A company relies on an ICS to perform equipment monitoring functions that are federally mandated for operation of the facility. Fines for non-compliance could be costly. The ICS has known vulnerabilities and can no longer be patched or updated. Cyber-liability insurance cannot be obtained because insurance companies will not insure this equipment. Which of the following would be the BEST option to manage this risk to the company's production environment?
A) Avoid the risk by removing the ICS from production
B) Transfer the risk associated with the ICS vulnerabilities
C) Mitigate the risk by restricting access to the ICS
D) Accept the risk and upgrade the ICS when possible
Correct Answer:
Verified
Q310: A regional transportation and logistics company recently
Q311: A company is moving all of its
Q312: A security appliance vendor is reviewing an
Q313: An organization is evaluating options related to
Q314: A new security policy states all wireless
Q316: A penetration tester is trying to gain
Q317: A firewall specialist has been newly assigned
Q318: When implementing a penetration testing program, the
Q319: An analyst is investigating anomalous behavior on
Q320: A security researcher is gathering information about
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents