Pre-Summer Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: mxmas70

Home > Fortinet > NSE 6 Network Security Specialist > NSE6_OTS_AR-7.6

NSE6_OTS_AR-7.6 Fortinet NSE 6 - OT Security 7.6 Architect Question and Answers

Question # 4

Which industrial protocol does not support VLANs? (Choose one answer)

A.

[Not clearly visible in the exhibit]

B.

Ethernet over industrial protocol

C.

EtherCAT

D.

Modbus over TCP

Full Access
Question # 5

You want to protect OT devices that are not updated against known vulnerabilities so you apply virtual patching to the firewall policies. What must you check to confirm that the OT devices are virtually patched? (Choose one answer)

A.

The output of the CLI command get virtual-patch profile

B.

The OT View page

C.

The output of the CLI command get rule otvp status

D.

The Asset Identity List page

Full Access
Question # 6

According to the IEC 62443 standard, your security level is 4 . What is your OT environment defending against? (Choose one answer)

A.

Intentional cyberthreats posed by skilled malicious users

B.

An intentional attack with low resources

C.

A syndicate of cyber extortion with extensive resources

D.

A casual exposure

Full Access
Question # 7

Refer to the exhibit.

Which statement about this partial Asset Identity List page is correct? (Choose one answer)

A.

A firewall policy has an Antivirus security profile applied to it.

B.

A firewall policy has a Virtual Patching security profile applied to it.

C.

A firewall policy has an Intrusion Prevention security profile applied to it.

D.

A firewall policy has an Application Control security profile applied to it.

Full Access
Question # 8

Refer to the exhibit.

A Virtual Patching profile is shown. You have recently updated your SCADA system and would like to apply the SCADA virtual patching profile. Which two statements about this profile are correct? (Choose two answers)

A.

Only the vulnerability Schneider.Electric.ClearSCADA.HTTP.Interface.XSS is still present.

B.

Low severity signatures are not blocked for the device with the MAC address 12:12:12:12:12.

C.

This profile blocks critical severity signatures for all the devices.

D.

The device with the MAC address 11:11:11:11:11 is considered to have no vulnerabilities.

Full Access
Question # 9

Refer to the exhibit.

A partial OT network is shown. You want to configure an automated alert sent by FortiAnalyzer when an attack occurs on a FortiGate device. Which two configurations must you implement? (Choose two answers)

A.

You must configure a stitch on the root FortiGate.

B.

You must configure a LOCALHOST task in the FortiAnalyzer playbook.

C.

You must configure an intrusion prevention security profile on all FortiGate devices.

D.

You must configure an event handler on FortiAnalyzer.

Full Access
Question # 10

You want to improve access control for your large OT network using passive authentication. What must you configure on FortiGate? (Choose one answer)

A.

Fortinet Single-Sign On (FSSO)

B.

Local users

C.

Two-factor authentication

D.

A FortiAuthenticator device as a remote server

Full Access
Question # 11

Refer to the exhibit.

A basic event handler is shown. You have enabled Automation Stitch to automate the handling of an alert. Which two steps must you take to use this automation stitch? (Choose two answers)

A.

You must configure Action on FortiAnalyzer.

B.

You must configure a Playbook task on FortiAnalyzer.

C.

You must configure a FortiAnalyzer event handler trigger on FortiGate.

D.

You must configure Rules on FortiAnalyzer.

Full Access
Question # 12

During layer 2 polling , which two pieces of information are gathered by FortiNAC to identify a device? (Choose two answers)

A.

Where it was learned

B.

The MAC-to-IP correlation learned

C.

The system name learned

D.

The time it was learned

Full Access
Question # 13

Refer to the exhibits.

The Playbook Monitor dashboard and the analysis of the corresponding incident analysis are shown. You created the playbook with the objective of automatically attaching the report to the incident that was created. Which two statements are correct? (Choose two answers)

A.

You must wait for the report to be generated and attached to the incident.

B.

Only the Create_Incident task was executed.

C.

The tasks in the playbook must be reordered.

D.

The playbook was triggered manually.

Full Access