Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilICS/SCADA Cybersecurity

Domain 3Objective 3

Scanning and Enumeration ICSSCADA Practice Questions (Page 6)

Part of the Introduction to Hacking ICS/SCADA domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 1–2 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)

46questions here
10free pages
6concepts

Questions 26–30

  1. 26application · medium

    A pharmaceutical company's OT network includes a mix of modern and legacy devices. The security team must identify known vulnerabilities but cannot risk interrupting production. Which scanning strategy is most appropriate?

    Select an answer first
  2. 27expert · hard

    During an assessment of a refinery's OT network, you find a device on TCP port 20000 that responds to DNP3 requests. The asset inventory lists it as a Modbus device. You need to confirm the device's role without causing disruption. What is the best approach?

    Select an answer first
  3. 28expert · hard

    During a scan of a chemical plant, you find a device on TCP port 102 with a banner that says 'Siemens S7-300'. You need to confirm the device's role in the production line, but the plant's safety system prohibits any write operations. Which action is most appropriate?

    Select an answer first
  4. 29application · medium

    A penetration tester is assessing a water treatment facility. The tester needs to identify live hosts and open ports on the OT network without disrupting critical processes. The tester has been given a list of known IP ranges but no credentials. Which approach best balances safety and effectiveness?

    Select an answer first
  5. 30expert · hard

    A power utility's OT network has a strict change-management policy: any active scan that sends more than 10 packets per second to a single device must be approved by the engineering team. You need to map the network and identify vulnerabilities, but you have only a 2-hour maintenance window. Which approach best meets the constraint?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.