Implementing and Configuring Cisco Identity Services Engine (SISE)

 

Course Overview

The Implementing and Configuring Cisco Identity Services Engine (SISE) training teaches you to deploy and use Cisco® Identity Services Engine (ISE) v3.x, an identity and access control policy platform that simplifies the delivery of consistent, highly secure access control across wired, wireless, and virtual private network (VPN) connections. This hands-on training provides you with the knowledge and skills to implement and apply Cisco ISE capabilities to support use cases for Zero Trust security posture. These use cases include tasks such as policy enforcement, profiling services, web authentication and guest access services, Bring Your Own Device (BYOD), endpoint compliance services, and Terminal Access Controller Access Control Server (TACACS+) device administration. Through hands-on practice via lab exercises, you will learn how to use Cisco ISE to gain visibility into what is happening in your network, streamline security policy management, and contribute to operational efficiency.

This training prepares you for 300-715 SISE v1.1 exam. If passed, you earn the Cisco Certified Specialist – Security Identity Management Implementation certification and satisfy the concentration exam requirement for the Cisco Certified Network Professional Security (CCNP SECURITY)

How You'll Benefit

This training will help you:

  • Develop and implement SASE architecture
  • Understand application of ISE capabilities towards development of a Zero Trust approach
  • Enable BYOD and guest access
  • Centrally configure and manage posture, authentication, and authorization services in a single web-based GUI console
  • Gain leading-edge career skills for high-demand job roles and responsibilities focused on enterprise security
  • Prepare for the 300-715 SISE v1.1 exam
  • Earn 40 CE credits toward recertification

What to Expect in the Exam

Implementing and Configuring Cisco Identity Services Engine (300-715 SISE) v1.1 is a 90-minute exam associated with the Cisco Certified Specialist – Security Identity Management Implementation certification and satisfies the concentration exam requirement for the CCNP Security certification.

This exam tests your knowledge of Cisco ISE, including:

  • Architecture and deployment
  • Policy enforcement
  • Web Auth and guest services
  • Profiler
  • BYOD
  • Endpoint compliance
  • Network access device administration

Who should attend

  • Network Security Engineers
  • Administrators

Certifications

This course is part of the following Certifications:

Prerequisites

There are no prerequisites for this training. However, the knowledge and skills you are recommended to have before attending this training are:

  • Familiarity with the Cisco IOS® Software Command-Line Interface (CLI) for wired and wireless devices
  • Familiarity with Cisco Secure Client
  • Familiarity with Microsoft Windows operating systems
  • Familiarity with 802.1X

These skills can be found in the following Cisco Learning Offering:

Course Objectives

  • Describe the Cisco ISE deployments, including core deployment components and how they interact to create a cohesive security architecture
  • Describe the advantages of such a deployment and how each Cisco ISE capability contributes to these advantages
  • Describe concepts and configure components related authentication, identity management, and certificate services
  • Describe how Cisco ISE policy sets are used to implement authentication and authorization, and how to leverage this capability to meet the needs of your organization
  • Describe third-party Network Access Devices (NADs), Cisco TrustSec, and Easy Connect
  • Configure web authentication and guest services, including guest access components and various guest access scenarios
  • Describe and configure Cisco ISE profiling services
  • Understand how to monitor these services to enhance endpoint security and ensure secure edge
  • Describe BYOD challenges, solutions, processes, and portals
  • Configure a BYOD solution and describe the relationship between BYOD processes and their related configuration components
  • Describe and configure various certificates related to a BYOD solution
  • Describe endpoint compliance, compliance components, posture agents, posture deployment and licensing, and the posture service in Cisco ISE
  • Describe the fundamentals of Identity and Access Management (IAM) by leveraging TACACS+
  • Configure TACACS+ device administration using Cisco ISE, including command sets, profiles, and policy sets
  • Understand the role of TACACS+ within the Authentication, Authorization, and Accounting (AAA) framework and the differences between the RADIUS and TACACS+ protocols

Outline: Implementing and Configuring Cisco Identity Services Engine (SISE)

  • Introducing Cisco ISE Architecture
  • Introducing Cisco ISE Deployment
  • Introducing Cisco ISE Policy Enforcement Components
  • Introducing Cisco ISE Policy Configuration
  • Troubleshooting Cisco ISE Policy and Third-Party NAD Support
  • Exploring Cisco TrustSec
  • Introducing Web Authentication and Guest Services
  • Configuring Hotspots and Guest Portals
  • Configuring Cisco ISE BYOD
  • Working with Network Access Devices
  • Introducing the Cisco ISE Profiler
  • Introducing Profiling Best Practices and Reporting
  • Introducing Cisco ISE Endpoint Compliance Services
  • Configuring Client Posture Services and Compliance

Prices & Delivery methods

Online Training

Duration
5 days

Price
  • US $ 4,300
  • Cisco Learning Credits: 43
Classroom Training

Duration
5 days

Price
  • United States: US $ 4,300
  • Cisco Learning Credits: 43
E-Learning

Subscription duration
180 days

Price
  • United States: US $ 500
  • Cisco Learning Credits: 5

Click on town name or "Online Training" to book Schedule

Guaranteed date:   This green checkmark in the Upcoming Schedule below indicates that this session is Guaranteed to Run.
This is an Instructor-Led Classroom course
Instructor-led Online Training:   This is an Instructor-Led Online (ILO) course. These sessions are conducted via WebEx in a VoIP environment and require an Internet Connection and headset with microphone connected to your computer or laptop. If you have any questions about our online courses, feel free to contact us via phone or Email anytime.
This is a FLEX course, which is delivered simultaneously in two modalities. Choose to attend the Instructor-Led Online (ILO) virtual session or Instructor-Led Classroom (ILT) session.

United States

Online Training 09:00 Central Standard Time (CST) CLC Eligible Enroll
Online Training 09:00 Eastern Standard Time (EST) CLC Eligible Enroll
Online Training 09:00 Central Standard Time (CST) CLC Eligible Enroll
Online Training 09:00 Pacific Daylight Time (PDT) Enroll
Online Training 09:00 Eastern Daylight Time (EDT) Enroll
Online Training 09:00 Central Daylight Time (CDT) Enroll
Online Training 09:00 Eastern Daylight Time (EDT) Enroll
Online Training 09:00 Central Standard Time (CST) Enroll

Canada

Online Training 09:00 Eastern Standard Time (EST) CLC Eligible Enroll
Online Training 09:00 Central Standard Time (CST) CLC Eligible Enroll
Online Training 09:00 Pacific Daylight Time (PDT) Enroll
Online Training 09:00 Eastern Daylight Time (EDT) Enroll
Online Training 09:00 Central Daylight Time (CDT) Enroll
Online Training 09:00 Eastern Daylight Time (EDT) Enroll
Online Training 09:00 Central Standard Time (CST) Enroll