Get More Info
| CCNP Security (Cisco Certified Network Professional-Security) upcoming classes | |||
|---|---|---|---|
| Alexandria, VA | |||
| 09 - Sep | 29 - Sep | 14 Days | |
| Alexandria, VA | |||
| 25 - Nov | 08 - Dec | 14 Days | |
CCNP Security (Cisco Certified Network Professional-Security)
Course Description and Overview
Overview
Insyte's CCNP Security (Cisco Certified Network Professional-Security training and certification boot camp in Washington, DC validates advanced knowledge and skills required to engineer secure network infrastructures using the latest Cisco security devices, technologies, and appliances. The curriculum emphasizes the real-world best practices of network security engineering utilizing Cisco IOS® Software security features, Cisco ASA adaptive security appliance features, secure virtual private network (VPN) connectivity, Cisco Intrusion Prevention Systems (IPSs), Cisco security management tools, and techniques to optimize these technologies in a single, integrated network security solution.
Course Objectives
Insyte's 14 day CCNP Security Boot Camp will prepare you to take the required 4 certification exams for the CCNP Security Certification. The following courses will be covered in class.
- Deploying Cisco ASA Firewall Features (FIREWALL) 1.0
- Deploying Cisco ASA VPN Solutions (VPN) 1.0
- Implementing Cisco Intrusion Prevention System (IPS) v7.0
- Securing Networks with Cisco Routers and Switches (SECURE) 1.0
(See class details below)
Increasing Demand for Network Security Practical Skills
Cisco has noticed the evolution of the network security professional and its relevance to the industry. The speed at which network security is evolving demands more practical hands-on skills in network security engineering and has
made network security performance more visible to the entire organization. The network security engineers in the marketplace today understand the products and the discipline of good network security as well as the practices and mandates of industry and government for compliance while protecting their organizations from increasingly savvy threats seeking to compromise their systems. Cisco network security engineers have real-world security implementation and troubleshooting skills.
Network Security Engineering Best Practices
The CCNP Security program validates advanced knowledge and skills required to engineer secure network infrastructures using the latest Cisco security devices, technologies, and appliances. The curriculum emphasizes the real-world best practices of network security engineering utilizing Cisco IOS® Software security features, Cisco ASA adaptive security appliance features, secure virtual private network (VPN) connectivity, Cisco Intrusion Prevention Systems (IPSs), Cisco security management tools, and techniques to optimize these technologies in a single, integrated network security solution.
Achieving CCNP Security Certification
CCNP Security certification offers employers job-ready training and skills as tangible proof of experienced, professional-level network security engineers for today’s demanding security environment. Industry forecasts show that in the next five years, the industry will need double the number of network security professionals, and most of them will need to be recognized by an industry certification.
Requirements
The CCNP Security program is a three-year certification program intended to recognize the Cisco network security engineers who have the necessary skills to test, deploy, configure, maintain, and troubleshoot Cisco network security appliances and Cisco IOS Software devices that establish the security posture of the network. Prior to attempting the CCNP Security certification or any of its associated security specialist certifications, individuals must meet the requirements for the Cisco CCNA® Security certification and have at least one to three years of experience in the field of network security.
CNSS 4013 Recognition
The National Security Agency (NSA) and the Committee on National Security Systems (CNSS) recognize that Cisco security courseware meets the CNSS 4013 training standard. By being compliant, the Cisco CCNP Security certification program provides the required training for network security professionals who assist federal agencies and private sector entities to protect their information and aid in the defense of the nation's vital information resources.
This advanced standard is intended for System Administrators responsible for the security oversight or management of critical networks. This formal NSA and CNSS certification gives Cisco the authority to recognize those candidates who have demonstrated that they have met the CNSS 4013 training standard. Candidates who have met the standard will be issued a letter of recognition acknowledging their completion of the related requirements. This letter of recognition can be used as confirmation of having met the CNSS 4013 requirements
Who Would Benefit
- Network Security Engineers (NSEs) involved in design, implementation and maintenance of Cisco Security solutions.
- Cisco customers who implement and maintain Cisco security solutions.
