A cleared defense contractor employee clicks a link in an email that downloads malware from a foreign intelligence entity onto the contractor's IT system. This is an example of:

Master the Threat Awareness and Reporting Program (TARP) Exam. Use quizzes and flashcards with explanations and hints. Enhance your understanding now!

Multiple Choice

A cleared defense contractor employee clicks a link in an email that downloads malware from a foreign intelligence entity onto the contractor's IT system. This is an example of:

Explanation:
This scenario centers on how a foreign power exploits a trusted, inside person to gain access. The employee is cleared and inside the network, and their action of clicking a link lets malware from the foreign intelligence entity onto the system. The adversary doesn’t attack from outside alone; they rely on an insider to establish a foothold and enable the intrusion. That’s why this is best described as foreign intelligence entity use of insiders. It’s not just a phishing attempt aimed at external targets, and it isn’t simply an external malware attack without an insider facilitating it, nor insider fraud driven by personal gain.

This scenario centers on how a foreign power exploits a trusted, inside person to gain access. The employee is cleared and inside the network, and their action of clicking a link lets malware from the foreign intelligence entity onto the system. The adversary doesn’t attack from outside alone; they rely on an insider to establish a foothold and enable the intrusion. That’s why this is best described as foreign intelligence entity use of insiders. It’s not just a phishing attempt aimed at external targets, and it isn’t simply an external malware attack without an insider facilitating it, nor insider fraud driven by personal gain.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy