
EC-CouncilICS/SCADA Cybersecurity
Domain 6Objective 5
Monitoring ICSSCADA Practice Questions (Page 6)
Part of the Securing the ICS Network domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–13 in this domain), expect 1–2 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)
52questions here
11free pages
10concepts
Questions 26–30
- 26
An ICS security team detects a suspected malware infection on a control server. The malware appears to be communicating with an external IP address. The team must respond while minimizing operational impact. Which action should they take first?
Select an answer first - 27
Which ICS protocol is a master-slave protocol commonly used in industrial control systems and operates over serial or Ethernet?
Select an answer first - 28
What is the main benefit of integrating ICS monitoring data into a SIEM platform?
Select an answer first - 29
A mining company has a wireless mesh network connecting mobile equipment to a control center. The network is subject to intermittent packet loss and variable latency. The security team is deploying an anomaly detection system that uses a baseline of network traffic. Which baseline approach is most robust to the network's variability?
Select an answer first - 30
A small water utility has no dedicated security staff and relies on the SCADA administrator to monitor the ICS network. The administrator wants to improve security visibility without adding significant workload. Which monitoring approach is most practical?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.