Only 3 days
Classroom
14/01/2025 (Tuesday)
Overview
This accelerated Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0 course shows you how to deploy and use Cisco Firepower® Threat Defence system. This hands-on course gives you knowledge and skills to use and configure Cisco® Firepower Threat Defence technology, beginning with initial device setup and configuration and including routing, high availability, Cisco Adaptive Security Appliance (ASA) to Cisco Firepower Threat Defence migration, traffic control, and Network Address Translation (NAT). You will learn how to implement advanced Next-Generation Firewall (NGFW) and Next-Generation Intrusion Prevention System (NGIPS) features, including network intelligence, file type detection, network-based malware detection, and deep packet inspection. You will also learn how to configure site-to-site VPN, remote-access VPN, and SSL decryption before moving on to detailed analysis, system administration, and troubleshooting.
In just 4 days, you’ll also learn to Implement Cisco Firepower NGFW to provide advanced threat protection before, during, and after attacks and gain leading-edge skills for high-demand responsibilities focused on security.
After taking this course, you should be able to:
- Describe key concepts of NGIPS and NGFW technology and the Cisco Firepower Threat Defence system, and identify deployment scenarios
- Perform initial Cisco Firepower Threat Defence device configuration and setup tasks
- Describe how to manage traffic and implement Quality of Service (QoS) using Cisco Firepower Threat Defence
- Describe how to implement NAT by using Cisco Firepower Threat Defence
- Perform an initial network discovery, using Cisco Firepower to identify hosts, applications, and services
- Describe the behaviour, usage, and implementation procedure for access control policies
- Describe the concepts and procedures for implementing security intelligence features
- Describe Cisco Advanced Malware Protection (AMP) for Networks and the procedures for implementing file control and advanced malware protection
- Implement and manage intrusion policies
- Describe the components and configuration of site-to-site VPN
- Describe and configure a remote-access SSL VPN that uses Cisco AnyConnect®
- Describe SSL decryption capabilities and usage
At the end of this course, you’ll sit the Cisco exam, and achieve your Securing Networks with Cisco Firepower Next Generation Firewall (SSNGFW) v1.0 certification. Through Firebrand’s Lecture | Lab | Review methodology, you’ll get certified at twice the speed of the traditional training and get access to courseware, learn from certified instructors, and train in a distraction-free environment.
Audience
This course is ideal for:
- Security administrators
- Security consultants
- Network administrators
- System engineers
- Technical support personnel
- Cisco integrators and partners
Curriculum
Module 1: Cisco Firepower Threat Defence Overview
- Examining Firewall and IPS Technology
- Firepower Threat Defence Features and Components
- Examining Firepower Platforms
- Examining Firepower Threat Defence Licensing
- Cisco Firepower Implementation Use Cases
Module 2: Cisco Firepower NGFW Device Configuration
- Firepower Threat Defence Device Registration
- FXOS and Firepower Device Manager
- Initial Device Setup
- Managing NGFW Devices
- Examining Firepower Management Centre Policies
- Examining Objects
- Examining System Configuration and Health Monitoring
- Device Management
- Examining Firepower High Availability
- Configuring High Availability
- Cisco ASA to Firepower Migration
- Migrating from Cisco ASA to Firepower Threat Defence
Module 3: Cisco Firepower NGFW Traffic Control
- Firepower Threat Defence Packet Processing
- Implementing QoS
- Bypassing Traffic
Module 4: Cisco Firepower NGFW Address Translation
- NAT Basics
- Implementing NAT
- NAT Rule Examples
- Implementing NAT
Module 5: Cisco Firepower Discovery
- Examining Network Discovery
- Configuring Network Discovery
Module 6: Implementing Access Control Policies
- Examining Access Control Policies
- Examining Access Control Policy Rules and Default Action
- Implementing Further Inspection
- Examining Connection Events
- Access Control Policy Advanced Settings
- Access Control Policy Considerations
- Implementing an Access Control Policy
Module 7: Security Intelligence
- Examining Security Intelligence
- Examining Security Intelligence Objects
- Security Intelligence Deployment and Logging
- Implementing Security Intelligence
Module 8: File Control and Advanced Malware Protection
- Examining Malware and File Policy
- Examining Advanced Malware Protection
Module 9: Next-Generation Intrusion Prevention Systems
- Examining Intrusion Prevention and Snort Rules
- Examining Variables and Variable Sets
- Examining Intrusion Policies
Module 10: Site-to-Site VPN
- Examining IPsec
- Site-to-Site VPN Configuration
- Site-to-Site VPN Troubleshooting
- Implementing Site-to-Site VPN
Module 11: Remote-Access VPN
- Examining Remote-Access VPN
- Examining Public-Key Cryptography and Certificates
- Examining Certificate Enrolment
- Remote-Access VPN Configuration
- Implementing Remote-Access VPN
Module 12: SSL Decryption
- Examining SSL Decryption
- Configuring SSL Policies
- SSL Decryption Best Practices and Monitoring
Module 13: Detailed Analysis Techniques
- Examining Event Analysis
- Examining Event Types
- Examining Contextual Data
- Examining Analysis Tools
- Threat Analysis
Module 14: System Administration
- Managing Updates
- Examining User Account Management Features
- Configuring User Accounts
- System Administration
Module 15: Cisco Firepower Troubleshooting
- Examining Common Misconfigurations
- Examining Troubleshooting Commands
- Firepower Troubleshooting
Lab outline:
● Initial Device Setup
● Device Management
● Configuring High Availability
● Migrating from Cisco ASA to Cisco Firepower Threat Defence
● Implementing QoS
● Implementing NAT
● Configuring Network Discovery
● Implementing an Access Control Policy
● Implementing Security Intelligence
● Implementing Site-to-Site VPN
● Implementing Remote Access VPN
● Threat Analysis
● System Administration
● Firepower Troubleshooting
Exam Track
At the end of this accelerated course, you’ll sit the following exam at the Firebrand Training centre, covered Certification Guarantee:
Implementing and Operating Cisco Security Core Technologies (350-701 SCOR) Exam
Duration: 120 minutes
Prerequisites
Before attending this accelerated course, you should have:
- Knowledge of TCP/IP and basic routing protocols
- Familiarity with firewall, VPN, and Intrusion Prevention System (IPS) concepts
What's Included
Your accelerated course includes:
- Accommodation *
- Meals, unlimited snacks, beverages, tea and coffee *
- On-site exams **
- Exam vouchers **
- Practice tests **
- Certification Guarantee ***
- Courseware
- Up-to 12 hours of instructor-led training each day
- 24-hour lab access
- Digital courseware **
* For residential training only. Accommodation is included from the night before the course starts. This doesn't apply for online courses.
** Some exceptions apply. Please refer to the Exam Track or speak with our experts.
*** Pass first time or train again free as many times as it takes, unlimited for 1 year. Just pay for accommodation, exams, and incidental costs.
Benefits
Seven reasons why you should sit your course with Firebrand Training
- Two options of training. Choose between residential classroom-based, or online courses
- You'll be certified fast. With us, you’ll be trained in record time
- Our course is all-inclusive. A one-off fee covers all course materials, exams**, accommodation* and meals*. No hidden extras.
- Pass the first time or train again for free. This is our guarantee. We’re confident you’ll pass your course the first time. But if not, come back within a year and only pay for accommodation, exams and incidental costs
- You’ll learn more. A day with a traditional training provider generally runs from 9 am – 5 pm, with a nice long break for lunch. With Firebrand Training you’ll get at least 12 hours/day of quality learning time, with your instructor
- You’ll learn faster. Chances are, you’ll have a different learning style to those around you. We combine visual, auditory and tactile styles to deliver the material in a way that ensures you will learn faster and more easily
- You’ll be studying with the best. We’ve been named in the Training Industry’s “Top 20 IT Training Companies of the Year” every year since 2010. As well as winning many more awards, we’ve trained and certified over 135,000 professionals
*For residential training only. Doesn't apply for online courses
**Some exceptions apply. Please refer to the Exam Track or speak with our experts
Think you are ready for the course? Take a FREE practice test to assess your knowledge! Free Practice Test