Overview
Overview
Thank you for reading this post, don't forget to subscribe!Implementing Cisco Threat Control Solutions (SITCS) v1.0 is part of the curriculum path leading to the Cisco Certified Network Professional Security (CCNP Security) certification. Additionally, it is designed to prepare security engineers with the knowledge and hands-on experience so that they can deploy Ciscos Next Generation Firewall (NGFW) as well as Web Security, Email Security and Cloud Web Security.
Audience Profile
Network Security Engineers
Prerequisite(s) Recommended
CCNA Security or valid CCSP, or any CCIE certification can act as a prerequisite
Learning Objectives
- Understand Cisco ASA Next-Generation Firewall (NGFW)
- Deploy Cisco Web Security appliance to mitigate malware
- Configure Web Security appliance for acceptable use controls
- Configure Cisco Cloud Web Security Connectors
- Describe Cisco Email Security Solution
- Configure Cisco Email Appliance Incoming and Outgoing Policies
- Describe IPS Threat Controls
- Configure and Implement Cisco IPS Sensor into a Network
Course Outline
Course Outline
Module 1: Cisco Web Security Appliance
Lessons
• Cisco Web Security Appliance (WSA) Solutions
• Integrating the Cisco Web Security Appliance
• Configuring Cisco Web Security Appliance Identities and User Authentication Controls
• Configuring Cisco Web Security Appliance Acceptable Use Control
• Configuring Cisco Web Security Appliance Anti-Malware Controls
• Configuring Cisco Web Security Appliance Decryption
• Configuring Cisco Web Security Appliance Data Security Controls
Lab 1: Configure Cisco Web Security Appliance Explicit Proxy and User Authentication
Lab 2: Configure Cisco Web Security Appliance Acceptable Use Controls
Module 2: Cisco Cloud Web Security
Lessons
• Cisco Cloud Web Security Solutions
• Configuring Cisco Cloud Web Security Connectors
• Web Filtering Policy in Cisco ScanCenter
Lab 3: Configure Cisco Email Security Appliance Basic Policies
Lab 4: Accessing the AMP Public Cloud Console
Module 3: Cisco Email Security Appliance
Lessons
• Cisco Email Security Solutions
• Cisco Email Security Appliance Basic Setup Components
• Configuring Cisco Email Security Appliance Basic Incoming and Outgoing Mail Policies
Lab 5: Customizing Detection and AMP Policy
Module 4: Advanced Malware Protection for Endpoints
Lessons
• AMP for Endpoints Overview and Architecture
• Customizing Detection and AMP Policy
• IOCs and IOC Scanning
• Deploying AMP Connectors
• AMP Analysis Tools
Lab 6: IOCs and IOC Scanning
Lab 7: Deploying AMP Connectors
Lab 8: AMP Analysis Tools
Module 5: Cisco FirePOWER Next-Generation IPS
Lessons
• Cisco FireSIGHT System
• Configuring and Managing Cisco FirePOWER Devices
• Implementing an Access Control Policy
• Discovery Technology
• Configuring File-Type and Network Malware Detection
• Managing SSL Traffic with Cisco FireSIGHT
• IPS Policy and Configuration Concepts
• Network Analysis Policy
• Creating Reports
• Correlation Rules and Policies
• Basic Rule Syntax and Usage
Lab 9: Configure Inline Interfaces and Create Objects
Lab 10: Create Access Control Policy Rules
Lab 11: Configure Network Discovery Detection
Lab 12: Create a File Policy
Module 6: Cisco ASA FirePOWER Services
Lessons
• Installing Cisco ASA 5500-X Series FirePOWER Services (SFR)
Lab 13: Create an Intrusion Policy
Lab 14: Create a Network Analysis Policy
Lab 15: Compare Trends
Lab 16: Create Correlation Policies