Implementing Cisco Threat Control Solutions (SITCS) 1.0

What’s Included

  • 12 months access
  • Classes taught by industry experts
  • Hands-on labs
  • Practice exam
  • Class notes
  • Comprehensive Student Guide
  • Expert mentors available to answer questions
  • Personal Success Adviser to help you reach your training goals

Overview

Implementing Cisco Threat Control Solutions (SITCS) v1.0 is a newly created instructor-led training course, which is part of the curriculum path leading to the Cisco Certified Network Professional Security (CCNP Security) certification. Additionally, it is designed to prepare security engineers with the knowledge and hands-on experience so that they can deploy Cisco’s Next Generation Firewall (NGFW) as well as Web Security, Email Security and Cloud Web Security. The goal of the course is to provide students with foundational knowledge and the capabilities to implement and managed security on Cisco ASA firewalls utilizing Cisco Next Generation product solution which integrates Cisco Prime Security Manager for managing identity policies. The student will gain hands-on experience with configuring various advanced Cisco security solutions for mitigating outside threats and securing traffic traversing the firewall. At the end of the course, students will be able to reduce the risk to their IT infrastructures and applications using Cisco’s Next Generation Firewall security appliance feature and provide operational support for Intrusion Prevention Systems, Email Security, and Web based security appliances.

Prerequisites

The knowledge and skills that a learner must have before attending this course are as follows:

  • Valid CCNA Security or CCSP Certification
  • Any CCIE Certification

Certification

CCNP Security

Exams

300-207 SITCS

Included Labs Simulations

  • Verify the ASA (CX) NGFW Software Module Status
  • Install and Set Up the ASA (CX) NGFW Software Module (CX is not Installed)
  • Explore the ASA (CX) NGFW CLI
  • Explore the On-Box PRSM GUI
  • Redirect Traffic from the ASA to ASA (CX) NGFW
  • Configure ASA (CX) NGFW Policy Objects
  • Configure ASA CX Access Policy to Deny Access to Unacceptable Websites
  • Configure the ASA CX Access Policy to Deny Any Executable File Download
  • Configure an ASA CX Access Policy to Deny Access to Any Websites with a Bad Reputation
  • Configure an ASA CX Identity Policy Using Active Authentication
  • Configure an ASA CX Identity Policy Using Passive Authentication
  • Enable Cisco ASA (CX) NGFW Decryption
  • Verify Basic Cisco WSA Settings
  • Implement the Cisco WSA in Explicit Proxy Mode
  • Implement User Authentication with Active Directory using Basic Authentication
  • Implement User Authentication using Transparent User Identification
  • Enable the CWS Connector on the Partner ISR G2 Router
  • Install the Cisco ASA IPS Software Module and Configure the Basic IPS Settings
  • Verify the IPS Operations
  • Tune Existing Signature
  • Create Custom Signature
  • Implement the Cisco WSA in Transparent Proxy Mode – Part 1
  • Implement the Cisco WSA in Transparent Proxy Mode – Part 2
  • Configure the Access Policy
  • Configure URL Filtering for the Access Policy
  • Configure Application Visibility Control for the Access Policy

Outline

  • Module 1 Cisco ASA (CX) NGFW Services
  • Module 2 Cisco Web Security Appliance
  • Module 3 Cisco Cloud Web Security
  • Module 4 Cisco Email Security Appliance
  • Module 5 Cisco Intrusion Prevention System

Target Audience

This course is designed to prepare security engineers with the knowledge covering advanced firewall architecture and configuration with the Cisco next-generation firewall, utilizing access and identity policies. In addition, this course covers integration of Intrusion Prevention System (IPS) and context-aware firewall components, as well as Web (Cloud) and Email Security solutions. It is also perfect for students interested in pursuing their Cisco Certified Network Professional Security (CCNP Security) certification.

Objectives

  • Configure and Implement Cisco IPS Sensor into a Network
  • Describe IPS Threat Controls
  • Configure Cisco Email Appliance Incoming and Outgoing Policies
  • Describe Cisco Email Security Solution
  • Configure Cisco Cloud Web Security Connectors
  • Configure Web Security appliance for acceptable use controls
  • Deploy Cisco Web Security appliance to mitigate malware
  • Understand Cisco ASA Next-Generation Firewall (NGFW)

Duration

32 Hours

SUBSCRIPTION COST


$1,390.00

 

NEED HELP OR NOT SURE?