112-52 · Question #4
What is a critical countermeasure for protecting OT environments?
The correct answer is C. Applying comprehensive patch management. Comprehensive patch management (C) is critical in OT environments because unpatched vulnerabilities in industrial control systems (ICS), SCADA, and PLCs are a primary attack vector - and many OT systems run legacy software that requires deliberate, structured patch programs to st
Question
What is a critical countermeasure for protecting OT environments?
Options
- AImplementing deep packet inspection
- BEnforcing strict data retention policies
- CApplying comprehensive patch management
- DUsing a strong social media policy
How the community answered
(56 responses)- A11% (6)
- B7% (4)
- C80% (45)
- D2% (1)
Explanation
Comprehensive patch management (C) is critical in OT environments because unpatched vulnerabilities in industrial control systems (ICS), SCADA, and PLCs are a primary attack vector - and many OT systems run legacy software that requires deliberate, structured patch programs to stay protected without disrupting operations.
Why the distractors are wrong:
- A (Deep packet inspection): While useful for network monitoring, DPI alone is a detection/inspection tool, not a foundational protection strategy - it doesn't remediate the underlying vulnerabilities.
- B (Data retention policies): These govern compliance and storage governance, not active threat mitigation in OT/ICS contexts.
- D (Social media policy): This addresses human behavior on external platforms and has no meaningful impact on OT system security.
Memory tip: Think of OT environments like industrial machinery - if you never maintain or update the equipment, it eventually breaks or gets exploited. "Patch = maintenance for software." The word comprehensive signals this is about a systematic, ongoing security program, which is the hallmark of OT protection best practices.
Topics
Community Discussion
No community discussion yet for this question.