Loading course title...
Loading assessment title...
Connecting to LMS...
Progress: in progress
Assessment
1. What is the Cyber Kill Chain mainly used for in defensive security?
A. Replacing every security tool
B. Guaranteeing that every attack will be stopped
C. Understanding intrusion progression and identifying defensive opportunities
D. Teaching offensive payload development
2. Which stage focuses on information gathering before later activity?
A. Reconnaissance
B. Installation
C. Actions on Objectives
D. Command and Control
3. Which list contains the seven traditional Cyber Kill Chain stages?
A. Govern, Map, Measure, Manage, Recover, Audit, Certify
B. Build, Test, Ship, Monitor, Patch, Retire, Archive
C. Plan, Scan, Score, Block, Encrypt, Delete, Report
D. Reconnaissance, Weaponization, Delivery, Exploitation, Installation, Command and Control, Actions on Objectives
4. What is the defensive value of mapping activity to Kill Chain stages?
A. It proves attribution automatically
B. It helps organize evidence, identify gaps, and choose defensive actions
C. It removes the need for telemetry
D. It guarantees every stage is visible
5. What is a safe way to discuss weaponization and delivery in this course?
A. Provide payload construction steps
B. Teach phishing delivery methods
C. Focus on defensive controls such as inbound content controls, reporting, and telemetry
D. Provide evasion examples
6. What kind of telemetry can help with command-and-control detection?
A. Only logo files
B. Only training records
C. Only payroll exports
D. Outbound network, DNS, proxy, endpoint, and cloud activity records
7. What is a limitation of the Cyber Kill Chain model?
A. Modern attacks may be nonlinear, compressed, automated, or hard to observe cleanly
B. It replaces incident response
C. It guarantees full detection coverage
D. It is only useful for physical security
8. Which is the best Cyber Kill Chain operating routine?
A. Assume every alert maps perfectly and stop investigating
B. Define scope, collect evidence, map observed behavior carefully, document confidence, identify gaps, and improve defenses
C. Treat the model as a mandatory compliance checklist
D. Use the model to avoid analyst judgment
Submit Quiz
Previous