Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CISSP All Questions

View all questions & answers for the CISSP exam

Exam CISSP topic 1 question 188 discussion

Actual exam question from ISC's CISSP
Question #: 188
Topic #: 1
[All CISSP Questions]

What is the PRIMARY consideration when testing industrial control systems (ICS) for security weaknesses?

  • A. ICS often run on UNIX operating systems.
  • B. ICS often do not have availability requirements.
  • C. ICS are often sensitive to unexpected traffic.
  • D. ICS are often isolated and difficult to access.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Boats
Highly Voted 2 years, 1 month ago
Selected Answer: C
The very fact of testing/scanning ICS devices could cause them problems. Also, they are not always hard to get to so D does not apply all the time.
upvoted 6 times
jackdryan
1 year, 6 months ago
C is correct
upvoted 1 times
...
...
TheManiac
Most Recent 6 months, 1 week ago
Selected Answer: C
D is a common fact C is a weakness
upvoted 1 times
...
Soleandheel
11 months, 2 weeks ago
The PRIMARY consideration when testing industrial control systems (ICS) for security weaknesses is: C. ICS are often sensitive to unexpected traffic. Industrial control systems are designed to manage and control critical infrastructure and industrial processes. They are highly sensitive to unexpected or unauthorized traffic because any disruptions or unauthorized access can have serious consequences, including physical damage or safety risks. Therefore, security testing of ICS should prioritize ensuring that unexpected traffic or unauthorized access is detected and mitigated to protect the integrity and availability of these systems.
upvoted 2 times
...
74gjd_37
1 year, 2 months ago
Selected Answer: C
The primary consideration when testing industrial control systems (ICS) for security weaknesses, from a CISSP perspective, is that ICS are often sensitive to unexpected traffic. Therefore, option C is the correct answer. ICS are often designed to function within a specific set of parameters and can be easily disrupted by unexpected network traffic or activity. As such, it is critical to test and analyze ICS security measures to identify and address potential vulnerabilities before they can be exploited by malicious actors.
upvoted 1 times
...
DJOEK
1 year, 10 months ago
Selected Answer: C
The primary consideration when testing industrial control systems (ICS) for security weaknesses is that ICS are often sensitive to unexpected traffic. Industrial control systems are used to control and monitor critical infrastructure and industrial processes, and disruptions to their operation can have serious consequences. Therefore, it is important to carefully consider the potential impact of any security testing on the operation of the ICS and to ensure that the testing does not disrupt or compromise the system.
upvoted 2 times
...
Firedragon
2 years ago
Selected Answer: C
C. https://www.cisa.gov › recommended_practices Some ICS protocol implementations are vulnerable to packets that are malformed or contain illegal or otherwise unexpected field values.
upvoted 4 times
...
Jamati
2 years ago
Selected Answer: C
C is the best answer. ICS systems can sometimes be internet facing so D is wrong.
upvoted 3 times
dumdada
1 year, 5 months ago
ICS systems facing the Internet? Recipe for a disaster ...
upvoted 1 times
...
...
rdy4u
2 years ago
" ICS are often isolated and difficult to access" is not a weakness
upvoted 1 times
...
daniecsn14
2 years, 1 month ago
Selected Answer: C
C is the correct
upvoted 3 times
...
brb77
2 years, 2 months ago
question asks in the context of sec testing for sec weaknesses. in this context I'd go with C
upvoted 3 times
...
Nickolos
2 years, 2 months ago
Selected Answer: D
Physical location/access are usually the primary concerns with ICS, SCADA systems
upvoted 1 times
Nickolos
2 years ago
I was wrong. Security weakness is c. D is not a security weakness.
upvoted 3 times
...
...
stickerbush1970
2 years, 2 months ago
Selected Answer: D
Agree with D
upvoted 2 times
...
Stevooo
2 years, 2 months ago
Selected Answer: D
Physical location/access are usually the primary concerns with ICS, SCADA systems
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...