NSE7_OTS-7.2 Exam Questions
89 real NSE7_OTS-7.2 exam questions with expert-verified answers and explanations. Page 1 of 2.
- Question #1
Which three methods of communication are used by FortiNAC to gather visibility information? (Choose three.)
- Question #2Troubleshooting FortiGate Infrastructure
An OT architect has deployed a Layer 2 switch in the OT network at Level 1 in the Purdue model- process control. The purpose of the Layer 2 switch is to segment traffic between PLC...
VLANLayer 2 switchOT networkPurdue model - Question #3Troubleshooting FortiAnalyzer
An OT administrator is defining an incident notification policy using FortiSIEM and would like to configure the system with a notification policy. If an incident occurs, the admini...
FortiSIEMSOARnotification policyremediation script - Question #4Troubleshooting FortiGate Infrastructure
When you create a user or host profile, which three criteria can you use? (Choose three.)
FortiNAChost profileuser profileaccess control - Question #5
Refer to the exhibit, which shows a non-protected OT environment. An administrator needs to implement proper protection on the OT network. Which three steps should an administrator...
- Question #6Troubleshooting FortiGate Infrastructure
An OT administrator has configured FSSO and local firewall authentication. A user who is part of a user group is not prompted for credentials during authentication. What is a possi...
FSSOpassive authenticationuser authenticationfirewall policy - Question #7
Refer to the exhibit. Given the configurations on the FortiGate, which statement is true?
- Question #8Troubleshooting FortiAnalyzer
An administrator wants to use FortiSoC and SOAR features on a FortiAnalyzer device to detect and block any unauthorized access to FortiGate devices in an OT network. Which two stat...
FortiAnalyzerFortiSoCSOARplaybooks - Question #9Troubleshooting FortiAnalyzer
You are investigating a series of incidents that occurred in the OT network over past 24 hours in FortiSIEM. Which three FortiSIEM options can you use to investigate these incident...
FortiSIEMincident investigationOT securitySIEM - Question #10
Refer to the exhibit. Which statement about the interfaces shown in the exhibit is true?
- Question #11
When device profiling rules are enabled, which devices connected on the network are evaluated by the device profiling rules?
- Question #12Troubleshooting FortiGate Infrastructure
What two advantages does FortiNAC provide in the OT network? (Choose two.)
FortiNACOT networkIoT detectiondevice profiling - Question #13
What triggers Layer 2 polling of infrastructure devices connected in the network?
- Question #14Troubleshooting FortiAnalyzer
An OT administrator configured and ran a default application risk and control report in FortiAnalyzer to learn more about the key application crossing the network. However, the rep...
FortiAnalyzerreport generationlog indexingtime period - Question #15
An OT supervisor needs to protect their network by implementing security with an industrial signature database on the FortiGate device. Which statement about the industrial signatu...
- Question #16Troubleshooting FortiGate Infrastructure
Refer to the exhibit. Based on the Purdue model, which three measures can be implemented in the control area zone using the Fortinet Security Fabric? (Choose three.)
Purdue modelSecurity FabricOT networkFortiNAC - Question #17FortiNAC for OT
What can you assign using network access control policies?
network access controllogical networksFortiNACNAC policies - Question #18OT Threat Landscape
As an OT administrator, it is important to understand how industrial protocols work in an OT network. Which communication method is used by the Modbus protocol?
Modbusindustrial protocolsprimary/secondary communicationOT protocols - Question #19
Refer to the exhibit. An OT architect has implemented a Modbus TCP with a simulation server Conpot to identify and control the Modus traffic in the OT network. The FortiGate-Edge d...
- Question #20FortiAnalyzer for OT
An OT network architect must deploy a solution to protect fuel pumps in an industrial remote network. All the fuel pumps must be closely monitored from the corporate network for an...
FortiSIEMtemperature monitoringperformance rulesOT remote network - Question #21FortiGate OT Security
How can you achieve remote access and internel availability in an OT network?
SD-WANremote accessOT availabilityISP redundancy - Question #22OT Security and Compliance
Which type of attack posed by skilled and malicious users of security level 4 (SL 4) of IEC 62443 is designed to defend against intentional attacks?
IEC 62443security levelsSL 4intentional attacks - Question #23FortiAnalyzer for OT
The operational technology (OT) network analyst runs different levels of reports to investigate threats that exploit the network. The analyst can run these reports on all routers,...
FortiSIEMthreat huntingfirmware vulnerabilitiesOT reporting - Question #24FortiGate OT Security
To increase security protection in an OT network, how does application control on ForliGate detect industrial traffic?
application controlindustrial traffic inspectionFortiGateprotocol inspection - Question #25OT Security and Compliance
What are two critical tasks the OT network auditors must perform during OT network risk assessment and management? (Choose two.)
risk assessmentthreat hunting strategyOT auditingrisk management - Question #26FortiNAC for OT
What are two benefits of a Nozomi integration with FortiNAC? (Choose two.)
Nozomi integrationFortiNAChost classificationmulti-adapter consolidation - Question #27FortiGate OT Security
Which three criteria can a FortiGate device use to look for a matching firewall policy to process traffic? (Choose three.)
firewall policytraffic matchinginternet servicespolicy processing order - Question #28FortiAnalyzer for OT
Refer to the exhibit. From your analysis of the output, which statement about the output is true?
PAM event typeFortiAnalyzerevent log analysislog output - Question #29FortiNAC for OT
Which three Fortinet products can be used for device identification in an OT industrial control system (ICS)? (Choose three.)
device identificationICSFortiNACFortiSIEM - Question #30FortiGate OT Security
Refer to the exhibit. In the topology shown in the exhibit, both PLCs can communicate directly with each other without going through the firewall. What can be done to improve the s...
micro-segmentationPLC securityLayer 2 segmentationOT network topology - Question #31FortiNAC for OT
In a wireless network integration, how does FortiNAC obtain connecting MAC address information?
FortiNACRADIUSwireless integrationMAC address - Question #32
Which three common breach points can you find in a typical ОТ environment? (Choose three.)
- Question #33
Refer to the exhibit. You are navigating through FortiSIEM in an OT network. How do you view information presented in the exhibit and what does the FortiGate device security status...
- Question #34FortiGate OT Security
An OT network administrator is trying to implement active authentication. Which two methods should the administrator use to achieve this? (Choose two.)
active authenticationtwo-factor authenticationFortiAuthenticatorlocal authentication - Question #35FortiGate OT Security
Refer to the exhibit. PLC-3 and CLIENT can send traffic to PLC-1 and PLC-2. FGT-2 has only one software switch (SSW-2) connecting both PLC-3 and CLIENT. PLC-3 and CLIENT can send t...
intra-switch policysoftware switchLayer 2 isolationFortiGate segmentation - Question #36FortiGate OT Security
As an OT network administrator, you are managing three FortiGate devices that each protect different levels on the Purdue model. To increase traffic visibility, you are required to...
IPSprotocol detectionPLCPurdue model - Question #37FortiGate OT Security
Refer to the exhibit. An operational technology (OT) network security audit concluded that the application sensor does not block the IEC.60870.5.104_Information.Trasfer.C.BO.NA.1 s...
application controlsignature overrideIEC 60870industrial signatures - Question #38FortiGate OT Security
Refer to the exhibits. Which statement is true about the traffic passing through to PLC-2?
IEC 104application filter overridePLC trafficsignature actions - Question #39FortiAnalyzer for OT
Refer to the exhibit. An operational technology rule is created and successfully activated to monitor the Modbus protocol on FortiSIEM. However, the rule does not trigger incidents...
FortiSIEMModbus ruleSubPattern filterOT rule configuration - Question #40FortiGate OT Security
Refer to the exhibit. The FGT-Edge device is a VPN gateway that allows remote administrators access to the local ICS network. Management hires a third-party company to conduct heal...
VDOM segmentationVPN gatewayICS access controlthird-party access - Question #41OT Security and Compliance
Which two frameworks are common to secure ICS industrial processes, including SCADA and DCS? (Choose two.)
ICS frameworksIEC 62443NIST CybersecuritySCADA security standards - Question #42
Which two statements about the Modbus protocol are true? (Choose two.)
- Question #43FortiGate OT Security
Which two statements are true when you deploy FortiGate as an offline IDS? (Choose two.)
offline IDSport mirroringnetwork sensorFortiGate deployment modes - Question #44
Refer to the exhibit. An OT administrator ran a report to identify device inventory in an OT network. Based on the report results, which report was run?
- Question #45FortiAnalyzer for OT
An OT administrator deployed many devices to secure the OT network. However, the SOC team is reporting that there are too many alerts, and that many of the alerts are false positiv...
FortiSOARFortiSIEMSOC automationfalse positive reduction - Question #46
Refer to the exhibit. You need to configure VPN user access for supervisors at the breach and HQ sites using the same soft FortiToken. Each site has a FortiGate VPN gateway. What m...
- Question #47FortiGate OT Security
An ОТ supervisor has configured LDAP and FSSO for authentication. The goal is that all users be authenticated against passive authentication first and. if passive authentication is...
FSSOLDAP authenticationpassive authenticationactive authentication - Question #48FortiNAC for OT
An OT network architect needs to secure control area zones with a single network access policy to provision devices to any number of different networks. On which device can this be...
network access policydevice provisioningcontrol area zonemicro-segmentation - Question #49FortiGate OT Security
Refer to the exhibit. Based on the topology designed by the OT architect, which two statements about implementing OT security are true? (Choose two.)
OT topologyindustrial protocol inspectionIT/OT segmentationFortiGate placement - Question #50FortiNAC for OT
Which statement is correct about processing matched rogue devices by FortiNAC?
rogue device profilingdevice matching rulesFortiNAC behaviordevice remediation