6. Introduction to the IACS Cybersecurity Lifecycle Flashcards

1
Q

List THREE Stages of the IACS Cybersecurity Life Cycle

A

Assess

Develop and Implement

Maintain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Describe the Assess Phase

A

A zone is assigned a target security level (SL-T)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Describe the Develop and Implement Phase

A

Countermeasures are implemented to meet the target security level (SL-T)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Describe the Maintain Phase

A

Ensures the achieved security level (SL-A) is better or equal to the target security level (SL-T)

Countermeasures are audited/tested and upgraded if necessary to maintain (SL-A)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What THREE activities take place during the assess phase?

A

Initial/High Level Risk Assessment

Allocation of IACS assets to security zones and conduits

Detailed cyber risk assessment

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What THREE activities take place during the Develop and Implement phase?

A

Requirements specification

Design and engineering of countermeasures

Installation comissioning and validation of countermeasures

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What TWO activities take place during the maintain phase?

A

Cybersecurity maintenance monitoring, and management of change

Cyber incident response and recovery

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Describe TWO continuous processes

A

Cybersecurity management sytstem: Policies, Procedures, Training & awareness

Periodic cybersecurity audits

How well did you know this?
1
Not at all
2
3
4
5
Perfectly