CAS-005 · Question #54
A security engineer needs 10 secure the OT environment based on me following requirements: - Isolate the OT network segment - Restrict Internet access. - Apply security updates two workstations…
The correct answer is B. Implement a bastion host in the OT network with security tools in place to monitor access and use. To secure the Operational Technology (OT) environment based on the given requirements, the best approach is to implement a bastion host in the OT network. The bastion host serves as a secure entry point for remote access, allowing third-party vendors to connect while being…
Question
A security engineer needs 10 secure the OT environment based on me following requirements:
- Isolate the OT network segment
- Restrict Internet access.
- Apply security updates two workstations
- Provide remote access to third-party vendors
Which of the following design strategies should the engineer implement to best meet these requirements?
Options
- ADeploy a jump box on the third party network to access the OT environment and provide updates
- BImplement a bastion host in the OT network with security tools in place to monitor access and use
- CEnable outbound internet access on the OT firewall to any destination IP address and use the
- DCreate a staging environment on the OT network for the third-party vendor to access and enable
How the community answered
(21 responses)- A5% (1)
- B62% (13)
- C10% (2)
- D24% (5)
Explanation
To secure the Operational Technology (OT) environment based on the given requirements, the best approach is to implement a bastion host in the OT network. The bastion host serves as a secure entry point for remote access, allowing third-party vendors to connect while being monitored by security tools. Using a dedicated update server for workstations ensures that security updates are applied in a controlled manner without direct internet access.
Community Discussion
No community discussion yet for this question.