T1030
Collect intrusion artifacts (e.g., source code, malware, trojans) and use discovered data to enable mitigation of potential cyber defense incidents within the enterprise.
Work roles that include this task
- CS-531 additional Cyber Defense Incident Responder