
EC-CouncilICS/SCADA Cybersecurity
Domain 4Objective 1
Challenges of Vulnerability Assessment ICSSCADA Practice Questions (Page 7)
Part of the Vulnerability Management domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 1–2 from this objective — we provide 44 practice questions to prepare you well beyond it. (estimate)
44questions here
9free pages
6concepts
Questions 31–35
- 31
A natural gas pipeline operator is subject to TSA security directives that require regular vulnerability assessments. The operator has a legacy SCADA system that cannot be patched without a full shutdown. What is the most appropriate way to satisfy the directive?
Select an answer first - 32
Why does incomplete asset inventory hinder comprehensive vulnerability discovery in ICS/SCADA environments?
Select an answer first - 33
A security team is assessing a legacy SCADA system that uses a proprietary protocol. The team has a limited budget and must choose between purchasing a specialized ICS scanner or hiring a consultant with expertise in the protocol. What is the most important factor in this decision?
Select an answer first - 34
A security team is planning a vulnerability assessment for a nuclear power plant's control system. The system uses a mix of legacy and modern devices, some of which are safety-critical. The team has a budget for only one assessment method. What is the most appropriate method to minimize risk while still gathering useful data?
Select an answer first - 35
A hospital's building management system (BMS) controls HVAC and critical environmental conditions for operating rooms. A vulnerability scan is planned. What is the most critical factor to consider?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.