Skip to main content
Training Institute
  • Library
  • Schedule
  • Certifications
  • ATC
  • Programs
    Academic Partner Program Education Outreach Program Veterans Program Fast Track Workshops
  • More
Log in
Contents
Library Schedule Certifications ATC Programs Collapse Expand
Academic Partner Program Education Outreach Program Veterans Program Fast Track Workshops

OT Security Architect

Blocks

Certification

This exam is part of the following certification track:

Visit the Cybersecurity Certification page for information about certification requirements.

Fortinet NSE I - OT Security 7.6 Architect

Status: Available



The Fortinet NSE Industry Certified - OT Security 7.6 Architect exam evaluates your knowledge and expertise with Fortinet products in an operational technology (OT) environment.

This exam tests your applied knowledge of the design, implementation, operation, and integration of an OT security solution consisting of FortiGate, FortiAnalyzer, FortiSIEM, and FortiNAC.

Once you pass the exam, you will receive the following exam badge:

Audience

The Fortinet NSE Industry Certified - OT Security 7.6 Architect exam is intended for network and security professionals responsible for designing and implementing OT infrastructure security with Fortinet devices.


Exam Details
Exam name Fortinet NSE Industry Certified - OT Security 7.6 Architect
Exam time 70 minutes
Exam questions 35–40 questions
Scoring Pass or fail. A score report is available from your Pearson VUE account.
Language English
Product version FortiOS 7.6, FortiAnalyzer 7.6, FortiSIEM 7.4, and FortiNAC 7.6

Exam Topics

Successful candidates have applied knowledge and skills in the following areas and tasks:

Asset management (15–25%)
Tasks Details
Explain operational technology (OT) standards and Fortinet compliance
  • OT components
  • Architectures to comply with some known standards (for example, NERC CIP, ISA/IEC 62443)
Configure the Fortinet Security Fabric for OT networks
  • Security Fabric for OT
  • OT framework and the Security Fabric
  • Industrial architecture with the Security Fabric
  • Purdue model
Implement device detection on FortiGate and FortiNAC
  • Device detection process on FortiGate
  • Streamline Internet of Things (IoT) and OT device detection
  • Asset Details pane
  • Enhanced security visibility for IoT/OT vulnerabilities
  • IoT dashboard
  • SIEM database for asset and identity tables
  • FortiGuard Operational Technology Security Service
  • Asset Identity Center
  • Purdue levels for Fabric devices
  • Use case—FortiGuard Operational Technology Security Service
  • Device detection configuration
  • Asset device center
  • Device identification process on FortiNAC
  • Automated classification tools
  • Nozomi Networks integration
  • Manual classification options
  • Classified devices and rogues
  • FortiNAC device detection
Network access control (25–35%)
Tasks Details
Explain OT Ethernet concepts
  • Industrial Ethernet
  • VLAN concepts
Implement network segmentation schemas
  • Internal segmentation
  • Microsegmentation
  • Redundancy in OT
  • VDOM concepts
Configure network access authentication
  • Methods of authentication
  • Firewall authentication and remote authentication
  • Authentication using firewall policies
  • Two-factor authentication
  • Single sign-on (SSO)
  • Access control in OT networks
  • Access control using FortiNAC
Network security (25–35%)
Tasks Details
Configure security inspections for industrial protocols
  • Industrial protocols and signatures
  • Intrusion prevention systems (IPS)
  • Application control
  • Implementing protection
Configure virtual patching
  • Unified OT virtual patching and IPS signatures
  • Virtual patching profiles
  • Visibility improvement of OT vulnerabilities and virtual patching signatures
Configure automation
  • Use cases—FortiAnalyzer automation to quarantine a compromised device
Monitoring and risk assesment (20–30%)
Tasks Details
Create FortiAnalyzer event handlers
  • Logging and monitoring
  • Event handlers for OT events on FortiAnalyzer
  • FortiAnalyzer logging and monitoring
  • Rules, incidents, and notifications on FortiAnalyzer
  • Unified incident response
  • Incident analysis redesign
  • Export incidents
  • FortiSIEM logging and monitoring
  • Delivering reports, event handlers, and SIEM rules as FortiGuard packages
  • Merging basic event handlers and correlation event handlers
  • Event handlers—using the SIEM database
  • SOC dashboard for alerts and incidents
  • Event handler rule configuration
Perform risk assessment and management
  • Risk assessment
  • Delivering reports, event handlers, and SIEM rules as FortiGuard packages
  • CIS Controls Security Rating report
  • OT Security Risk report
  • NERC CIP compliance security rating report for OT
Analyze security reports from FortiAnalyzer
  • FortiAnalyzer reports
  • FortiSIEM reports
  • FortiSIEM dashboards

Training Resources

The following resources are recommended for attaining the knowledge and skills that are covered on the exam. The recommended training is available as a foundation for exam preparation. In addition to training, you are strongly encouraged to have hands-on experience with the exam topics and objectives.

  • OT Security 7.6 Architect course and hands-on labs
  • FortiOS 7.6 Administrator course and hands-on labs
  • FortiAnalyzer 7.6 Analyst course and hands-on labs
  • FortiSIEM 7.4 Analyst course and hands-on labs
  • FortiNAC-F 7.6 Administrator course and hands-on labs
  • FortiOS 7.6—Administration Guide
  • FortiOS 7.6—CLI Reference
  • FortiAnalyzer 7.6—Administration Guide
  • FortiSIEM 7.4—User Guide
  • FortiNAC-F 7.6—Administration Guide

Experience

A minimum of 2 years of experience with designing, implementing, and integrating Fortinet product implementation in an OT infrastructure is recommended.

Exam Sample Questions

A set of sample questions is available from the Fortinet Training Institute. These questions represent the exam content in question type and content scope. However, the questions do not necessarily represent all the exam content, nor are they intended to assess your readiness to take the certification exam.

See the Fortinet Training Institute for the course that includes the sample questions

Examination Policies and Procedures

The Fortinet Training Institute recommends that you review the exam policies and procedures before you register for the exam. Access important information on the Fortinet Training Institute Policies page, and find answers to common questions on the FAQ page.

Questions?

If you have more questions about the NSE Certification Program, contact us through the Fortinet Training Institute Helpdesk page.

Data retention summary