Limited-Time Offer: Enjoy 50% Savings! Ends in 00h 00m 00s Coupon code: 50OFF
Skip to content

Free CertNexus Certified Internet of Things Security Practitioner ITS-110 Exam Questions

Page: 1 / 10 Total 100 questions

Want more questions? Get Premium Access.

Question 1

An IoT system administrator wants to mitigate the risk of rainbow table attacks. Which of the following methods or technologies can the administrator implement in order to address this concern?

Correct Answer: B. Enable account database encryption

Question 2

An IoT manufacturer wants to ensure that their web-enabled cameras are secured against brute force password attacks. Which of the following technologies or protocols could they implement?

Correct Answer: B. Account lockout policies

Question 3

An IoT systems administrator needs to be able to detect packet injection attacks. Which of the follow methods or technologies is the administrator most likely to implement?

Correct Answer: D. Internet Protocol Security (IPSec) with Authentication Headers (AH)

Question 4

Which of the following attacks utilizes Media Access Control (MAC) address spoofing?

Correct Answer: B. Man-in-the-middle (MITM)

Question 5

An IoT systems integrator has a very old IoT gateway that doesn't offer many security features besides viewing a system configuration page via browser over HTTPS. The systems integrator can't get their modern browser to bring up the page due to a cipher suite mismatch. Which of the following must the integrator perform before the configuration page can be viewed?

Correct Answer: C. Upgrade the browser, as older browsers have stopped allowing connections to hosts that use only outdated cipher suites.

Question 6

An IoT security administrator is concerned that someone could physically connect to his network and scan for vulnerable devices. Which of the following solutions should he install to prevent this kind of attack?

Correct Answer: D. Network Intrusion Detection System (NIDS)

Question 7

Web forms that contain unvalidated fields are vulnerable to which of the following attacks? (Choose two.)

Correct Answer: C. Cross-Site Scripting (XSS); E. SQL Injection (SQLi)

Question 8

An IoT system administrator discovers that unauthorized users are able to log onto and access data on remote IoT monitoring devices. What should the system administrator do on the remote devices in order to address this issue?

Correct Answer: C. Change default passwords

Question 9

A hacker was able to generate a trusted certificate that spoofs an IoT-enabled security camera's management portal. Which of the following is the most likely cause of this exploit?

Correct Answer: C. X.509 private keys are stored in unsecure flash memory

Question 10

An embedded engineer wants to implement security features to be sure that the IoT gateway under development will only load verified images. Which of the following countermeasures could be used to achieve this goal?

Correct Answer: B. Enforce a secure boot function