QuestionQ44

Network Security Controls

Hayes, a security professional, was assigned to implement security controls for an industrial network at Purdue Level 3.5 (IDMZ). Hayes assessed every possible attack vector at the IDMZ level and deployed a security control that strengthens the IDMZ against cyber-attacks.

Identify the security control Hayes implemented in this scenario.

  • A Point-to-point communication
  • B MAC authentication
  • C Anti-DoS solution
  • D Use of authorized RTU and PLC commands
Explanation

An anti-DoS solution protects the IDMZ’s availability by identifying and filtering, blocking, or rate-limiting malicious traffic intended to overwhelm systems at the IT/OT boundary. The IDMZ is the Purdue Level 3.5 separation zone that brokers and polices communications between enterprise and industrial networks; availability protection against denial-of-service attacks is therefore an appropriate boundary control.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!