Which removable-media practice most directly increases the risk of malware entering an otherwise air-gapped OT network?
- A.Maintaining a signed software bill of materials for firmware
- B.Encrypting backups stored on tape in a fireproof safe
- C.Disabling autorun on all corporate IT desktops
- D.Using vendor-supplied USB drives and engineering laptops on field devices without scanning or sanitization
Why D is correct
Transient cyber assets such as vendor USB sticks and contractor laptops frequently cross the air gap to update or troubleshoot devices, and if unscanned they can carry malware directly onto isolated OT systems. Stuxnet famously propagated this way, which is why USB sanitization kiosks are recommended.
Know someone studying for OT Security Fundamentals? Send them this one.