1
1

00:00:00,090  -->  00:00:01,440
<v ->In this section of the course,</v>
2

2

00:00:01,440  -->  00:00:03,930
we're going to cover threat intelligence sharing.
3

3

00:00:03,930  -->  00:00:06,720
Our focus in this section is going to be on domain one,
4

4

00:00:06,720  -->  00:00:10,800
security operations, and specifically objective 1.4.
5

5

00:00:10,800  -->  00:00:13,650
Objective 1.4 states that you must be able to compare
6

6

00:00:13,650  -->  00:00:15,150
and contrast threat intelligence
7

7

00:00:15,150  -->  00:00:17,040
and threat hunting concepts.
8

8

00:00:17,040  -->  00:00:19,260
As we move through this section, we're going to start out with
9

9

00:00:19,260  -->  00:00:21,030
an overview of security intelligence
10

10

00:00:21,030  -->  00:00:23,610
and threat intelligence, and then we'll move into
11

11

00:00:23,610  -->  00:00:25,980
the five steps of the intelligence cycle.
12

12

00:00:25,980  -->  00:00:28,560
Next, we're going to talk about the sources of intelligence
13

13

00:00:28,560  -->  00:00:30,330
and the factors that identify the value
14

14

00:00:30,330  -->  00:00:32,700
of threat intelligence, such as its timeliness,
15

15

00:00:32,700  -->  00:00:35,850
relevancy, accuracy, and confidence level.
16

16

00:00:35,850  -->  00:00:37,860
Then we're going to talk about the value of public
17

17

00:00:37,860  -->  00:00:39,600
and private partnerships that allows
18

18

00:00:39,600  -->  00:00:41,970
for greater dissemination of sector specific threat
19

19

00:00:41,970  -->  00:00:44,820
intelligence to all of our different organizations.
20

20

00:00:44,820  -->  00:00:46,950
After that, we're going to describe the dissemination
21

21

00:00:46,950  -->  00:00:49,140
of threat information to support risk management
22

22

00:00:49,140  -->  00:00:50,970
and our security engineering,
23

23

00:00:50,970  -->  00:00:53,790
incident response, vulnerability management and detection
24

24

00:00:53,790  -->  00:00:56,820
and monitoring functions within our own organizations.
25

25

00:00:56,820  -->  00:00:59,010
Finally, we're going to take a short quiz to see what
26

26

00:00:59,010  -->  00:01:00,690
you learned during this section of the course
27

27

00:01:00,690  -->  00:01:02,820
and review each of those quiz questions fully,
28

28

00:01:02,820  -->  00:01:04,680
to ensure that you can explain why the right answers
29

29

00:01:04,680  -->  00:01:05,550
were right.
30

30

00:01:05,550  -->  00:01:07,950
So, let's get started with exploring the concepts
31

31

00:01:07,950  -->  00:01:09,420
around threat intelligence sharing
32

32

00:01:09,420  -->  00:01:10,920
in this section of the course.
