Skip to main content

Annex B. Areas of Analysis

No: 43065348 Date(g): 27/2/2022 | Date(h): 26/7/1443 Status: In-Force
Member Organizations should develop threat intelligence requirements based on different areas of analysis which are relevant to their business priorities. These areas of analysis may vary depending on Member Organizations including but not limited to: 
 
  •  
Geopolitics: this includes requirements to identify geopolitical events that might determine a cybersecurity attack within the scope of analysis, such as large global campaigns carried out by threat actors, significant past relevant cybersecurity incidents, etc.
 
  •  
Threat actor: this includes requirements to identify the main threat actors on which the organization should be particularly focused on.
 
  •  
Threat vectors: this includes requirements to identify relevant attack techniques (e.g. initial access vectors, etc.).
 
  •  
Technology: this includes requirements to evaluate possible attacks against technologies that the organisation rely upon.
 
  •  
Industry: this includes requirements to identify possible attacks against industries relevant to the organization (e.g. third parties in the supply chain or national critical infrastructure).