Which document would an asset owner most likely request from a prospective integrator to evaluate that integrator's security program against a recognized standard?
A.The integrator's office lease agreement
B.A copy of the integrator's tax return
C.The integrator's employee lunch schedule
D.Evidence of conformance with IEC 62443-2-4 requirements
Why D is correct
Because IEC 62443-2-4 defines security program requirements for service providers, asset owners commonly request conformance evidence to gauge an integrator's capabilities during procurement. This provides an objective, standards-based comparison. Irrelevant business documents do not address security assurance.
Know someone studying for ISA/IEC 62443? Send them this one.
CyberCertPrep gives you 20 free ISA/IEC 62443 questions per day with this same answer-and-explanation depth, plus timed exam simulations and progress tracking. No card required.
ISA/IEC 62443 and ISA/IEC are trademarks or registered trademarks of their respective owners. CyberCertPrep is an independent exam-preparation resource and is not affiliated with, authorized by, sponsored by, or endorsed by ISA/IEC or any other certification body. All study material is independently created; the certification name is used only to identify the exam this resource helps you prepare for.
A CSMS classifies a risk as high likelihood and high consequence. The classification's main purpose in the next CSMS step is to: