
EC-CouncilCertified Network Defender
Domain 2Objective 5
Endpoint Security IoT Devices CND Practice Questions (Page 5)
Part of the Perimeter and Endpoint Security domain, which makes up ~24% of our current practice bank.
53questions here
11free pages
9concepts
Questions 21–25
- 21
A European company deploys IoT devices that collect personal data from employees. The company must ensure the devices comply with GDPR. Which practice is REQUIRED under GDPR for this IoT deployment?
Select an answer first - 22
A company uses Zigbee-based smart lighting in its office. The security team is concerned about attacks that could compromise the Zigbee network and then pivot to the corporate network. Which control is most effective to limit the impact of a Zigbee compromise?
Select an answer first - 23
A water treatment facility uses outdoor IoT sensors to monitor chlorine levels. The sensors are mounted on poles with accessible enclosures. A recent audit found that the enclosures can be opened without tools, exposing the circuit boards and debug ports. Which control is most directly needed to address this finding?
Select an answer first - 24
Which IoT communication protocol is designed for constrained devices and uses a RESTful request-response model over UDP, making it suitable for low-power, lossy networks?
Select an answer first - 25
A global company deploys IoT sensors in multiple countries, including the EU. The sensors collect personal data. The company wants to comply with GDPR while also ensuring that data can be processed in a central data center located outside the EU. Which approach is most compliant?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.