What is air gapping in cybersecurity, and why do nuclear facilities use it to isolate control systems from the internet? Learn how air-gapped networks provide maximum protection for critical infrastructure—essential for CompTIA Security+ (Plus) SY0-701 exam success.
Table of Contents
Question
A nuclear facility’s control system is not connected to the internet for security reasons. What security measure is this?
A. Network segmentation
B. VLAN isolation
C. DMZ hardening
D. Air gapping
E. Honeynet deployment
Answer
D. Air gapping
Explanation
An air-gapped system is physically isolated from external networks, preventing remote attacks.
The security measure described—where a nuclear facility’s control system is not connected to the internet—is known as air gapping.
Air gapping is a security strategy that involves physically isolating a computer or network from all external connections, including the internet and other networks. This means there are no direct or indirect network links (wired or wireless) between the protected system and outside systems.
The primary goal of air gapping is to prevent remote cyberattacks, malware infections, and data exfiltration by ensuring that external threat actors have no network pathway to reach the critical systems. This is especially important for environments that manage highly sensitive operations, such as nuclear facilities, power plants, and military systems.
Data transfers in air-gapped environments are strictly controlled and typically occur via removable media (such as USB drives or external hard drives), which must be carefully managed and scanned for malware before use.
Air-gapped systems significantly reduce the attack surface, making it extremely difficult for cybercriminals to compromise the system remotely. However, they are not immune to insider threats or attacks via infected removable media, as demonstrated by incidents like Stuxnet.
This approach is widely recognized as one of the most robust security measures for protecting critical infrastructure, ensuring compliance with regulatory standards, and safeguarding against advanced persistent threats.
Air gapping physically isolates critical systems from external networks, providing maximum security against remote cyber threats and unauthorized access.
CompTIA Security+ (Plus) SY0-701 certification exam practice question and answer (Q&A) dump with detail explanation and reference available free, helpful to pass the CompTIA Security+ (Plus) SY0-701 exam and earn CompTIA Security+ (Plus) SY0-701 certification.