Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

IC34 EXAM COMPLETE QUESTIONS AND CORRECT DETAILED ANSWERS (VERIFIED ANSWERS) A+ GRADED

Rating
-
Sold
-
Pages
25
Grade
A+
Uploaded on
22-02-2025
Written in
2024/2025

What is System Hardening? The process of securing a system by reducing its attack surface Reducing available vectors of attack typically includes: Removal of unnecessary software Removal of unnecessary user accounts Strong access controls (e.g. multifactor authentication) Disabling or removal of unnecessary services Installing security patches

Show more Read less
Institution
ISA 62443 IC34
Course
ISA 62443 IC34

Content preview

ck
lo
yc
IC34 EXAM COMPLETE
ud

QUESTIONS AND CORRECT
DETAILED ANSWERS (VERIFIED
ANSWERS) A+ GRADED
St

,What is System Hardening?
The process of securing a system by reducing its attack surface

Reducing available vectors of attack typically includes:
Removal of unnecessary software Removal of unnecessary user accounts Strong
access controls (e.g. multifactor authentication)
Disabling or removal of unnecessary services
Installing security patches


What Types of Systems or Devices Can Be Hardened?




ck
Nearly anything that is configurable! Operating Systems
Databases
Applications
Managed switches
Routers firewalls




lo
Communication gateways Modems .
PLCs, RTUs
IEDs
VFDs
yc
OS Hardening Guidance
NIST SP 800-123 "Guide to General Server Security" .
ud

Microsoft Security Guides
Center for Internet Security's (CIS) Security Benchmarks
Defense Information Systems Agency's "Security Technical Implementation Guides"
(DISA STIGs)
Security Guides from Automation Suppliers
Yokogawa
St


Emerson -
Honeywel
Siemens -
others


Basic Steps to Secure an Operating System
Patch and update the OS/
Remove or disable unnecessary services, applications, and network protocols

, Configure OS user authentication . Configure access controls appropriately Install and
configure additional security
controls
Test the security of the OS


Examples of Unnecessary Software/Services
Games
Device drivers for hardware not included
Messaging services
Servers or clients for unused internet or remote access services




ck
Software compilers (except from non-production, development machines) Software
compilers for unused languages
Unused protocols and services .
Unused administrative utilities, diagnostics, management and system management
functions .




lo
Test and sample programs or scripts . Unused productivity suites and word processing
utilities
Unlicensed tools and shareware Universal Plug and Play services
yc
CIS Security Configuration
Recommended technical control rules/values for hardening operating systems,
middleware and software applications, and network devices;
ud

Accepted by government, business, professionals worldwide .
Downloaded several hunsreds thoudand times per year

Distributed free of charge by CIS in .PDF format
St


Also available in XCCDF, a machine readable XML format
Used by thousands of enterprises as a basis for security configuration policies and the
de facto standard for IT configuratiob best practices.

https://www.cisecurity.org/


Center for Internet Security (CIS)
Windows Benchmarks Linux Benchmarks Windows Server 2000Amazon Linux
Windows Server 2003CentOS Linux . Windows Server 2008Debian Linux Windows

Written for

Institution
ISA 62443 IC34
Course
ISA 62443 IC34

Document information

Uploaded on
February 22, 2025
Number of pages
25
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$13.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
Studyclock Ashford University
View profile
Follow You need to be logged in order to follow users or courses
Sold
879
Member since
4 year
Number of followers
492
Documents
8815
Last sold
1 week ago

4.2

232 reviews

5
130
4
45
3
34
2
10
1
13

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions