
CertNexus Certified Internet of Things Security Practitioner - ITS-110 Exam Questions
QUESTION NO: 1
An IoT system administrator discovers that hackers are using rainbow tables to compromise user accounts on their cloud management portal. What should the administrator do in order to mitigate this risk?
An IoT system administrator discovers that hackers are using rainbow tables to compromise user accounts on their cloud management portal. What should the administrator do in order to mitigate this risk?
Correct Answer: A
QUESTION NO: 2
The network administrator for an organization has read several recent articles stating that replay attacks are on the rise. Which of the following secure protocols could the administrator implement to prevent replay attacks via remote workers' VPNs? (Choose three.)
The network administrator for an organization has read several recent articles stating that replay attacks are on the rise. Which of the following secure protocols could the administrator implement to prevent replay attacks via remote workers' VPNs? (Choose three.)
Correct Answer: B,C,E
QUESTION NO: 3
You work for a multi-national IoT device vendor. Your European customers are complaining about their inability to access the personal information about them that you have collected. Which of the following regulations is your organization at risk of violating?
You work for a multi-national IoT device vendor. Your European customers are complaining about their inability to access the personal information about them that you have collected. Which of the following regulations is your organization at risk of violating?
Correct Answer: A
QUESTION NO: 4
Which of the following technologies allows for encryption of networking communications without requiring any configuration on IoT endpoints?
Which of the following technologies allows for encryption of networking communications without requiring any configuration on IoT endpoints?
Correct Answer: C
QUESTION NO: 5
An IoT gateway will be brokering data on numerous northbound and southbound interfaces. A security practitioner has the data encrypted while stored on the gateway and encrypted while transmitted across the network. Should this person be concerned with privacy while the data is in use?
An IoT gateway will be brokering data on numerous northbound and southbound interfaces. A security practitioner has the data encrypted while stored on the gateway and encrypted while transmitted across the network. Should this person be concerned with privacy while the data is in use?
Correct Answer: A
QUESTION NO: 6
A compromised IoT device is initiating random connections to an attacker's server in order to exfiltrate sensitive dat a. Which type of attack is being used?
A compromised IoT device is initiating random connections to an attacker's server in order to exfiltrate sensitive dat a. Which type of attack is being used?
Correct Answer: A
QUESTION NO: 7
An IoT integrator wants to deploy an IoT gateway at the Edge and have it connect to the cloud via API. In order to minimize risk, which of the following actions should the integrator take before integration?
An IoT integrator wants to deploy an IoT gateway at the Edge and have it connect to the cloud via API. In order to minimize risk, which of the following actions should the integrator take before integration?
Correct Answer: C
QUESTION NO: 8
A hacker enters credentials into a web login page and observes the server's responses. Which of the following attacks is the hacker attempting?
A hacker enters credentials into a web login page and observes the server's responses. Which of the following attacks is the hacker attempting?
Correct Answer: A
QUESTION NO: 9
A DevOps engineer wants to provide secure network services to an IoT/cloud solution. Which of the following countermeasures should be implemented to mitigate network attacks that can render a network useless?
A DevOps engineer wants to provide secure network services to an IoT/cloud solution. Which of the following countermeasures should be implemented to mitigate network attacks that can render a network useless?
Correct Answer: C
QUESTION NO: 10
An IoT device which allows unprotected shell access via console ports is most vulnerable to which of the following risks?
An IoT device which allows unprotected shell access via console ports is most vulnerable to which of the following risks?
Correct Answer: A




