
EC-CouncilICS/SCADA Cybersecurity
Domain 5Objective 2
NERC CIP ICSSCADA Practice Questions (Page 3)
Part of the Standards and Regulations for Cybersecurity domain, which makes up ~13% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–10 in this domain), expect 1–2 from this objective — we provide 50 practice questions to prepare you well beyond it. (estimate)
50questions here
10free pages
10concepts
Questions 11–15
- 11
A substation containing Critical Cyber Assets (CCAs) is located in a remote area with no continuous power for electronic monitoring. The entity wants to comply with CIP-006 but has limited resources. Which approach is most compliant?
Select an answer first - 12
A BES entity is found to be non-compliant with CIP-004 because it did not complete personnel risk assessments for all employees with access to CCAs. The entity has since completed the assessments and wants to minimize the penalty. What is the most appropriate action?
Select an answer first - 13
What is the purpose of the cyber security plan required under NERC CIP?
Select an answer first - 14
A new compliance analyst is reviewing the NERC CIP standards for the first time. The analyst is trying to understand the relationship between NERC and FERC. The analyst reads that NERC is responsible for developing and enforcing the CIP standards. What is the role of FERC in this process?
Select an answer first - 15
A utility has developed a recovery plan for its Critical Cyber Assets. The plan has been reviewed and approved. To meet NERC CIP requirements, what must the utility do with this plan on a recurring basis?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.