Exam Cybersecurity Fundamentals Specialist All QuestionsBrowse all questions from this exam
Question 58

Which policies and procedures publication is titled Patch Management in the IACS Environment?

    Correct Answer: A

    ISA-TR62443-2-3 is the publication that specifically addresses Patch Management in the IACS (Industrial Automation and Control Systems) environment. This technical report provides a structured methodology for managing patches, including the exchange of patch status information and guidance on creating a patch management program within IACS environments. The other options related to different aspects of IACS security and standards do not focus specifically on patch management.

Discussion
ac873d6Option: A

Patching is not a spectator sport. It takes a team approach. All of the following actors are required to play. · Asset owners · Integrators · Maintainers · Product suppliers ISA-TR62443-2-3 is a great resource for patch management in an IACS environment. This technical report describes a format for the exchange of information about the status of patches and their applicability, and provides guidance on planning and building a patch management program within asset owner and IACS product supplier organizations.

ac873d6

IC32M page 396