A cleared defense contractor employee clicks a link in an email that downloads malware from a foreign intelligence entity onto the contractor's IT system. This is an example of:

Enhance your skills for the TARP Exam with comprehensive quizzes, flashcards, and expertly crafted explanations. Prepare efficiently for the test and master threat awareness and reporting.

Multiple Choice

A cleared defense contractor employee clicks a link in an email that downloads malware from a foreign intelligence entity onto the contractor's IT system. This is an example of:

Explanation:
This scenario centers on how a foreign power exploits a trusted, inside person to gain access. The employee is cleared and inside the network, and their action of clicking a link lets malware from the foreign intelligence entity onto the system. The adversary doesn’t attack from outside alone; they rely on an insider to establish a foothold and enable the intrusion. That’s why this is best described as foreign intelligence entity use of insiders. It’s not just a phishing attempt aimed at external targets, and it isn’t simply an external malware attack without an insider facilitating it, nor insider fraud driven by personal gain.

This scenario centers on how a foreign power exploits a trusted, inside person to gain access. The employee is cleared and inside the network, and their action of clicking a link lets malware from the foreign intelligence entity onto the system. The adversary doesn’t attack from outside alone; they rely on an insider to establish a foothold and enable the intrusion. That’s why this is best described as foreign intelligence entity use of insiders. It’s not just a phishing attempt aimed at external targets, and it isn’t simply an external malware attack without an insider facilitating it, nor insider fraud driven by personal gain.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy