Unit of Competency
Gather, analyse and interpret threat data
Unit Code: ICTCYS407
Summary
This unit describes the skills and knowledge required to research, gather, analyse, and interpret cyber security threat intelligence data to provide timely and actionable reports.
Key Topics & Core Skills
- Fundamentals of Threat Intelligence (TI) frameworks and standards.
- Identifying and evaluating diverse threat data sources (open-source, commercial feeds, dark web).
- Applying analytical techniques to raw data (e.g., pivoting, correlation, hypothesis testing).
- Utilising threat intelligence platforms (TIPs) and security information and event management (SIEM) tools.
- Interpreting Indicators of Compromise (IOCs), Tactics, Techniques, and Procedures (TTPs).
- Developing intelligence products (reports, briefings) suitable for technical and non-technical audiences.