Prerequisites
Candiates must possess the following:
- Cisco Certified Network Associate (CCNA) certification
- Cisco Certified Network Associate Security (CCNA Security) certification
- Working knowledge of the Microsoft Windows operating system
Required Exams
- 642-637 SECURE v1.0
- 642-617 FIREWALL v1.0
- 642-647 VPN v1.0
- 642-627 IPS v7.0
Course Length
96 Hours
Course Details
DAY 1
FIREWALL 1.0
- Introducing the Cisco ASA, Implementing Basic Connectivity and Device Management
- Introducing Cisco ASA Technology and Features
- Introducing the Cisco ASA Family
- Getting Started with the Cisco ASA and Cisco ASDM
- Configuring Interfaces and Static Routing
- Configuring Management Access
- Implementing Basic Connectivity and Device Management, Deploying Cisco ASA Access Control Features
- Configuring Management Features
- Configuring Basic Access Control
- Using Cisco ASA Modular Policy Framework
- Tuning Basic Stateful Inspection Features
- Tuning Basic Cisco ASA Stateful Inspection Features
DAY 2
- Deploying Cisco ASA Access Control Features
- Configuring Application-Layer Policies
- Configuring Advanced Access Controls
- Configuring Resource Limits and Guarantees
- Configuring User-Based Policies (Cut-Through Proxy)
- Deploying Cisco ASA Network Integration Features, Deploying Cisco ASA Virtualization and High Availability Features
- Deploying Network Address Translation
- Configuring Cisco ASA Transparent Operation
- Deploying Cisco ASA Virtualization Features
- Deploying Cisco ASA Redundant Interfaces
- Deploying Active/Standby High Availability Failover
DAY 3
- Deploying Cisco ASA Virtualization and High Availability Features, Integrating Cisco ASA Security Service Modules
- Deploying a Cisco ASA Active/Standby Failover
- Deploying Active/Active High Availability Failover
- Deploying a Cisco ASA Active/Active Failover
- Introduction to Cisco ASA Security Service Modules
- Integrating the Cisco ASA AIP-SSM and AIP-SSC Modules
- Integrating the Cisco ASA CSC-SSM Module
Day 4
VPN 1.0
- Exam Review: FIREWALL Exam # 642-647
- Take Actual FIREWALL Exam # 642-647
- Evaluating the Cisco ASA VPN Subsystem; Deploying Cisco ASA IPsec VPN Solutions
- Evaluating the Cisco ASA Software Architecture
- Deploying Cisco ASA VPN Solutions
- Evaluating the Cisco ASA VPN Subsystem Architecture
- Applying Common Cisco ASA Remote Access VPN Configuration Concepts
- Deploying Basic Site-to-Site IPsec VPNs
- Deploying Certificate Authentication in Site-to-Site IPsec VPNs
- Deploying Cisco ASA IPsec VPN Solutions
- Deploying the Cisco IPsec VPN Client
- Deploying Basic Easy VPN Solutions
- Deploying Advanced Authentication in Cisco Easy VPN Solutions
- Deploying Advanced Easy VPN Server with Certificate-based Authentication
- Deploying the Cisco ASA 5505 Adaptive Security Appliance as an Easy VPN Hardware Client
DAY 5
- Deploying Cisco ASA AnyConnect Remote Access VPN Solutions
- Deploying a Basic Cisco AnyConnect Full Tunnel SSL VPN Solution
- Configuring a Basic Cisco AnyConnect Full Tunnel SSL VPN Using Local Password Authentication
- Advanced Deployment of the Cisco AnyConnect VPN Client
- Configuring a Basic AnyConnect Full Tunnel SSL VPN Using the Local CA
- Deploying Advanced Authentication in AnyConnect Full Tunnel SSL VPNs
- Deploying the Cisco AnyConnect Client with Centralized Management
- Deploying Cisco ASA Clientless Remote Access VPN Solutions
- Deploying a Basic Clientless VPN Solution
- Configuring Basic Clientless VPN Access
- Deploying Advanced Application Access for Clientless SSL VPN
- Deploying Advanced Authentication and Single Sign-On in a Clientless SSL VPN
- Customizing the Clientless SSL VPN User Interface and Portal
DAY 6
- Deploying Advanced Cisco ASA VPN Solutions
- Deploying VPN Authorization, Access Control, and Accounting
- Deploying SSL VPN Access Policies and Authorization Parameters
- Deploying Cisco Secure Desktop in SSL VPNs
- Deploying Dynamic Access Policies
- Deploying Cisco Secure Desktop and DAP in SSL VPNs
- Deploying High Availability and High Performance in SSL and IPsec VPNs
- Configuring a Load Balancing SSL VPN Cluster
DAY 7
- Exam Review VPN Exam # 642-617
- Take Actual VPN Exam # 642-617
DAY 8
- Deploying Cisco IOS Software Network Foundation Protection
- Deploying Network Foundation Protection Controls
- Deploying Advanced Switched Data Plane Security Controls
- Implementing Cisco Identity-Based Network Services
- Deploying Basic 802.1X Features
- Deploying Advanced Routed Data Plane Security Controls
- Deploying Advanced Control Plane Security Controls
- Deploying Cisco IOS Software Network Foundation Protection; Deploying Cisco IOS Software Threat Control and Containment
- Deploying Advanced Management Plane Security Controls
