Download Fortinet NSE 6 - OT Security 7.6 Architect.NSE6_OTS_AR-7.6.ExamTopics.2026-05-27.24q.vcex

Vendor: Fortinet
Exam Code: NSE6_OTS_AR-7.6
Exam Name: Fortinet NSE 6 - OT Security 7.6 Architect
Date: May 27, 2026
File Size: 3 MB

How to open VCEX files?

Files with VCEX extension can be opened by ProfExam Simulator.

Demo Questions

Question 1
To improve visibility into the risks in your OT network, you would like to create a new report on FortiAnalyzer.
What must you do to create this report?
  1. Create a template or use an existing one.
  2. Import a report created in FortiSIEM.
  3. Enable the FortiAnalyzer Fabric settings.
  4. Clone a predefined report to create a new one.
Correct answer: A
Question 2
Match each industrial protocol to its corresponding characteristics.
Select each OT industrial protocol in the column on the left and drag and drop it into the blank space next to its corresponding characteristics in the column on the right. After matching a device type to its characteristics, you can move it again if you want to change your answer by clicking the industrial protocol name. You must match all four industrial protocols to their characteristics in the work area.
Correct answer: To work with this question, an Exam Simulator is required.
Question 3
In your OT environment, you want to detect the devices passively.
Which two methods must you implement? (Choose two.)
  1. SSH
  2. SNMP
  3. Vendor OUI
  4. Network traffic
Correct answer: C, D
Question 4
Refer to the exhibit.
A partial OT network is shown.
You must improve the security of this OT network and implement internal segmentation between network 1 and the network 2.
How can you achieve the segmentation?
  1. You can configure universal ZTNA.
  2. You can configure one traffic VDOM.
  3. You can configure an explicit software switch.
  4. You can configure forward domain IDs for each network.
Correct answer: D
Question 5
Refer to the exhibit.
A Run_report task is shown.
You want to automate the generation of a newly created report on FortiAnalyzer.
When you configure the Run_report task in Playbook, why is the report not shown in the Report field? (Choose two.)
  1. You must first configure the connector.
  2. You must first enable Extended Log Filtering in the report.
  3. You must first enable Auto-cache in the report.
  4. You must first configure an event handler.
  5. You must first select Playbook Starter, and then select the newly created report.
Correct answer: A, C
Question 6
You want to improve the security of your OT network and therefore deploy a FortiGate device with the OT signatures database.
Which two statements about this database are true? (Choose two.)
  1. You must install a valid OT security service license.
  2. You must import the OT signatures database manually.
  3. The OT signatures database is enabled by default.
  4. You must set exclude-signatures to none in the console line interface.
Correct answer: A, C
Question 7
In the Purdue model, at which level are physical assets like the Industrial Internet of Things (IIoT) placed?
  1. At Level 5 only
  2. At Level 1 only
  3. Above Level 4
  4. Below Level 3.5
Correct answer: B
Question 8
You want to improve access control for your large OT network using passive authentication.
What must you configure on FortiGate?
  1. Fortinet Single-Sign On (FSSO)
  2. Local users
  3. Two-factor authentication
  4. A FortiAuthenticator device as a remote server
Correct answer: A
Question 9
Refer to the exhibits.
A partial OT network and the Security Profiles section of the FortiGate_Level2 firewall policy are shown.
You have configured the FortiGate_Level2 firewall policy with a virtual patching profile because PLC-1 has vulnerabilities. A penetration test performed from the HMI device still reports vulnerabilities visible on PLC-1.
Which two additional parameters must you enable on FortiGate_Level2? (Choose two.)
  1. OT application control
  2. OT signatures
  3. Device detection on port2
  4. Device detection on port1
Correct answer: B, C
Question 10
Refer to the exhibit.
A partial OT network is shown.
You have configured the FortiGate device with VLANs to segment the OT network. The supervisor now wants to connect to the PLC from the Engineering Workstation.
How can you allow access from the Engineering Workstation to the PLC?
  1. You must configure intra-switch-policy as explicit.
  2. You must configure intra-switch-policy as implicit.
  3. You must configure forward domain IDs.
  4. You must configure a layer 3 switch.
Correct answer: A
Question 11
Refer to the exhibit.
A Logical Topology page of a FortiGate device is shown.
Your OT company wants to gain visibility into the network. You decide to implement device detection with the Security Fabric.
Based on the exhibit, which statement is correct?
  1. Device Detection is enabled on the other identified device.
  2. The other identified device must be authorized on the root FortiGate.
  3. The other identified device must be authorized on FortiAnalyzer.
  4. Device Detection is enabled on port3.
Correct answer: D
HOW TO OPEN VCE FILES

Use VCE Exam Simulator to open VCE files
Avanaset

HOW TO OPEN VCEX FILES

Use ProfExam Simulator to open VCEX files
ProfExam Screen

ProfExam
ProfExam at a 20% markdown

You have the opportunity to purchase ProfExam at a 20% reduced price

Get Now!