Answers
What are the two elements Of the risk analysis category Of an IACS? - correct answer(s) ✔✔
Business rationale and risk identification and classification
Which body manages the ISA Secure conformance certification program? - correct answer(s)
✔✔ Security Compliance Institute
Which Of the following is a challenge unique to ICS cybersecurity? - correct answer(s) ✔✔
Integration with legacy systems
Authorization (user accounts access) must be granted based on which factors? - correct
answer(s) ✔✔ Specific roles
Why is patch management considered more challenging for 'ACS than for business systems? -
correct answer(s) ✔✔ Patching a live automation system Can create safety risks.
Which term describes the practice of segmenting ICS networks to improve security? - correct
answer(s) ✔✔ Zoning
Which of the following is an element ot security policy, organization, and awareness? - correct
answer(s) ✔✔ Staff training and security awareness
What is an objective of cybersecurity acceptance testing? - correct answer(s) ✔✔ Verification
of cybersecurity specifications
, NIST Cybersecurity Framework core recognises five functions that outline how to organize
cybersecurity - correct answer(s) ✔✔ Identify, Protect, Detect, Respond, Recover
What is one Of the functions performed by the Network layer? - correct answer(s) ✔✔ routes
and forwards data packets across different networks, handling logical addressing and
determining the best path for data transmission
When implementing IEC 62443-2-3, which factor should be considered for prioritizing patch
deployment? - correct answer(s) ✔✔ The potential impact of the addressed vulnerability on
the IACS
Which is a common pitfall when initiating a CSMS program? - correct answer(s) ✔✔
Immediate jump into detailed risk assessment
As per the NIST Cybersecurity Framework, current profile of the company refers to: - correct
answer(s) ✔✔ Description Of an organization's current cybersecurity activities and their
outcomes.
As per ISA-99 (IEC 62443) Reference Model which level is named correctly ? - correct
answer(s) ✔✔ Level 2 - Supervisory Control
How many element groups are in the "Addressing Risk" Cybersecurity Management System
CSMS category as per ISA/IEC 62443? - correct answer(s) ✔✔ 3
Security Levels (SIS) are broken down into Which three types? - correct answer(s) ✔✔ Target.
Capability, and Achieved