1­-855­-778­-7246
> > > SECCLD

Securing Cloud Deployments with Cisco Technologies (SECCLD)

 

Course Content

The Securing Cloud Deployments with Cisco Technologies (SECCLD) v1.0 course shows you how to implement Cisco® cloud security solutions to secure access to the cloud, workloads in the cloud, and software as a service (SaaS) user accounts, applications and data. Through expert instruction and hands-on labs, you’ll learn a comprehensive set of skills and technologies including: how to use key Cisco cloud security solutions; detect suspicious traffic flows, policy violations, and compromised devices; implement security controls for cloud environments; and implement cloud security management. This course covers usage of Cisco Cloudlock, Cisco Umbrella™, Cisco Cloud Email Security, Cisco Advanced Malware Protection (AMP) for Endpoints, Cisco Stealthwatch® Cloud and Enterprise, Cisco Firepower® NGFW (next-generation firewall) and more.

Course Benefits

  • Learn how to deploy and troubleshoot Cisco cloud security solutions to protect your cloud, users, data, and applications; prevent breaches and quickly detect and mitigate attacks; improve security and incident response and more
  • Learn skills that can be applied to both public and private solutions including Amazon Web Services (AWS), Google Cloud Platform (GCP), IBM Cloud, Microsoft Azure, Dimension Data Cloud, Alibaba Cloud, VMware Cloud and other cloud solutions.
  • Gain leading-edge skills for high-demand jobs focused on enterprise security

Who should attend

This course is open to engineers, administrators, and security-minded users of public, private and hybrid cloud infrastructures responsible for implementing security in cloud environments:

  • Security architects
  • Cloud architects
  • Security engineers
  • Cloud engineers
  • System engineers
  • Cisco integrators and partners

Prerequisites

To fully benefit from this course, you should have completed the following course or obtained the equivalent knowledge and skills:

  • Knowledge of cloud computing and virtualization software basics
  • Ability to perform basic UNIX-like OS commands

Cisco CCNP® security knowledge or understanding of the following topic areas:

  • Cisco Adaptive Security Appliance (ASA) and Adaptive Security Virtual Appliance (ASAv) deployment
  • Cisco IOS Flexible NetFlow operations

Available in Implementing Cisco Edge Network Security Solutions (SENSS)

  • Cisco NGFW (Cisco Firepower Threat Defense [FTD]), Cisco Firepower, and Cisco Firepower Management Center (FMC) deployment
  • Cisco Content Security operations including Cisco Web Security Appliance (WSA)/ Cisco Email Security Appliance (ESA)/ Cisco Cloud Web Security (CWS)
  • Cisco AMP for network and endpoints deployment

Available in Implementing Cisco Threat Control Solutions (SITCS)

  • Cisco ISE operations and Cisco TrustSec architecture

Available in Implementing Cisco Secure Access Solutions (SISAS)

  • VPN operation

Available in Implementing Cisco Secure Mobility Solutions (SIMOS)

Course Objectives

  • Contrast the various cloud service and deployment models.
  • Implement the Cisco Security Solution for SaaS using Cisco Cloudlock Micro Services.
  • Deploy cloud security solutions using Cisco AMP for Endpoints, Cisco Umbrella, and Cisco Cloud Email Security.
  • Define Cisco cloud security solutions for protection and visibility using Cisco virtual appliances and Cisco Stealthwatch Cloud.
  • Describe the network as a sensor and enforcer using Cisco Identity Services Engine (ISE), Cisco Stealthwatch Enterprise and Cisco TrustSec®.
  • Implement Cisco Firepower NGFW Virtual (NGFWv) and Cisco Stealthwatch Cloud to provide protection and visibility in AWS environments.
  • Explain how to protect the cloud management infrastructure by using specific examples, defined best practices and AWS reporting capabilities.[/list\]

Outline: Securing Cloud Deployments with Cisco Technologies (SECCLD)

