Reviewed 100% Correct Detailed
Answers Guaranteed Pass!
What is phase 1 of the IACS Cybersecurity Life Cycle? - Answers -✔✔ Assess
What is phase 2 of the IACS Cybersecurity Life Cycle? - Answers -✔✔ Develop &
Implement
What is phase 3 of the IACS Cybersecurity Life Cycle? - Answers -✔✔ Maintain
When are countermeasures are implemented to meet the Target Security Level (SL-T)?
- Answers -✔✔ During the Develop & Implement phase of ICS security implementation
What is the primary goal of the Maintain phase in ICS security implementation? -
Answers -✔✔ To ensure the Achieved Security Level (SL-A) is equal to or better than
the Target Security Level (SL-T).*
What is step 1 of the IACS Cybersecurity Life Cycle (Assess Phase)? - Answers -✔✔
High-Level Cyber Risk Assessment
What is step 2 of the IACS Cybersecurity Life Cycle (Assess Phase)? - Answers -✔✔
Allocation of IACS Assets to Security Zones or Conduits
What is step 3 of the IACS Cybersecurity Life Cycle (Assess Phase)? - Answers -✔✔
Detail Cyber Risk Assessment
What is step 4 of the IACS Cybersecurity Life Cycle (Develop & Implement Phase)? -
Answers -✔✔ Cybersecurity Requirements Specification
What is step 5 of the IACS Cybersecurity Life Cycle (Develop & Implement Phase)? -
Answers -✔✔ Design and engineering of Cybersecurity countermeasures
What is step 6 of the IACS Cybersecurity Life Cycle (Develop & Implement Phase)? -
Answers -✔✔ Installation, commissioning and validation of Cybersecurity
countermeasures
What is step 7 of the IACS Cybersecurity Life Cycle (Maintain)? - Answers -✔✔
Cybersecurity Maintenance, Monitoring and Management of Change
, What is step 8 of the IACS Cybersecurity Life Cycle (Maintain)? - Answers -✔✔ Cyber
Incident Response & Recovery
What are the continuous processes activities of the IACS Cybersecurity Life Cycle? -
Answers -✔✔ Cybersecurity Management System: Policies, Procedures, Training &
Awareness, Periodic Cybersecurity Audits
A risk assessment should provide information about what? - Answers -✔✔ An entire
system as well as each zone
What information should be provided from a risk assessment? - Answers -✔✔ -Risk
profile
-Highest severity consequences
-Threats / vulnerabilities leading to the highest risks
-Target Security Levels
-Recommendations
What is the named output of a risk assessment? - Answers -✔✔ Cybersecurity
Requirement Specifications (CRS)
Once created, what is the Cybersecurity Requirement Specifications (CRS) used for? -
Answers -✔✔ Input for the Develop & Implementation phase
What, at a minimum, should Cybersecurity Requirement Specifications (CRS) include? -
Answers -✔✔ -SUC description
-Zone and conduit drawings
-Zone and conduit characteristics
-Operating environment assumptions
-Threat environment
-Organizational security policies
-Tolerable risk
-Regulatory requirements
What phase of the IACS Cybersecurity Lifecycle do you assign assign a Target Security
Level (SL-T)? - Answers -✔✔ Assess
What phase of the IACS Cybersecurity Lifecycle do you implement to meet an Achieved
Security Level (SL-A)? - Answers -✔✔ Development & Implement
In what phase of the IACS Cybersecurity Lifecycle do you ensure the Achieved Security
Level (SL-A) meets or exceeds the Target Security Level (SL-T)? - Answers -✔✔
Maintain
What documents are required per zone/conduit? - Answers -✔✔ •Name and/or unique
identifier