DAY 9
- Configuring Advanced Infrastructure Security Controls
- Deploying Cisco IOS Software Network Address Translation
- Deploying Zone-Based Policy Firewalls
- Deploying Cisco IOS Software Threat Control and Containment; Deploying Cisco IOS Software Site-to-Site Transmission Security
- Configuring Advanced Zoned-Based Policy Firewall Features
- Deploying Cisco IOS IPS
- Site-to-Site VPN Architectures and Technologies
- Deploying Cisco IOS Software Site-to-Site Transmission Security; Deploying Secure Remote Access with Cisco IOS Software
- Configuring a PKI-Enabled Site-to-Site IPsec VPN
DAY 10
- Deploying DMVPNs
- Deploying High Availability in Tunnel-Based IPsec VPNs
- Deploying GET VPN
- Remote Access VPN Architectures and Technologies
- Deploying Secure Remote Access with Cisco IOS Software
- Configuring a Cisco IOS Software SSL VPN Gateway
- Deploying Remote Access Solutions Using Cisco Easy VPN
DAY 11
IPS 7.0
- Exam Review: SECURE Exam # 642-637
- Take Actual SECURE Exam # 642-637
- Introduction to Intrusion Prevention and Detection, Cisco IPS Software, and Supporting Devices; Installing and Maintaining Cisco IPS Sensors
- Choosing Cisco IPS Software, Hardware, and Supporting Applications
- Evaluating Network IPS Traffic Analysis Methods, Evasion Possibilities, and Anti-Evasive Countermeasures
- Choosing a Network IPS and IDS Deployment Architecture
- Integrating the Cisco IPS Sensor into a Network
- Performing the Cisco IPS Sensor Initial Setup
- Installing and Maintaining Cisco IPS Sensors; Applying Cisco IPS Security Policies
- Managing Cisco IPS Devices
- Configuring Basic Traffic Analysis
DAY 12, Friday
- Implementing Cisco IPS Signatures and Responses
- Configuring Cisco IPS Signature Engines and the Signature Database
- Applying Cisco IPS Security Policies; Adapting Traffic Analysis and Response to the Environment
- Deploying Anomaly-Based Operation
- Customizing Traffic Analysis
- Configuring Custom Cisco IPS Signatures
- Managing False Positives and False Negatives
- Adapting Traffic Analysis and Response to the Environment; Managing and Analyzing Events
- Improving Alarm and Response Quality
- Installing and Integrating Cisco IPS Manager
- Express with Cisco IPS Sensors
- Managing and Investigating Events using Cisco IPS Manager Express
DAY 13, Saturday
- Integrating Cisco IPS with Cisco Security Manager and Cisco Security MARS
- Using the Cisco IntelliShield Database and Services
- Using Cisco IPS and Security Intelligence Web Resources
- Deploying Virtualization, High Availability, and High Performance Solutions; Configuring and Maintaining Specific Cisco IPS Hardware
- Using Cisco IPS Virtual Sensors
- Configuring Policy Virtualization
- Deploying Cisco IPS for High Availability and High Performance
- Configuring and Maintaining the Cisco ASA AIP SSM and AIP SSC Modules
- Configuring and Maintaining the Cisco ISR IPS AIM and IPS NME Modules
- Configuring and Maintaining the Cisco IDSM-2 Module
DAY 14
- Exam Review IPS Exam # 642-627
- Take Actual IPS Exam # 642-627
About Insyte
Insyte Training is the DC’s Area’s #1 Expert IT Training Center . We are conveniently located in beautiful Historic Old Town Alexandria, VA enhancing your training experience and featuring:
- Metro Accessibility - Short walk from Metro Blue/Yellow Line (leave the car behind)
- 4 minute Drive to Ronald Reagan Washington National Airport
- Available Parking
- World class restaurants and shops at your footsteps
- Closest Expert IT & IT Security Training Center to Fort Belvoir, Boiling AFB, Fort Myer, Department of Homeland Security, US Department of Navy, US Coast Guard, Fort McNair, Washington Navy Yard and the Pentagon
Why Choose Insyte for your Washington DC Expert IT Training?
- Expert Instructors
- Highest Pass Rates
- Choose from Day, Evening & Weekend Classes to meet your busy schedule
- Accelerated Boot Camps Save You Time And Money
- Personal 1-1 Mentoring
- Veterans Benefits & GI Bill Post 9/11Approved – Welcome Military
- WIA (Workforce Investment Act) Approved
- Paid Internships & Job Referrals!
- Meet Your DoD 8570-1 Certification Needs. Get Compliant!
- Insyte is the ONLY Testing Center that offers ALL 5 industry standard test vendors in the DC / Baltimore Metropolitan Area. (Prometric, VUE, Kryterion-Online, Certiport and Impact-Testing)
- Lowest Prices! We are locally based keeping our overhead low so we can pass the savings along to you
- Washington, DC is our Home. Most training centers set up shop in hotels or rented centers. When you have a need, request or encounter a problem they are not there to answer. Our physical location in Alexandria is open 7 days a week and our staff always there to help.







