Implementing VLANs can provide which of the following?
A.
Segmenting control device traffic from other network services
B.
Sandboxing ICS application memory from other system resources
C.
Separation of duties for different guest OSes on a virtual host
D.
Stopping unauthorized access to ICS controller diagnostic ports
The Answer Is:
A
This question includes an explanation.
Explanation:
VLANs (Virtual LANs) allow logical segmentation of a physical network, which can be used to separate control device traffic from other network services (A), improving security and performance.
Sandboxing (B) relates to application or OS memory isolation, not VLANs.
Separation of duties for guest OSes (C) is related to virtualization, not VLANs.
Preventing access to diagnostic ports (D) requires port security or access control, not VLAN segmentation alone.
GICSP highlights VLANs as a fundamental technique for network segmentation in ICS security architectures.
[Reference:, , GICSP Official Study Guide, Domain: ICS Security Architecture & Design, , NIST SP 800-82 Rev 2, Section 5.5 (Network Segmentation), , GICSP Training on VLANs and Network Security Controls]
GICSP PDF/Engine
Printable Format
Value of Money
100% Pass Assurance
Verified Answers
Researched by Industry Experts
Based on Real Exams Scenarios
100% Real Questions
Get 75% Discount on All Products,
Use Coupon: "ac75sure"