EXAM QUESTIONS AND ANSWERS WITH COMPLETE
SOLUTIONS GRADED A++
What must be done before an assessment can be started?
Create a Project Plan
ID Steps of the Project to perform the assessment
ID the System Under Assessment
System Under Consideration (SUC)
The system or systems within an Industrial Automation and Control System
environment that are being evaluated or designed for security enhancements.
System Under Assessment (SUA)
The system that is being evaluated for compliance with standards.
What are some required information gathering items before the assessment can
begin?
Goals of the Assessment
IACS asset inventory
Understanding of the IACS
Regulations, requirements, and governance of relevance (Government, Industry,
Company)
Architecture diagrams
, Configuration Files
Known vulnerabilities
Define roles and responsibilities
Establish training requirements
System Architecture Diagrams
Depiction of system components, their connectivity, and physical locations.
Physical System Architecture Diagram
A diagram that provides a visual representation of the physical components within a
system and their interconnections. It focuses on hardware elements such as servers,
network devices, control systems, and terminals, showing how these components are
arranged and connected.
Functional System Architecture Diagram
A diagram that describes the functions of a system and their relationships without
focusing on physical details. It presents a logical view of the system, emphasizing
software elements, data flows, and interactions between different functions or modules
within the system.
(True/False) IACS functionality should be graphically represented on at least one
IACS Architecture drawing
True
ISA-95 Functional Layer Level 0
The physical process — This level defines the physical processes showing data flowing
from sensors and actuators into the control level.
ISA-95 Functional Layer Level 1