Overview

Cisco CCNP Security: SENSS is an online training course that is designed to prepare security engineers with the knowledge and hands-on experience to configure Cisco perimeter edge security solutions utilizing Cisco Switches, Cisco Routers, and Cisco Adaptive Security Appliance (ASA) Firewalls.

The goal of this online training course is to provide students with foundational knowledge and the capabilities to implement and managed security on Cisco ASA firewalls, Cisco Routers with the firewall feature set, and Cisco Switches. Student will gain hands-on experience with configuring various perimeter security solutions for mitigating outside threats and securing network zones. At the end of this online training course, students will be able to reduce the risk to their IT infrastructures and applications using Cisco Switches, Cisco ASA, and Router security appliance feature and provide detailed operations support for these products.

Course Instructor: Ryan Lindfield

Course Outline

01. Cisco Secure Design Principles

  • Course Overview
  • Network Security Zoning
  • Cisco Module Network Security Architecture
  • Cisco SecureX Architecture and Cisco TrustSec Solution

02. Deploying Cisco Network Infrastructure Protection Solutions

  • Intro Cisco Network Infrastructure Architecture and Deploying Cisco IOS Control Plane Security Controls, Cisco IOS Management Plane Security Controls
  • Deploying Cisco ASA Management Plane Security Controls
  • Configuring Cisco Traffic Telemetry Methods
  • Deploying Cisco IOS Layer 2 and Layer 3 Data Plane Security Controls

03. Deploying NAT on Cisco IOS and Cisco Adaptive Security Appliance (ASA) Firewalls

  • Introducing Network Address Translation
  • Deploying Cisco ASA Network Address Translation
  • Deploying Cisco IOS Software Network Address Translation

04. Deploying Threat Controls on Cisco ASA Firewalls

  • Introducing Cisco Threat Controls
  • Deploying Cisco ASA Basic Access Policies
  • Deploying Cisco ASA Application Inspection Policies
  • Deploying Cisco ASA Botnet Traffic Filtering
  • Deploying Cisco ASA Identity Based Firewall

05. Deploying Threat Controls on Cisco IOS Software

  • Deploying Cisco IOS Software with Basic Zone-Based Firewall Policy
  • Deploying Cisco IOS Software ZBFW with Application Inspection Policies

Skills Learned

After completing this online training course, students will be able to:

  • Understanding and implementing Cisco modular Network Security Architectures such as SecureX and TrustSec
  • Deploy Cisco Infrastructure management and control plane security controls
  • Configuring Cisco layer 2 and layer 3 data plane security controls
  • Implement and maintain Cisco ASA Network Address Translations (NAT)
  • Implement and maintain Cisco IOS Software Network Address Translations (NAT)
  • Designing and deploying Cisco Threat Defense solutions on a Cisco ASA utilizing access policy and application and identity based inspection
  • Implementing Botnet Traffic Filters
  • Deploying Cisco IOS Zone-Based Policy Firewalls (ZBFW)
  • Configure and verify Cisco IOS ZBFW Application Inspection Policy