Question: MITRE ATT&CK has been adopted by several different security tools, including SIEMs, EDR, firewalls, IDS / IPS , threat intelligence, and many others. Find a
MITRE ATT&CK has been adopted by several different security tools, including SIEMs, EDR, firewalls, IDS
IPS
threat intelligence, and many others. Find a tool that uses MITRE ATT&CK and then answer the following questions:
Describe how the tool integrates MITRE ATT&CK into its functionality and how this improves its use.
What are the benefits of using MITRE ATT&CK
Are there any drawbacks?
Should any additional MITRE frameworks be integrated?
Due to the variety of technologies that ATT&CK covers and the limited functionality of some security tools, your chosen tool might not include all MITRE ATT&CK tactics or techniques. In your responses to this topic, speculate which tactics or techniques the tool may cover and why the scope might be limited to only a subset of the entire MITRE ATT&CK framework. For sources like threat intelligence, speculate which techniques might be seen in the threat feeds most often.
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
