問題1
You are responsible for implementing active defense mechanisms in a critical infrastructure ICS environment. After reviewing traffic logs, you identify repeated attempts to access an ICS network segment from an external source.
How should you proceed with mitigating this threat?
You are responsible for implementing active defense mechanisms in a critical infrastructure ICS environment. After reviewing traffic logs, you identify repeated attempts to access an ICS network segment from an external source.
How should you proceed with mitigating this threat?
正確答案: D
問題2
What is the primary goal of the eradication phase in an ICS incident response process?
What is the primary goal of the eradication phase in an ICS incident response process?
正確答案: D
問題3
Why is it important to monitor both internal and external traffic in an ICS environment?
Why is it important to monitor both internal and external traffic in an ICS environment?
正確答案: A
問題4
You are tasked with improving asset visibility in an aging ICS environment that relies heavily on proprietary technologies.
What steps should you take to address this issue?
You are tasked with improving asset visibility in an aging ICS environment that relies heavily on proprietary technologies.
What steps should you take to address this issue?
正確答案: D
問題5
Which of the following should be a priority when conducting threat hunting in an ICS environment?
Which of the following should be a priority when conducting threat hunting in an ICS environment?
正確答案: D
問題6
What is the primary purpose of sharing threat intelligence across different organizations in the ICS sector?
What is the primary purpose of sharing threat intelligence across different organizations in the ICS sector?
正確答案: A
問題7
Your security team has received a high-priority alert from a network intrusion detection system (NIDS) monitoring an ICS environment. The alert indicates unusual outbound communication from an ICS device to an external IP address.
What steps should you take to investigate and mitigate this potential security threat?
Your security team has received a high-priority alert from a network intrusion detection system (NIDS) monitoring an ICS environment. The alert indicates unusual outbound communication from an ICS device to an external IP address.
What steps should you take to investigate and mitigate this potential security threat?
正確答案: C
問題8
Which of the following is a key consideration when configuring monitoring tools for ICS environments?
Which of the following is a key consideration when configuring monitoring tools for ICS environments?
正確答案: A
問題9
What is the main reason for documenting and maintaining a comprehensive asset inventory in an ICS environment?
What is the main reason for documenting and maintaining a comprehensive asset inventory in an ICS environment?
正確答案: A