Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

Free Certified Internet of Things Security Practitioner (CIoTSP) Practice Questions

Exams4sure Dumps

Exam style questions across every ITS-110 domain

Last Update 2 days ago
Total Questions : 100

Start with our free ITS-110 practice questions, carefully crafted to mirror the domains, phrasing, and difficulty of the real Certified IoT Security Practitioner exam. Each ITS-110 exam question comes with a detailed rationale that explains not just which answer is correct but why the others fall short. That's how concepts stick. Use the free set to benchmark yourself: identify your CertNexus weak domains, see where you're losing marks, and build a focused study plan in minutes.

ITS-110 PDF

ITS-110 PDF (Printable)
$54.25
$154.99

ITS-110 Testing Engine

ITS-110 PDF (Printable)
$59.5
$169.99

ITS-110 PDF + Testing Engine

ITS-110 PDF (Printable)
$74.55
$212.99
Question # 1

Which of the following is one way to implement countermeasures on an IoT gateway to ensure physical security?

Options:

A.  

Add tamper detection to the enclosure

B.  

Limit physical access to ports when possible

C.  

Allow quick administrator access for mitigation

D.  

Implement features in software instead of hardware

Discussion 0
Question # 2

A hacker wants to discover login names that may exist on a website. Which of the following responses to the login and password entries would aid in the discovery? (Choose two.)

Options:

A.  

Your login attempt was unsuccessful

B.  

Invalid password

C.  

That user does not exist

D.  

The username and/or password are incorrect

E.  

Incorrect email/password combination

Discussion 0
Question # 3

A DevOps engineer wants to provide secure network services to an IoT/cloud solution. Which of the following countermeasures should be implemented to mitigate network attacks that can render a network useless?

Options:

A.  

Network firewall

B.  

Denial of Service (DoS)/Distributed Denial of Service (DDoS) mitigation

C.  

Web application firewall (WAF)

D.  

Deep Packet Inspection (DPI)

Discussion 0
Question # 4

In designing the campus of an IoT device manufacturer, a security consultant was hired to recommend best practices for deterring criminal behavior. Which of the following approaches would he have used to meet his client's needs?

Options:

A.  

Crime Prevention Through Environmental Design (CPTED)

B.  

British Standard 7799 part 3 (BS 7799-3)

C.  

International Organization for Standardization 17799 (ISO 17799)

D.  

National Institute of Standards and Technology Cybersecurity Framework (NIST CSF)

Discussion 0
Question # 5

A hacker is attempting to exploit a known software flaw in an IoT portal in order to modify the site's administrative configuration. Which of the following BEST describes the type of attack the hacker is performing?

Options:

A.  

Privilege escalation

B.  

Transmission control protocol (TCP) flooding

C.  

Application fuzzing

D.  

Birthday attack

Discussion 0
Question # 6

An IoT developer needs to ensure that user passwords for a smartphone app are stored securely. Which of the following methods should the developer use to meet this requirement?

Options:

A.  

Encrypt all stored passwords using 256-bit Advanced Encryption Standard (AES-256)

B.  

Encrypt all stored passwords using 128-bit Twofish

C.  

Hash all passwords using Message Digest 5 (MD5)

D.  

Store all passwords in read-only memory

Discussion 0
Question # 7

Which of the following functions can be added to the authorization component of AAA to enable the principal of least privilege with flexibility?

Options:

A.  

Discretionary access control (DAC)

B.  

Role-based access control (RBAC)

C.  

Mandatory access control (MAC)

D.  

Access control list (ACL)

Discussion 0
Question # 8

An IoT security administrator is concerned that someone could physically connect to his network and scan for vulnerable devices. Which of the following solutions should he install to prevent this kind of attack?

Options:

A.  

Media Access Control (MAC)

B.  

Network Access Control (NAC)

C.  

Host Intrusion Detection System (HIDS)

D.  

Network Intrusion Detection System (NIDS)

Discussion 0
Question # 9

Which of the following tools or techniques is used by software developers to maintain code, but also used by hackers to maintain control of a compromised system?

Options:

A.  

Disassembler

B.  

Backdoor

C.  

Debugger

D.  

Stack pointer

Discussion 0
Question # 10

An IoT integrator wants to deploy an IoT gateway at the Edge and have it connect to the cloud via API. In order to minimize risk, which of the following actions should the integrator take before integration?

Options:

A.  

Write down the default login and password

B.  

Remove all logins and passwords that may exist

C.  

Create new credentials using a strong password

D.  

Reset the IoT gateway to factory defaults

Discussion 0

Free Exams Sample Questions