NSE7_OTS-6.4 Fortinet NSE 7 - OT Security 6.4

Loading demo links...

Showing 1–3 of 5 questions

Question 1

Refer to the exhibit.

C:\Users\Admin\Desktop\Data\Odt data\Untitled.jpg

Based on the topology designed by the OT architect, which two statements about implementing OT security are true? (Choose two.)

Select all that apply, then click Submit answer.

  • Firewall policies should be configured on FortiGate-3 and FortiGate-4 with industrial protocol sensors.

  • Micro-segmentation can be achieved only by replacing FortiGate-3 and FortiGate-4 with a pair of FortiSwitch devices.

  • IT and OT networks are separated by segmentation.

  • FortiGate-3 and FortiGate-4 devices must be in a transparent mode.

Question 2

Refer to the exhibit, which shows a non-protected OT environment.

C:\Users\Admin\Desktop\Data\Odt data\Untitled.jpg

An administrator needs to implement proper protection on the OT network.

Which three steps should an administrator take to protect the OT network? (Choose three.)

Select all that apply, then click Submit answer.

  • Deploy an edge FortiGate between the internet and an OT network as a one-arm sniffer.

  • Deploy a FortiGate device within each ICS network.

  • Configure firewall policies with web filter to protect the different ICS networks.

  • Configure firewall policies with industrial protocol sensors

  • Use segmentation

Question 3

An OT supervisor needs to protect their network by implementing security with an industrial signature database on the FortiGate device.

Which statement about the industrial signature database on FortiGate is true?

Select an option, then click Submit answer.

  • A supervisor must purchase an industrial signature database and import it to the FortiGate.

  • An administrator must create their own database using custom signatures.

  • By default, the industrial database is enabled.

  • A supervisor can enable it through the FortiGate CLI.