Cisco - Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0

Duration

Duration:

Only 3 Days

Method

Method:

Classroom / Online / Hybrid

Next date

Next date:

30/9/2024 (Monday)

Overview

This accelerated Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0 course shows you how to deploy and use Cisco Firepower® Threat Defence system. This hands-on course gives you knowledge and skills to use and configure Cisco® Firepower Threat Defence technology, beginning with initial device setup and configuration and including routing, high availability, Cisco Adaptive Security Appliance (ASA) to Cisco Firepower Threat Defence migration, traffic control, and Network Address Translation (NAT). You will learn how to implement advanced Next-Generation Firewall (NGFW) and Next-Generation Intrusion Prevention System (NGIPS) features, including network intelligence, file type detection, network-based malware detection, and deep packet inspection. You will also learn how to configure site-to-site VPN, remote-access VPN, and SSL decryption before moving on to detailed analysis, system administration, and troubleshooting.

In just 4 days, you’ll also learn to Implement Cisco Firepower NGFW to provide advanced threat protection before, during, and after attacks and gain leading-edge skills for high-demand responsibilities focused on security.

After taking this course, you should be able to:

  • Describe key concepts of NGIPS and NGFW technology and the Cisco Firepower Threat Defence system, and identify deployment scenarios
  •  Perform initial Cisco Firepower Threat Defence device configuration and setup tasks
  •  Describe how to manage traffic and implement Quality of Service (QoS) using Cisco Firepower Threat Defence
  •  Describe how to implement NAT by using Cisco Firepower Threat Defence
  •  Perform an initial network discovery, using Cisco Firepower to identify hosts, applications, and services
  •  Describe the behaviour, usage, and implementation procedure for access control policies
  •  Describe the concepts and procedures for implementing security intelligence features
  •  Describe Cisco Advanced Malware Protection (AMP) for Networks and the procedures for implementing file control and advanced malware protection
  •  Implement and manage intrusion policies
  •  Describe the components and configuration of site-to-site VPN
  •  Describe and configure a remote-access SSL VPN that uses Cisco AnyConnect®
  •  Describe SSL decryption capabilities and usage 

At the end of this course, you’ll sit the Cisco exam, and achieve your Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0 certification. Through Firebrand’s Lecture | Lab | Review methodology, you’ll get certified at twice the speed of the traditional training and get access to courseware, learn from certified instructors, and train in a distraction-free environment.

 

Audience

This course is ideal for:

  • Security administrators
  • Security consultants
  • Network administrators
  • System engineers
  • Technical support personnel
  • Cisco integrators and partners

Benefits

Gebruik uw Cisco Learning Credits (CLCs)

Met uw opgebouwde CLC’s heeft u wellicht recht op gratis trainingen. Kijk als u Cisco hard- of software gekocht hebt op uw factuur of u ongebruikte credits hebt. Indien u twijfelt, neem gerust contact met ons op.

Other accelerated training providers rely heavily on lecture and independent self-testing and study.

Effective technical instruction must be highly varied and interactive to keep attention levels high, promote camaraderie and teamwork between the students and instructor, and solidify knowledge through hands-on learning.

Firebrand Training provides instruction to meet every learning need:

  • Intensive group instruction
  • One-on-one instruction attention
  • Hands-on labs
  • Lab partner and group exercises
  • Question and answer drills
  • Independent study

Curriculum

Module 1: Cisco Firepower Threat Defence Overview

  • Examining Firewall and IPS Technology
  • Firepower Threat Defence Features and Components
  • Examining Firepower Platforms
  • Examining Firepower Threat Defence Licensing
  • Cisco Firepower Implementation Use Cases

 

Module 2: Cisco Firepower NGFW Device Configuration

  • Firepower Threat Defence Device Registration
  • FXOS and Firepower Device Manager
  • Initial Device Setup
  • Managing NGFW Devices
  • Examining Firepower Management Centre Policies
  • Examining Objects
  • Examining System Configuration and Health Monitoring
  • Device Management
  • Examining Firepower High Availability
  • Configuring High Availability
  • Cisco ASA to Firepower Migration
  • Migrating from Cisco ASA to Firepower Threat Defence

 

Module 3: Cisco Firepower NGFW Traffic Control

  • Firepower Threat Defence Packet Processing
  • Implementing QoS
  • Bypassing Traffic

 

Module 4: Cisco Firepower NGFW Address Translation

  • NAT Basics
  • Implementing NAT
  • NAT Rule Examples
  • Implementing NAT

 

Module 5: Cisco Firepower Discovery

  • Examining Network Discovery
  • Configuring Network Discovery

 

Module 6: Implementing Access Control Policies

  • Examining Access Control Policies
  • Examining Access Control Policy Rules and Default Action
  • Implementing Further Inspection
  • Examining Connection Events
  • Access Control Policy Advanced Settings
  • Access Control Policy Considerations
  • Implementing an Access Control Policy

 

Module 7: Security Intelligence

  • Examining Security Intelligence
  • Examining Security Intelligence Objects
  • Security Intelligence Deployment and Logging
  • Implementing Security Intelligence

 

Module 8: File Control and Advanced Malware Protection

  • Examining Malware and File Policy
  • Examining Advanced Malware Protection

 

Module 9: Next-Generation Intrusion Prevention Systems

  • Examining Intrusion Prevention and Snort Rules
  • Examining Variables and Variable Sets
  • Examining Intrusion Policies

 

Module 10: Site-to-Site VPN

  • Examining IPsec
  • Site-to-Site VPN Configuration
  • Site-to-Site VPN Troubleshooting
  • Implementing Site-to-Site VPN

 

Module 11: Remote-Access VPN

  • Examining Remote-Access VPN
  • Examining Public-Key Cryptography and Certificates
  • Examining Certificate Enrolment
  • Remote-Access VPN Configuration
  • Implementing Remote-Access VPN

 

Module 12: SSL Decryption

  • Examining SSL Decryption
  • Configuring SSL Policies
  • SSL Decryption Best Practices and Monitoring

 

Module 13: Detailed Analysis Techniques

  • Examining Event Analysis
  • Examining Event Types
  • Examining Contextual Data
  • Examining Analysis Tools
  • Threat Analysis

 

Module 14: System Administration

  • Managing Updates
  • Examining User Account Management Features
  • Configuring User Accounts
  • System Administration

 

Module 15: Cisco Firepower Troubleshooting

  • Examining Common Misconfigurations
  • Examining Troubleshooting Commands
  • Firepower Troubleshooting

 

 Lab outline:

● Initial Device Setup

● Device Management

● Configuring High Availability

● Migrating from Cisco ASA to Cisco Firepower Threat Defence

● Implementing QoS

● Implementing NAT

● Configuring Network Discovery

● Implementing an Access Control Policy

● Implementing Security Intelligence

● Implementing Site-to-Site VPN

● Implementing Remote Access VPN

● Threat Analysis

● System Administration

● Firepower Troubleshooting

Exam Track

At the end of this accelerated course, you’ll sit the following exam at the Firebrand Training centre, covered Certification Guarantee:

Implementing and Operating Cisco Security Core Technologies (350-701 SCOR) Exam

  • Duration: 120 minutes

 

What's Included

Your accelerated course includes:

  • Accommodation *
  • Meals, unlimited snacks, beverages, tea and coffee *
  • On-site exams **
  • Exam vouchers **
  • Practice tests **
  • Certification Guarantee ***
  • Courseware
  • Up-to 12 hours of instructor-led training each day
  • 24-hour lab access
  • Digital courseware **
  • * For residential training only. Accommodation is included from the night before the course starts. This doesn't apply for online courses.
  • ** Some exceptions apply. Please refer to the Exam Track or speak with our experts
  • *** Pass first time or train again free as many times as it takes, unlimited for 1 year. Just pay for accommodation, exams, and incidental costs.

Prerequisites

Before attending this accelerated course, you should have:

  • Knowledge of TCP/IP and basic routing protocols
  • Familiarity with firewall, VPN, and Intrusion Prevention System (IPS) concepts

Unsure whether you meet the prerequisites? Don’t worry. Your training consultant will discuss your background with you to understand if this course is right for you.

Reviews

Here's the Firebrand Training review section. Since 2001 we've trained exactly 134561 students and asked them all to review our Accelerated Learning. Currently, 96.06% have said Firebrand exceeded their expectations.

Read reviews from recent accelerated courses below or visit Firebrand Stories for written and video interviews from our alumni.


"Very pleasant and a good instructor!! Nice facilities and everything is there to let you focus and have the tools you need."
DMO. (27/5/2024 (Monday) to 1/6/2024 (Saturday))

"An extremely good course and very well run but Important to note that you need to be well versed in the subject matter before attending to greatly improve the chance of passing the exam."
Chris Morgan, University of East Anglia. (25/9/2023 (Monday) to 30/9/2023 (Saturday))

"Good training experience in the Netherlands."
Anonymous. (28/10/2018 (Sunday) to 2/11/2018 (Friday))

"It is a very hard training and I don't think it's suitable for complete beginners in networking. Our instructor was very competent and the location was excellent."
Christian Dietrich. (4/12/2017 (Monday) to 10/12/2017 (Sunday))

"It was a hard but good course - a lot of information and a good teacher. We did a lot of practical work and it was nice to see the output of all the theoretical knowledge out of the book. "
Anonymous (14/8/2017 (Monday) to 17/8/2017 (Thursday))

Course Dates

Start

Finish

Status

Location

Book now

27/5/2024 (Monday)

29/5/2024 (Wednesday)

Finished - Leave feedback

-

 

30/9/2024 (Monday)

2/10/2024 (Wednesday)

Wait list

Nationwide

 

11/11/2024 (Monday)

13/11/2024 (Wednesday)

Limited availability

Nationwide

 

 

3/2/2025 (Monday)

5/2/2025 (Wednesday)

Open

Nationwide

 

17/3/2025 (Monday)

19/3/2025 (Wednesday)

Open

Nationwide

 

Latest Reviews from our students