Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilICS/SCADA Cybersecurity

Domain 6Objective 3

Securing the Protocols Unique to the ICS ICSSCADA Practice Questions (Page 3)

Part of the Securing the ICS Network domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–13 in this domain), expect 1–2 from this objective — we provide 41 practice questions to prepare you well beyond it. (estimate)

41questions here
9free pages
5concepts

Questions 11–15

  1. 11application · medium

    A water treatment plant uses Modbus TCP between a PLC and an HMI. The security team discovers that an attacker can send a specially crafted Modbus packet that causes the PLC to enter an error state. This is an example of which vulnerability?

    Select an answer first
  2. 12expert · hard

    A utility is upgrading a legacy DNP3 serial link to DNP3 over TCP/IP. The link carries control commands and must meet a new regulatory requirement for message integrity. The engineering team wants to minimize latency and avoid changing the master station software. Which approach best satisfies the requirement?

    Select an answer first
  3. 13application · medium

    A pharmaceutical company uses OPC UA between a batch control system and a supervisory server. The security team must ensure that only authorized applications can read and write data, and that the data is not exposed to eavesdroppers on the network. Which OPC UA configuration should be used?

    Select an answer first
  4. 14application · medium

    A utility is deploying a new DNP3 network with multiple masters and outstations. The security team wants to ensure that only authorized masters can control specific outstations. Which deployment configuration is most appropriate?

    Select an answer first
  5. 15application · medium

    A manufacturing plant uses OPC UA for communication between a historian and several PLCs. The security team wants to detect an attacker who has gained access to the plant network and is attempting to enumerate or manipulate OPC UA server data. Which monitoring approach would be most effective for this specific protocol?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.