity philosophy does threat hunting build on?

Q. When threat hunters discover a potential compromise, what is their next course of action?

Q. According to PCI DSS, what is one of the requirements for penetration testing methodology?

Q. What is included in the scope of penetration tests according to PCI DSS?

Q. What is the frequency requirement for external penetration testing according to PCI DSS?

Q. What are the two major benefits of using internal teams for penetration testing?

Q. What are the primary disadvantages of using internal teams for penetration testing?

Q. What is important if an organization chooses to use an internal penetration testing team?

Q. What benefit do external penetration testing teams generally bring?

Q. What is the significance of conducting periodic penetration tests?

Q. For what reason are periodic penetration tests considered necessary?

Q. Why is it important to rotate team members in penetration testing?

Q. What is the primary focus of the Information Gathering and Vulnerability Scanning stage in the penetration testing process?

Q. What is the Cyber Kill Chain model?

Q. How many stages are there in the Cyber Kill Chain model?

Q. What is the equivalent phase in the penetration testing process to the Cyber Kill Chain's "Reconnaissance" phase?

Q. What is the purpose of the "Weaponization" phase in the Cyber Kill Chain?

Q. What happens during the "Delivery" phase in the Cyber Kill Chain?

Q. What is the objective of the "Installation" phase in the Cyber Kill Chain?

Q. What is the purpose of the "Command and Control" stage in a cyber attack?