
EC-CouncilICS/SCADA Cybersecurity
Domain 1Objective 5
Risk Assessment and Defining Types of Risk ICSSCADA Practice Questions (Page 1)
Part of the Introduction to ICS/SCADA Network Defense domain, which makes up ~13% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–10 in this domain), expect 1–2 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)
43questions here
9free pages
7concepts
Questions 1–5
- 1
What is the purpose of risk evaluation in the risk management process?
Select an answer first - 2
A risk analyst is assessing the risk of a cyberattack on a wastewater treatment plant. The plant has a single internet-facing HMI that is protected by a firewall, but the firewall logs are not monitored. The analyst determines that the likelihood of a successful attack is moderate, and the impact is high because a failure could release untreated sewage. Management has a low risk tolerance. Which risk treatment option is most appropriate?
Select an answer first - 3
In the context of ICS/SCADA network defense, what does a risk assessment primarily help an organization achieve?
Select an answer first - 4
During risk identification for an ICS/SCADA environment, which threat source should be considered as a potential risk?
Select an answer first - 5
In risk analysis, what two factors are typically used to determine the level of risk?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.