Pre-Winter Sale Discount Flat 70% Offer - Ends in 0d 00h 00m 00s - Coupon code: 70diswrap

Fortinet NSEI_OTS_AR-7.6 Dumps

Fortinet NSE I - OT Security 7.6 Architect Questions and Answers

Question 1

Refer to the exhibit.

as

A Run_report task is shown. You want to automate the generation of a newly created report on FortiAnalyzer . When you configure the Run_report task in Playbook, why is the report not shown in the Report field? (Choose two answers)

Options:

A.

You must first configure the connector.

B.

You must first enable Extended Log Filtering in the report.

C.

You must first enable Auto-cache in the report.

D.

You must first configure an event handler.

E.

You must first select Playbook Starter, and then select the newly created report.

Question 2

Refer to the exhibit.

as

An industrial Ethernet protocol skipping layers 3 to 6 is shown. Which industrial Ethernet protocol is it? (Choose one answer)

Options:

A.

POWERLINK

B.

Ethernet over industrial protocol

C.

Modbus

D.

EtherCAT

Question 3

Refer to the exhibit.

as

A partial OT network is shown. You want to provide the supervisor with secure remote access. Which two features can you implement on Edge-FortiGate ? (Choose two answers)

Options:

A.

IPsec

B.

FortiToken

C.

SD-WAN

D.

FSSO

Question 4

Refer to the exhibit.

as

A partial OT network is shown.

The OT network is divided into two main networks with a FortiGate device operating in NAT mode.

How can you further segment network 1 from network 2?

Options:

A.

You can configure universal ZTNA.

B.

You can configure the FortiGate interface as an implicit software switch.

C.

You can configure two traffic VDOMs.

D.

You can configure different forward domain IDs for network 1 and network 2.

Question 5

How are rogue devices evaluated in FortiNAC? (Choose one answer)

Options:

A.

Through device profiling rules

B.

Through queries to FortiGuard servers

C.

Through the import of the devices list

D.

Through the local device database (CIDB)

Question 6

Which industrial protocol does not support VLANs? (Choose one answer)

Options:

A.

[Not clearly visible in the exhibit]

B.

Ethernet over industrial protocol

C.

EtherCAT

D.

Modbus over TCP

Question 7

What is the main OT component for monitoring and controlling industrial processes? (Choose one answer)

Options:

A.

Programmable Logical Controller (PLC)

B.

Supervisory Control and Data Acquisition (SCADA)

C.

Industrial Control System (ICS)

D.

Industrial Internet of Things (IIoT)

Question 8

Refer to the exhibit.

as

A partial OT network is shown. You must improve the security of this OT network and implement internal segmentation between network 1 and network 2. How can you achieve the segmentation? (Choose one answer)

Options:

A.

You can configure universal ZTNA.

B.

You can configure one traffic VDOM.

C.

You can configure an explicit software switch.

D.

You can configure forward domain IDs for each network.

Question 9

According to the IEC 62443 standard, your security level is 4 . What is your OT environment defending against? (Choose one answer)

Options:

A.

Intentional cyberthreats posed by skilled malicious users

B.

An intentional attack with low resources

C.

A syndicate of cyber extortion with extensive resources

D.

A casual exposure

Question 10

Refer to the exhibit. A partial OT network is shown. You must improve the security of this OT network and implement internal segmentation between network 1 and network 2. How can you achieve the segmentation? (Choose one answer)

as

Options:

A.

You can configure universal ZTNA.

B.

You can configure one traffic VDOM.

C.

You can configure an explicit software switch.

D.

You can configure forward domain IDs for each network.

Question 11

Refer to the exhibits.

as

A partial Basic Event Handler page on FortiAnalyzer and the creation of a trigger in a FortiGate device are shown. To improve the protection of your OT network, you want to automate the handling of compromised devices notified through FortiAnalyzer. You have configured an event handler named Alert_trigger as shown in the exhibit. When you create the trigger on the FortiGate device, the Event handler name field does not provide the Alert_trigger option. What two actions must you perform to make the Alert_trigger option available? (Choose two answers)

Options:

A.

You must click + Create in the Event handler name field.

B.

You must authorize the FortiGate device on FortiAnalyzer.

C.

You must configure the FortiAnalyzer setting on the FortiGate device.

D.

You must configure the trigger on the root FortiGate.

Question 12

What is the next step if FortiGate cannot detect a device locally? (Choose one answer)

Options:

A.

FortiGate queries FortiGuard servers.

B.

FortiGate queries the profiling rules.

C.

FortiGate queries OT servers through service connectors.

D.

FortiGate queries the local device database (CIDB).

Question 13

Refer to the exhibits.

as

The Playbook Monitor dashboard and the analysis of the corresponding incident analysis are shown. You created the playbook with the objective of automatically attaching the report to the incident that was created. Which two statements are correct? (Choose two answers)

Options:

A.

You must wait for the report to be generated and attached to the incident.

B.

Only the Create_Incident task was executed.

C.

The tasks in the playbook must be reordered.

D.

The playbook was triggered manually.

Question 14

Refer to the exhibit.

as

A partial OT network is shown. You have encountered many disconnections in the links and want to improve the availability of this network. Which action can you perform? (Choose one answer)

Options:

A.

You can implement HA clusters.

B.

You can implement SD-WAN at Floor-1-FortiGate and Floor-2-FortiGate.

C.

You can implement parallel redundancy protocol.

D.

You can implement VDOMs in Edge-FortiGate.

Question 15

Refer to the exhibit.

as

A partial OT network is shown.

You have recently removed the air gap in the network to provide full connectivity.

What must you configure to protect your OT network from external attacks?

Options:

A.

OT signatures on FortiGate_Level3

B.

Virtual patching on FortiGate_Level2

C.

OT application control on all FortiGate devices

D.

IPS on FortiGate_Level5

Question 16

In the Purdue model, at which level are physical assets like the Industrial Internet of Things (IIoT) placed? (Choose one answer)

Options:

A.

At Level 5 only

B.

At Level 1 only

C.

Above Level 4

D.

Below Level 3.5

Page: 1 / 6
Total 56 questions