
CertNexusCertified IoT Security Practitioner (CIoTSP)
Domain 7Objective 1
Objective 7.1 Identify Common Threats Used to Exploit Poor Physical Security. CERTIFIED-IOT-SECURITY-PRACTITIONER Practice Questions (Page 2)
Part of the 7.0 Enhancing Physical Security domain, which accounts for 7% of the CERTIFIED-IOT-SECURITY-PRACTITIONER exam.
21questions here
5free pages
5concepts
7%of the exam
Questions 6–10
- 6
An IoT device has an exposed USB port that an attacker uses to connect a keyboard and inject commands. Which type of physical security threat does this describe?
Select an answer first - 7
What is the primary risk associated with storage media theft from an IoT device?
Select an answer first - 8
A company uses IoT sensors that store data on SD cards. The sensors are deployed in a remote location that is not physically secured. The company is concerned about both theft of the SD cards and unauthorized access to the sensor's debug port. Which combination of controls would be the most effective?
Select an answer first - 9
An attacker opens an IoT device's casing to access the flash memory chip and read its contents. Which threat does this describe?
Select an answer first - 10
A manufacturing plant has a programmable logic controller (PLC) that controls a robotic arm. The PLC has an Ethernet port that is connected to the plant's OT network, and a USB port that is used for programming. The plant manager wants to allow maintenance engineers to update the PLC's firmware, but is concerned about unauthorized access. The USB port cannot be disabled because the vendor's software requires it for firmware updates. Which combination of controls would best balance the need for maintenance with the risk of unauthorized access?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CertNexus. “CERTIFIED-IOT-SECURITY-PRACTITIONER” is a trademark of its owner, used for identification only.