Fortinet Network Security Expert (NSE) Exam
- Which of the following best defines network security?
- Protection of network hardware only
- Strategy to manage network performance
- Safeguarding networks from unauthorized access and attacks
- Process of physically maintaining cables
Answer: C
Explanation: Network security involves protecting networks from unauthorized access, misuse, or modification by implementing various policies, procedures, and technology measures.
- What is the primary objective of the CIA triad in network security?
- Confidentiality, Integrity, Availability
- Control, Implementation, Access
- Confidentiality, Implementation, Authentication
- Control, Integrity, Analysis
Answer: A
Explanation: The CIA triad stands for Confidentiality, Integrity, and Availability, which are the three primary goals of any secure network.
- Which element is considered a key component of network security architecture?
- High-speed internet cables
- Encryption protocols
- Operating system updates 1 / 4
Fortinet Network Security Expert (NSE) Exam
- Graphical user interfaces
Answer: B
Explanation: Encryption protocols are critical for protecting data in transit and ensuring secure communication in network security architectures.
- What is a common threat that exploits network vulnerabilities by deceiving users into
- Denial-of-service attack
- Phishing
- Distributed computing
- Load balancing
revealing sensitive information?
Answer: B
Explanation: Phishing attacks involve tricking users into providing sensitive data, such as passwords or credit card numbers, through deceptive emails or websites.
- Which of the following best describes a denial-of-service (DoS) attack?
- Attacker physically damages network hardware
- Flooding a network or service with excessive traffic
- Gaining access through social engineering
- Encrypting sensitive network data
Answer: B
Explanation: A DoS attack disrupts normal service by overwhelming the target with excessive requests, rendering it unavailable to legitimate users. 2 / 4
Fortinet Network Security Expert (NSE) Exam
- How do insider threats typically compromise network security?
- By exploiting software bugs
- Through external phishing campaigns
- Using privileged access to leak information
- By intercepting encrypted data
Answer: C
Explanation: Insider threats stem from trusted individuals who abuse their access privileges to steal or compromise sensitive data.
- What is considered a zero-day attack?
- An attack that takes place exactly at midnight
- An attack using known vulnerabilities with available patches
- An exploit targeting an undisclosed and unpatched vulnerability
- A test procedure conducted on the network
Answer: C
Explanation: A zero-day attack targets vulnerabilities that are unknown to the vendor or unpatched, leaving no time for a preventive update.
- Which document serves as a guideline for acceptable network use and security practices
- Employee handbook
- Security policy 3 / 4
within an organization?
Fortinet Network Security Expert (NSE) Exam
- Software license agreement
- Organizational chart
Answer: B
Explanation: A security policy outlines acceptable behaviors, practices, and procedures to protect information and network systems.
- What is a common type of security policy in organizations?
- Network access policy
- Sales strategy policy
- Advertising policy
- Color usage policy
Answer: A
Explanation: Network access policies define who may access the network and under what circumstances, playing a crucial role in network security.
- Which of these is NOT a core element of network security architecture?
- Firewall deployment
- Authentication mechanisms
- Redundant power supplies
- Intrusion detection systems
Answer: C
- / 4