
CertNexusCertified IoT Security Practitioner (CIoTSP)
Domain 1Objective 2
Objective 1.2 Implement Countermeasures Used to Secure Web, Cloud, or Mobile Interfaces. CERTIFIED-IOT-SECURITY-PRACTITIONER Practice Questions (Page 2)
Part of the 1.0 Securing IoT Portals domain, which accounts for 29% of the CERTIFIED-IOT-SECURITY-PRACTITIONER exam.
34questions here
7free pages
9concepts
29%of the exam
Questions 6–10
- 6
Which password policy element is most effective at resisting brute-force and dictionary attacks?
Select an answer first - 7
Which combination of countermeasures is most effective for preventing XSS and SQL injection attacks on a web interface?
Select an answer first - 8
An IoT portal's login page is being targeted by a brute-force attack that locks out legitimate users, causing a denial of service. The security team wants to mitigate the attack without enabling account enumeration or permanently locking out valid users. Which approach is most effective?
Select an answer first - 9
What is the primary purpose of enforcing password expiration in an organization?
Select an answer first - 10
Which response is an example of account enumeration prevention?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CertNexus. “CERTIFIED-IOT-SECURITY-PRACTITIONER” is a trademark of its owner, used for identification only.