
CertNexusCertified IoT Security Practitioner (CIoTSP)
Domain 1Objective 2
Objective 1.2 Implement Countermeasures Used to Secure Web, Cloud, or Mobile Interfaces. CERTIFIED-IOT-SECURITY-PRACTITIONER Practice Questions (Page 6)
Part of the 1.0 Securing IoT Portals domain, which accounts for 29% of the CERTIFIED-IOT-SECURITY-PRACTITIONER exam.
34questions here
7free pages
9concepts
29%of the exam
Questions 26–30
- 26
Which implementation best supports a secure password recovery flow?
Select an answer first - 27
What is the primary security benefit of an account lockout policy?
Select an answer first - 28
An IoT vendor's cloud portal stores user passwords. A recent audit found that passwords are stored in plaintext in the database, and the same password is used for the portal and the device's local admin account. The security team wants to improve credential protection without disrupting user experience. Which change is most appropriate?
Select an answer first - 29
What is the purpose of using anti-CSRF tokens in a web interface?
Select an answer first - 30
Which practice is the best way to handle the default administrator password on a newly installed IoT portal component?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CertNexus. “CERTIFIED-IOT-SECURITY-PRACTITIONER” is a trademark of its owner, used for identification only.