
Fortinet NSE 7 - OT Security 7.2 - NSE7_OTS-7.2 Exam Questions
QUESTION NO: 1
What are two benefits of a Nozomi integration with FortiNAC? (Choose two.)
What are two benefits of a Nozomi integration with FortiNAC? (Choose two.)
Correct Answer: A,B
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 2
What is the primary objective of implementing SD-WAN in operational technology (OT) networks?
What is the primary objective of implementing SD-WAN in operational technology (OT) networks?
Correct Answer: B
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 3
Which three Fortinet products can you use for device identification in an OT industrial control system (ICS)? (Choose three.)
Which three Fortinet products can you use for device identification in an OT industrial control system (ICS)? (Choose three.)
Correct Answer: A,B,D
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 4
To increase security protection in an OT network, how does application control on ForliGate detect industrial traffic?
To increase security protection in an OT network, how does application control on ForliGate detect industrial traffic?
Correct Answer: B
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 5
An OT customer is using multiple FortiGate devices in their network to implement two-factor authentication with hardware FortiTokens. A supervisor is carrying multiple FortiTokens to be used when logging in to a critical server behind different FortiGate devices.
As an OT network architect, which approach must you take in order to assign one token per user and still use two-factor authentication on multiple FortiGate devices?
An OT customer is using multiple FortiGate devices in their network to implement two-factor authentication with hardware FortiTokens. A supervisor is carrying multiple FortiTokens to be used when logging in to a critical server behind different FortiGate devices.
As an OT network architect, which approach must you take in order to assign one token per user and still use two-factor authentication on multiple FortiGate devices?
Correct Answer: B
QUESTION NO: 6
Refer to the exhibit. In the topology shown in the exhibit, both PLCs can communicate directly with each other without going through the firewall.
What can be done to improve the security in this situation?

Refer to the exhibit. In the topology shown in the exhibit, both PLCs can communicate directly with each other without going through the firewall.
What can be done to improve the security in this situation?

Correct Answer: A
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 7
Refer to the exhibit. The IPS profile is added on all of the security policies on FortiGate. For an OT network, which statement of the IPS profile is true?

Refer to the exhibit. The IPS profile is added on all of the security policies on FortiGate. For an OT network, which statement of the IPS profile is true?

Correct Answer: B
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 8
FortiAnalyzer is implemented in the OT network to receive logs from responsible FortiGate devices. The logs must be processed by FortiAnalyzer.
In this scenario, which statement is correct about the purpose of FortiAnalyzer receiving and processing multiple log messages from a given PLC or RTU?
FortiAnalyzer is implemented in the OT network to receive logs from responsible FortiGate devices. The logs must be processed by FortiAnalyzer.
In this scenario, which statement is correct about the purpose of FortiAnalyzer receiving and processing multiple log messages from a given PLC or RTU?
Correct Answer: A
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).
QUESTION NO: 9
Which statement is correct about processing matched rogue devices by FortiNAC?
Which statement is correct about processing matched rogue devices by FortiNAC?
Correct Answer: D
Explanation: Only visible for Pass4Test members. You can sign-up / login (it's free).




