
EC-CouncilICS/SCADA Cybersecurity
Domain 1Objective 4
Risk Management in ICS/SCADA ICSSCADA Practice Questions (Page 1)
Part of the Introduction to ICS/SCADA Network Defense domain, which makes up ~13% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–10 in this domain), expect 1–2 from this objective — we provide 51 practice questions to prepare you well beyond it. (estimate)
51questions here
11free pages
7concepts
Questions 1–5
- 1
A utility company is evaluating two risks: Risk A has a high likelihood and low impact, while Risk B has a low likelihood and high impact. The company has a limited budget and must choose which risk to mitigate first. According to risk analysis principles, which approach is most appropriate?
Select an answer first - 2
Why is risk management particularly important in ICS/SCADA environments compared to traditional IT systems?
Select an answer first - 3
Which risk assessment methodology uses numerical values to estimate risk, such as annualized loss expectancy (ALE)?
Select an answer first - 4
A risk assessment for a mining operation has identified a high risk of a cyber attack on the hoist control system. The security team needs to communicate this to the mine manager, who is not technical. What is the best way to present the risk?
Select an answer first - 5
What is the purpose of periodic risk reviews in an ICS/SCADA risk management program?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.