IC34 (IC34 IACS) Questions With Complete Solutions
Define threats phone abilities and consequences
Intelligently designed and apply counter measures such as
network segmentation access controls hardening detection etc. to
reduce risk
Prioritize mitigating activities and resources
Evaluate countermeasures based upon their effectiveness versus
their cost and complexity
Correct Answers Exercise to define identify and classify the
security vulnerabilities and ICS at its related network
infrastructure
critical step in evaluating cyber risk
Evaluate the I CS design implementation configuration as well
as its operation and Management
Determine the adequacy of security measures and identify
security deficiencies
Wide variety of types of vulnerability assessments
Assess Phase Correct Answers High-Level Cyber Risk
Assessment
Allocation of IACS Assets to Security Zones or Conduits Detail
Cyber Risk Assessment
,Assessed phase Correct Answers IACS cyber security life cycle
Automating Windows Policy Management Correct Answers
Extremely difficult and time consuming to manage settings
Numerous tools available to automate management settings on
one more computers
Examples
Active Directory -
Microsoft Security Compliance Manager (SCM)
DISA STIGs
Basic Steps to Secure an Operating System Correct Answers
Patch and update the OS/
Remove or disable unnecessary services, applications, and
network protocols
Configure OS user authentication . Configure access controls
appropriately Install and configure additional security
controls
Test the security of the OS
Center for Internet Security (CIS) Correct Answers Windows
Benchmarks Linux Benchmarks Windows Server 2000Amazon
Linux Windows Server 2003CentOS Linux . Windows Server
2008Debian Linux Windows Server 2012Oracle Linux
Windows 7 . Red Hat Linux Windows 8 Slackware Linux
WindowS NT . SuSE Linux Windows XP . Ubuntu Linux
CIS Microsoft Windows 7 Benchmark Correct Answers
Provides prescriptive guidance for establishing a secure
configuration posture for Microsoft Windows 7
, Details approximately 250 recommended settings for local
group policies
For each policy
Description -
Rationale Audit -
Remediation -
Impact Default Value -
References
CIS Security Configuration Correct Answers Recommended
technical control rules/values for hardening operating systems,
middleware and software applications, and network devices;
Accepted by government, business, professionals worldwide .
Downloaded several hunsreds thoudand times per year
Distributed free of charge by CIS in .PDF format
Also available in XCCDF, a machine readable XML format
Used by thousands of enterprises as a basis for security
configuration policies and the de facto standard for IT
configuratiob best practices.
https://www.cisecurity.org/
Comparing NIDS and NIDS: Correct Answers Each approach
has strengths and weaknesses.
Intended to be complementary to one another.
Define threats phone abilities and consequences
Intelligently designed and apply counter measures such as
network segmentation access controls hardening detection etc. to
reduce risk
Prioritize mitigating activities and resources
Evaluate countermeasures based upon their effectiveness versus
their cost and complexity
Correct Answers Exercise to define identify and classify the
security vulnerabilities and ICS at its related network
infrastructure
critical step in evaluating cyber risk
Evaluate the I CS design implementation configuration as well
as its operation and Management
Determine the adequacy of security measures and identify
security deficiencies
Wide variety of types of vulnerability assessments
Assess Phase Correct Answers High-Level Cyber Risk
Assessment
Allocation of IACS Assets to Security Zones or Conduits Detail
Cyber Risk Assessment
,Assessed phase Correct Answers IACS cyber security life cycle
Automating Windows Policy Management Correct Answers
Extremely difficult and time consuming to manage settings
Numerous tools available to automate management settings on
one more computers
Examples
Active Directory -
Microsoft Security Compliance Manager (SCM)
DISA STIGs
Basic Steps to Secure an Operating System Correct Answers
Patch and update the OS/
Remove or disable unnecessary services, applications, and
network protocols
Configure OS user authentication . Configure access controls
appropriately Install and configure additional security
controls
Test the security of the OS
Center for Internet Security (CIS) Correct Answers Windows
Benchmarks Linux Benchmarks Windows Server 2000Amazon
Linux Windows Server 2003CentOS Linux . Windows Server
2008Debian Linux Windows Server 2012Oracle Linux
Windows 7 . Red Hat Linux Windows 8 Slackware Linux
WindowS NT . SuSE Linux Windows XP . Ubuntu Linux
CIS Microsoft Windows 7 Benchmark Correct Answers
Provides prescriptive guidance for establishing a secure
configuration posture for Microsoft Windows 7
, Details approximately 250 recommended settings for local
group policies
For each policy
Description -
Rationale Audit -
Remediation -
Impact Default Value -
References
CIS Security Configuration Correct Answers Recommended
technical control rules/values for hardening operating systems,
middleware and software applications, and network devices;
Accepted by government, business, professionals worldwide .
Downloaded several hunsreds thoudand times per year
Distributed free of charge by CIS in .PDF format
Also available in XCCDF, a machine readable XML format
Used by thousands of enterprises as a basis for security
configuration policies and the de facto standard for IT
configuratiob best practices.
https://www.cisecurity.org/
Comparing NIDS and NIDS: Correct Answers Each approach
has strengths and weaknesses.
Intended to be complementary to one another.