Communication & Conflict Resolution Flashcards
7 cards from real ICS practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Communication & Conflict Resolution flashcards as text
An ICS engineer notices a technician bypassing a safety interlock to speed up production. The technician outranks the engineer. What should the engineer do FIRST?
Answer: Document the bypass and report it through the established safety reporting chain immediately
Safety interlock bypasses must be reported immediately regardless of hierarchy, as they create immediate risk to life and systems.
Which type of communication is MOST critical to establish before an ICS cybersecurity tabletop exercise?
Answer: Clear roles, responsibilities, and escalation paths for all participants
Defining roles and escalation paths before the exercise ensures participants can practice realistic, structured incident response communication.
In ICS security, 'alarm fatigue' is a communication problem that occurs when:
Answer: Operators receive so many alerts that critical alarms are ignored or missed
Alarm fatigue desensitizes operators to alerts, increasing the risk that a genuine security or safety event goes unaddressed.
When communicating ICS vulnerability findings to executive leadership, what format is MOST appropriate?
Answer: An executive summary emphasizing business risk, impact, and recommended actions
Executive leadership needs business-focused summaries rather than technical details to make informed decisions.
A conflict between a remote site operator and a central ICS security team regarding a firewall rule change is BEST resolved by:
Answer: Engaging a change control board with representatives from both operations and security
A change control board provides a neutral, structured forum to evaluate technical and operational trade-offs collaboratively.
Which BEST describes the purpose of a 'read-back' or 'repeat-back' procedure in ICS operational communication?
Answer: To confirm that a command or instruction was received and understood correctly
Read-back procedures reduce miscommunication errors by requiring the receiver to repeat critical instructions back to the sender for confirmation.
During an ICS security assessment, a consultant discovers a critical vulnerability but the site contact asks them not to report it to management. What should the consultant do?
Answer: Report the vulnerability according to the agreed-upon scope and disclosure terms of the engagement
Security consultants are bound by their engagement scope and ethical obligations to report findings through agreed channels, regardless of on-site pressure.