
EC-CouncilCertified Network Defender
Domain 2Objective 5
Endpoint Security IoT Devices CND Practice Questions (Page 4)
Part of the Perimeter and Endpoint Security domain, which makes up ~24% of our current practice bank.
53questions here
11free pages
9concepts
Questions 16–20
- 16
A hospital uses smart infusion pumps that receive firmware updates from the vendor. The security team wants to ensure that only authentic, untampered firmware can be installed on the pumps. Which control is most directly aligned with this requirement?
Select an answer first - 17
A retail chain installs smart shelves that use default credentials and have an open debug port. The shelves are placed in customer-accessible areas and connected to the store's main Wi-Fi. Which combination of actions should the network defender prioritize to reduce the risk of a customer tampering with the shelves and pivoting into the corporate network?
Select an answer first - 18
Which network device is commonly used to enforce network segmentation by controlling traffic between different segments?
Select an answer first - 19
A smart-home device uses Bluetooth Low Energy (BLE) to communicate with a mobile app. A security researcher finds that the BLE pairing process does not require authentication, allowing any nearby device to connect. Which control would BEST mitigate this vulnerability?
Select an answer first - 20
A company has deployed IoT devices across multiple sites. The security team wants to set up monitoring to detect anomalies, but the devices generate a high volume of low-level telemetry. The team is concerned about alert fatigue. Which approach best balances detection capability with manageable alert volumes?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.