🃏 CySA+ Flashcards

Test your cybersecurity analyst skills.

About This Flashcard Deck

This flashcard deck contains 10 cards covering key CySA+ concepts for the CYSA exam. Test your cybersecurity analyst skills. Use active recall by attempting to answer each question before revealing the answer.

Card 1 of 10

Question

What is STIX?

Click to reveal answer

Answer

Structured Threat Information eXpression — standardized language for sharing cyber threat intelligence (JSON format).

Click to flip back

All CySA+ Flashcards

1

Q: What is STIX?

A: Structured Threat Information eXpression — standardized language for sharing cyber threat intelligence (JSON format).

2

Q: What is TAXII?

A: Trusted Automated eXchange of Intelligence Information — transport protocol for sharing threat intelligence (STIX data).

3

Q: What is CVSS?

A: Common Vulnerability Scoring System — 0-10 scale rating severity. Base (intrinsic), Temporal (time-based), Environmental (organizational context).

4

Q: What is the IR lifecycle?

A: Preparation → Detection & Analysis → Containment → Eradication → Recovery → Post-Incident Activity (Lessons Learned).

5

Q: What is threat hunting?

A: Proactive search for threats not detected by automated tools. Hypothesis-driven, uses IOCs and TTPs.

6

Q: What is chain of custody?

A: Documentation tracking evidence handling from collection to court. Who had it, when, what was done. Essential for legal proceedings.

7

Q: What is a false positive?

A: An alert that incorrectly identifies benign activity as malicious. High false positives cause alert fatigue.

8

Q: What is SOAR?

A: Security Orchestration, Automation, and Response — automates repetitive security tasks and incident response workflows.

9

Q: What is an IOC?

A: Indicator of Compromise — artifact (IP, hash, domain, pattern) suggesting a system may be compromised.

10

Q: What is MITRE ATT&CK?

A: Knowledge base of adversary tactics, techniques, and procedures (TTPs). Organized by attack phases. Used for threat modeling and detection.

CompTIA Flashcard Study Technique

CompTIA exams cover broad domains with hundreds of concepts. Use these flashcards in short, focused sessions of 15–20 minutes rather than marathon study sessions. Group cards by domain and track which domains have the lowest recall rates — allocate extra study time to those areas. CompTIA exams weight domains differently, so match your flashcard focus to the domain percentages listed in the exam objectives.

More CYSA Flashcard Decks