Security Term

Threat Intelligence

Evidence-based knowledge about cyber threats, including context, mechanisms, indicators of compromise, and actionable recommendations.

What is Threat Intelligence?

Threat intelligence is collected from security vendors, government agencies (CISA, CERT), dark web monitoring, and open-source feeds. It informs patching priorities, detection rule tuning, and incident response. Formats such as STIX and TAXII enable automated sharing of threat data between organizations.

Understanding this concept is crucial for maintaining a robust security posture. In the context of modern cyber threats, threat intelligence represents a significant area of focus for security professionals and organizations alike.