Summer Sale Limited Time 75% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code = simple75

Pass the Fortinet Network Security Expert NSEI_OTS_AR-7.6 Questions and answers with Dumpstech

Exam NSEI_OTS_AR-7.6 Premium Access

View all detail and faqs for the NSEI_OTS_AR-7.6 exam

Practice at least 50% of the questions to maximize your chances of passing.
Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions
Questions # 1:

In the Purdue model, at which level are physical assets like the Industrial Internet of Things (IIoT) placed? (Choose one answer)

Options:

A.

At Level 5 only

B.

At Level 1 only

C.

Above Level 4

D.

Below Level 3.5

Questions # 2:

Refer to the exhibit.

Question # 2

A Run_report task is shown. You want to automate the generation of a newly created report on FortiAnalyzer . When you configure the Run_report task in Playbook, why is the report not shown in the Report field? (Choose two answers)

Options:

A.

You must first configure the connector.

B.

You must first enable Extended Log Filtering in the report.

C.

You must first enable Auto-cache in the report.

D.

You must first configure an event handler.

E.

You must first select Playbook Starter, and then select the newly created report.

Questions # 3:

You want to improve the security of your OT network and therefore deploy a FortiGate device with the OT signatures database. Which two statements about this database are true? (Choose two answers)

Options:

A.

You must install a valid OT security service license.

B.

You must import the OT signatures database manually.

C.

The OT signatures database is enabled by default.

D.

You must set exclude-signatures to none in the console line interface.

Questions # 4:

Refer to the exhibits.

Question # 4

The Playbook Monitor dashboard and the analysis of the corresponding incident analysis are shown. You created the playbook with the objective of automatically attaching the report to the incident that was created. Which two statements are correct? (Choose two answers)

Options:

A.

You must wait for the report to be generated and attached to the incident.

B.

Only the Create_Incident task was executed.

C.

The tasks in the playbook must be reordered.

D.

The playbook was triggered manually.

Questions # 5:

Refer to the exhibits.

Question # 5

A partial view of the Playbook Monitor page and the corresponding playbook configuration are shown. Based on the monitor page and the configuration of the playbook, what has triggered the Run_Report task? (Choose one answer)

Options:

A.

An IPS_Attack_Handling event

B.

An IPS incident creation

C.

An Event_Trigger log

D.

An IPS_Attack_Incident log

Questions # 6:

Refer to the exhibit.

Question # 6

An automation trigger creation wizard is shown. You want to automate some tasks in your OT network. In a FortiGate device, you create a new automation trigger based on a FortiAnalyzer event handler. When you want to configure the Event handler name field, the event handler created in FortiAnalyzer is not shown. What are two reasons for this? (Choose two answers)

Options:

A.

You must configure the Fabric settings on the FortiGate device.

B.

You must enable Automation Stitch in the event handler on FortiAnalyzer.

C.

You must click + Create in the Event handler name field.

D.

You must add the FortiGate device to FortiAnalyzer and authorize it.

Questions # 7:

What is the next step if FortiGate cannot detect a device locally? (Choose one answer)

Options:

A.

FortiGate queries FortiGuard servers.

B.

FortiGate queries the profiling rules.

C.

FortiGate queries OT servers through service connectors.

D.

FortiGate queries the local device database (CIDB).

Questions # 8:

During layer 2 polling , which two pieces of information are gathered by FortiNAC to identify a device? (Choose two answers)

Options:

A.

Where it was learned

B.

The MAC-to-IP correlation learned

C.

The system name learned

D.

The time it was learned

Questions # 9:

Refer to the exhibit.

Question # 9

A Virtual Patching profile is shown. You have recently updated your SCADA system and would like to apply the SCADA virtual patching profile. Which two statements about this profile are correct? (Choose two answers)

Options:

A.

Only the vulnerability Schneider.Electric.ClearSCADA.HTTP.Interface.XSS is still present.

B.

Low severity signatures are not blocked for the device with the MAC address 12:12:12:12:12.

C.

This profile blocks critical severity signatures for all the devices.

D.

The device with the MAC address 11:11:11:11:11 is considered to have no vulnerabilities.

Questions # 10:

You want FortiAnalyzer to trigger an automation stitch on a FortiGate device automatically. What must you configure on FortiAnalyzer to enable direct communication with FortiGate? (Choose one answer)

Options:

A.

A Fabric connector

B.

A playbook task

C.

The Fabric settings

D.

An event handler

Viewing page 1 out of 2 pages
Viewing questions 1-10 out of questions