
EC-CouncilIoT Security Essentials
Domain 3Objective 3
Native Applications ISE Practice Questions (Page 3)
Part of the IoT Advanced Topics domain, which makes up ~13% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–10 in this domain), expect 2–3 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
8concepts
Questions 11–15
- 11
A developer is writing a native app for a smart lighting system that uses CoAP over UDP for control. The app must also support discovery of devices on the local network. Which protocol interaction is most appropriate?
Select an answer first - 12
A developer is building a native app for a smart home hub that supports multiple IoT devices using different protocols (Zigbee, Z-Wave, and Wi-Fi). The app must provide a unified interface to control all devices. The developer is considering whether to use a native app or a hybrid web app. Which factor is most critical in this decision?
Select an answer first - 13
A developer is building a native iOS app that needs to send commands to a smart bulb over Wi-Fi using a custom TCP protocol. The app also needs to receive status updates from the bulb. The developer is considering using a WebSocket connection instead of raw TCP. What is the main advantage of using WebSocket for this IoT communication?
Select an answer first - 14
A company is developing a native iOS app for a medical device that transmits patient data to a cloud server. The app must comply with data protection regulations that require encryption of data in transit and at rest. The app currently uses HTTPS for cloud communication but stores patient data in a local SQLite database without encryption. What should the developer do to protect data at rest?
Select an answer first - 15
An industrial IoT solution uses a native Android app to configure sensors on a factory floor. The app is distributed through a private enterprise app store. The security team requires that when a sensor is decommissioned, the app must remove all locally stored configuration data and revoke the sensor's API credentials. Which lifecycle stage does this requirement primarily address?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ISE” is a trademark of its owner, used for identification only.