Industrial cybersecurity for the plant floor: IEC 62443, Purdue/ISA-95 segmentation, NIST CSF mapped to OT, real-world attack case studies (Stuxnet, Colonial Pipeline), DMZ architecture, jump servers, and patch management in air-gapped environments. Four levels from awareness to IR lead.
Question bank
80 total questions
Each quiz session serves a randomized subset from the bank, so retakes stay fresh.
20 Questions · IT vs OT, real-world attacks, NIST CSF
How OT differs from IT, NIST Cybersecurity Framework (Identify/Protect/Detect/Respond/Recover) mapped to OT environments, real-world attack case studies (Stuxnet, Colonial Pipeline, Ukraine 2015/2016, Triton), asset inventory, and safe-work basics for cyber on the plant floor.
20 Questions · Purdue/ISA-95, DMZ, jump servers
Purdue Enterprise Reference Architecture aligned to ISA-95, level 0-5 boundaries, industrial DMZ architecture (broker/relay pattern, no direct L3↔L4 flows), firewall rulesets, VLAN segmentation, hardened jump servers with MFA, and least-privilege remote access.
20 Questions · IEC 62443, SL-T, patching air gaps
IEC 62443-2-1 / -3-2 / -3-3 / -4-1, security levels (SL-T vs SL-A), zone & conduit risk assessment, foundational requirements (FR1-FR7), patch management in air-gapped and isolated environments (compensating controls, offline WSUS, sneakernet hygiene, vendor patch validation), and NIST SP 800-82 alignment.
20 Questions · Detection, response, recovery
ICS-specific detection (network + host), SANS ICS Cyber Kill Chain, tabletop exercises, forensic acquisition on live PLCs, and safe recovery of production.