EC-Council CTIA Module 3.6 Practice Test 002

This practice test covers Module 3 (Planning, Direction, and Review) Sub-module 6 (Threat Intelligence Sharing).

These questions are inspired by the EC-Council CTIA exam and are designed to help you test your knowledge of cyber threat intelligence, threats and frameworks, and other related topics. Some questions require multiple correct answers.

These are not official exam questions or brain dumps. They are original scenario-based questions created to reflect the skills and knowledge tested in the CTIA exam.

Note: CTIA is a registered trademark of EC-Council. This content is not affiliated with or endorsed by EC-Council.

To choose CTIA practice tests based on specific modules and sub-modules, click that link

EC-Council CTIA Module 3.6 Practice Test 002
10 questions • Single best answer
Question 1
A regional energy utility joins an industry consortium to exchange adversary data with peer organizations facing similar attackers. Leadership asks what core advantage this collaboration provides. What is the primary benefit?
    Question 2
    A CTI program manager is mapping which external entities to exchange intelligence with. The options include vendors, government bodies, and industry peers. Which type describes same-sector organizations collaborating through a trusted member group?
      Question 3
      An analyst designs how intelligence will flow among consortium members. In one arrangement, a central organization collects data and redistributes it to all participants. Which sharing model is this?
        Question 4
        A SOC team receives shared intelligence marked to restrict redistribution beyond their organization. They must determine handling rules before circulating it internally. Which protocol governs this color-based marking?
          Question 5
          A financial institution wants to automate exchange of structured indicators with partners using a machine-readable format and a transport mechanism. The team needs recognized standards for both. Which pairing enables this?
            Question 6
            Before two organizations begin exchanging intelligence, legal teams require a document defining confidentiality, permitted use, and liability. Nothing is released until it is signed. Which agreement must be established first?
              Question 7
              Organizations across several unrelated sectors form a voluntary collaborative to exchange threat data without being tied to one industry. Leadership wants to label this structure accurately. Which entity type describes it?
                Question 8
                An organization both contributes its own findings and receives intelligence from partners in a reciprocal relationship. One partner, however, only takes intelligence and never gives back. Which role describes that partner?
                  Question 9
                  A CTI team hesitates to share internal incident data externally, fearing exposure of sensitive information and reputational harm. Management asks what typically blocks broader collaboration. Which factor is most often responsible?
                    Question 10
                    An intelligence manager prepares to distribute high-level adversary trend information meant to guide executive decision-making rather than immediate technical defense. The audience is the leadership board. Which type of intelligence is this?

                      Leave a Comment

                      Your email address will not be published. Required fields are marked *

                      Scroll to Top