ISP ISP Information & Cybersecurity 1 — Questions and Answers
Question 1: In an industrial security context, 'data at rest' refers to:
- Information actively being transmitted across a network
- Stored data on drives, servers, or removable media not currently in transit (Correct answer)
- Data displayed on a monitor during active use
- Information verbally communicated between employees
Correct answer: Stored data on drives, servers, or removable media not currently in transit
Data at rest encompasses all stored information that is not actively moving through a network or being processed.
Question 2: Which framework is widely used in U.S. industrial environments to manage cybersecurity risk?
- ISO 45001
- NIST Cybersecurity Framework (CSF) (Correct answer)
- OSHA 29 CFR 1910
- ASIS SPC.1
Correct answer: NIST Cybersecurity Framework (CSF)
The NIST CSF provides a structured approach to identifying, protecting, detecting, responding to, and recovering from cybersecurity incidents.
Question 3: A phishing email that targets a specific senior executive is known as:
- Vishing
- Spear phishing
- Whaling (Correct answer)
- Smishing
Correct answer: Whaling
Whaling is a form of spear phishing specifically aimed at high-value targets such as executives or key decision-makers.
Question 4: Which access control model grants permissions based on a user's job function rather than individual identity?
- Discretionary Access Control (DAC)
- Mandatory Access Control (MAC)
- Role-Based Access Control (RBAC) (Correct answer)
- Attribute-Based Access Control (ABAC)
Correct answer: Role-Based Access Control (RBAC)
RBAC assigns permissions to roles rather than individuals, simplifying administration and enforcing least privilege by job function.
Question 5: What is the primary purpose of network segmentation in an industrial facility?
- To increase internet bandwidth for all users
- To limit the lateral movement of attackers and contain breaches to isolated network zones (Correct answer)
- To reduce the number of network switches required
- To allow all devices to share a common IP address range
Correct answer: To limit the lateral movement of attackers and contain breaches to isolated network zones
Network segmentation divides infrastructure into zones so a compromise in one area cannot easily spread to critical operational systems.
Question 6: Multi-factor authentication (MFA) requires users to verify identity using:
- Two different passwords
- At least two different authentication factors from separate categories (something you know, have, or are) (Correct answer)
- A password and a security question from the same category
- Biometrics only, without any secondary factor
Correct answer: At least two different authentication factors from separate categories (something you know, have, or are)
MFA combines factors from different categories—knowledge, possession, and inherence—to ensure one compromised factor does not grant access.
In an industrial security context, 'data at rest' refers to: