About the Exam

This exam evaluates knowledge of Fortinet products in an OT environment, with applied focus on the design, implementation, operation, and integration of an OT security solution using FortiGate, FortiAnalyzer, FortiSIEM, and FortiNAC. It is intended for network and security professionals responsible for designing and implementing OT infrastructure security with Fortinet devices. Passing demonstrates applied ability to architect and operate a Fortinet-based OT security solution. Fortinet's release notice lists the exam's last delivery date as July 15, 2026, so it is retired.

Exam Topics

  • Asset management25%
  • Network access control25%
  • Network security25%
  • Monitoring and risk assessment25%

How to Use This Practice Exam

  1. Browse — Read each question, select your answer, and reveal the explanation.
  2. Exam Mode — Simulate real exam conditions with a timed session and score report.
  3. Learn Mode — Spaced repetition schedules questions you struggle with for long-term retention.

Download the Full Exam PDF

Get every question and answer in a clean, printable PDF built for offline study. Purchase once, keep permanent access, and re-download the latest version anytime.

Last updated August 12, 2026 at 8:45 PM

Topic filter
Retired questions
Question sort

QuestionQ1

Network security

Which industrial protocol does not support VLANs?

  • A Ethernet POWERLINK
  • B Ethernet over industrial protocol
  • C EtherCAT
  • D Modbus over TCP
Explanation

EtherCAT uses a dedicated real-time Layer 2 communication method and is not VLAN-segmentable in the conventional manner used by Ethernet/IP-based industrial networks. Modbus over TCP uses standard TCP/IP over Ethernet, for which VLAN segmentation is available.

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ2

Monitoring and risk assessment

To gain better visibility into risks across your OT network, you want to create a new report in FortiAnalyzer.

What must you do to create this report?

  • A Create a template or use an existing one.
  • B Import a report created in FortiSIEM.
  • C Enable the FortiAnalyzer Fabric settings.
  • D Clone a predefined report to create a new one.
Explanation

FortiAnalyzer creates reports from report templates. A new report therefore requires selecting an existing template or creating a template to define the report content and layout.

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ3

Network security

Match every industrial protocol with its corresponding characteristics.

Drag & Drop
EtherCAT
POWERLINK
Modbus
Ethernet over industrial protocol
Mainly used for the transmission of process data
Offers real-time data transmission in primary-secondary configuration
Uses client/server communication
Based entirely on Ethernet standards
Explanation

EtherCAT is optimized for cyclic process-data exchange, while POWERLINK provides deterministic real-time communication through its managing-node/controlled-node topology. Modbus follows a client/server model. Ethernet-based industrial protocols use Ethernet standards as their communication foundation.

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ4

Network security

Which standard is most important for OT security in all industrial sectors?

  • A NIST CSF
  • B IEC 62443
  • C HIPAA
  • D GDPR
Explanation

IEC 62443 provides cybersecurity requirements, processes, and lifecycle guidance specifically for industrial automation and control systems. It is designed for use across sectors that operate such systems, making it the central OT-focused standard among these choices.

Learn more

Community Discussion

No comments yet. Be the first to start the discussion!

QuestionQ5

Monitoring and risk assessment

In your OT environment, you need to detect devices passively. Which two methods must you implement?

Choose two
  • A SSH
  • B SNMP
  • C Vendor OUI
  • D Network traffic
Explanation

Passive device detection analyzes observed network traffic and uses vendor OUI information from MAC addresses to help identify devices. SSH and SNMP require communicating with queried devices and are therefore active discovery methods.

Community Discussion

No comments yet. Be the first to start the discussion!
Know a question that should be here? Contribute to this exam
Back home