Q: 13
[Security Architecture]
A company wants to invest in research capabilities with the goal to operationalize the research
output. Which of the following is the best option for a security architect to recommend?
Options
Discussion
Had something like this in a mock. B is the only one that actually lets you automate and use research results for defense, so it fits the "operationalize" part. Open to being corrected but pretty confident here.
Seen exam reports where D gets picked, but B is the only choice that really lets you automate research outputs efficiently. B
Not totally sure, but I think B is right here. Feels like threat intel platforms make it easier to turn research into something actionable for ops teams. Anyone else see it differently?
D imo, since continuous adversary emulation sounds like active research but maybe that's a trap here.
Official materials and labs usually stress B for this kind of operational research scenario. B
Its B, official guide and practice exams both point to threat intelligence platforms for research you can actually use.
I remember a similar question where D looked tempting, but continuous emulation doesn't really operationalize research findings like B does. B
Be respectful. No spam.