Introducing the Cloud and Cloud Security
  • Describe the Evolution of Cloud Computing
  • Explain the Cloud Service Models
  • Explore the Security Responsibilities Within the Infrastructure as a Service (IaaS) Service Model
  • Explore the Security Responsibilities Within the Platform as a Service (PaaS) Service Model
  • Explore the Security Responsibilities Within the SaaS Service Model
  • Describe Cloud Deployment Models
  • Describe Cloud Security Basics
Implementing the Cisco Security Solution for SaaS Access Control
  • Explore Security Challenges for Customers Using SaaS
  • Describe User and Entity Behavior Analytics, Data Loss Prevention (DLP), and Apps Firewall
  • Describe Cloud Access Security Broker (CASB)
  • Describe Cisco CloudLock as the CASB
  • Describe OAuth and OAuth Attacks
Deploying Cisco Cloud-Based Security Solutions for Endpoints and Content Security
  • Describe Cisco Cloud Security Solutions for Endpoints
  • Describe AMP for Endpoints Architecture
  • Describe Cisco Umbrella
  • Describe Cisco Cloud Email Security
  • Design Comprehensive Endpoint Security
Introducing Cisco Security Solutions for Cloud Protection and Visibility
  • Describe Network Function Virtualization (NFV)
  • Describe Cisco Secure Architectures for Enterprises (Cisco SAFE)
  • Describe Cisco NGFWv/Cisco Firepower Management Center Virtual (FMCv)/Cisco AMP for Networks
  • Describe Cisco ASAv
  • Describe Cisco Services Router 1000V (CSR1Kv)
  • Describe Cisco Stealthwatch Cloud
  • Describe Cisco Tetration Cloud Zero-Trust Model
Describing the Network as the Sensor and Enforcer
  • Describe Cisco Stealthwatch Enterprise
  • Describe Cisco ISE Functions and Personas
  • Describe Cisco TrustSec
  • Describe Cisco Stealthwatch and Cisco ISE Integration
  • Describe Cisco Encrypted Traffic Analytics (ETA)
Implementing Cisco Security Solutions in AWS
  • Explain AWS Security Offerings
  • Describe AWS Elastic Compute Cloud (EC2) and Virtual Private Cloud (VPC)
  • Discover Cisco Security Solutions in AWS
  • Explain Cisco Stealthwatch Cloud in AWS
Describing Cloud Security Management
  • Describe Cloud Management and APIs
  • Explain API Protection
  • Illustrate an API Example: Integrate to ISE Using pxGrid
  • Identify SecDevOps Best Practices
  • Illustrate a Cisco Cloud Security Management Tool Example: Cisco Defense Orchestrator
  • Illustrate a Cisco Cloud Security Management Tool Example: Cisco CloudCenter™
  • Describe Cisco Application Centric Infrastructure (ACI)
  • Describe AWS Reporting Tools

Labs:

  • Explore the Cisco Cloudlock Dashboard and User Security
  • Explore Cisco Cloudlock Application and Data Security
  • Explore Cisco AMP Endpoints
  • Perform Endpoint Anaylsis Using the AMP Endpoint Console
  • Examine the Umbrella Dashboard
  • Examine Cisco Umbrella Investigate
  • Explore Email Ransomware Protection by Cisco Cloud Email Security
  • DNS Ransomware Protection by Cisco Umbrella
  • Explore File Ransomware Protection by Cisco AMP for Endpoints
  • Explore a Ransomware Execution Example
  • Implement Cisco ASAv in ESXi
  • Configure and Test Basic Cisco ASAv Network Address Translation (NAT)/Access Control List (ACL) Functions
  • Explore Cisco Stealthwatch Cloud
  • Explore Stealthwatch Cloud Alerts Settings, Watchlists, and Sensors
  • Explore the Network as the Sensor and Enforcer
  • Explore Cisco Stealthwatch Enterprise
  • Deploy NGFWv and FMCv in AWS
  • Troubleshoot FTD and FMC in AWS – Scenario 1
  • Troubleshoot FTD and FMC in AWS – Scenario 2
  • Troubleshoot FTD and FMC in AWS – Scenario 3
  • Explore AWS Reporting Capabilities
Classroom Training

Duration 4 days

Price
  • United States: US$ 4,295
  • Cisco Learning Credits: 43 CLC
Online Training

Duration 4 days

Price
  • United States: US$ 4,295
  • Cisco Learning Credits: 43 CLC
 
Click City Name To Book Schedule
This is an Instructor-Led Classroom course
This is an Instructor-Led Online (ILO) course. These sessions are conducted via WebEx in a VoIP environment and require an Internet Connection and headset with microphone connected to your computer or laptop.
This is a FLEX course, which is delivered simultaneously in two modalities. Choose to attend the Instructor-Led Online (ILO) virtual session or Instructor-Led Classroom (ILT) session.
  *   This class is delivered by a partner.
United States
Jan 21-24, 2020 Chicago (Rosemont) 09:00 US/Central * Enroll
Jan 21-24, 2020 Online Training 09:00 US/Central * Enroll
Feb 11-14, 2020 Online Training 09:00 US/Central Enroll
Mar 17-20, 2020 Columbia, MD 09:00 US/Eastern * Enroll
Mar 17-20, 2020 Online Training 09:00 US/Central * Enroll
Apr 7-10, 2020 Online Training 09:00 US/Eastern Enroll
May 12-15, 2020 Online Training 09:00 US/Pacific Enroll
Jul 14-17, 2020 Online Training 09:00 US/Central Enroll
Sep 15-18, 2020 Online Training 09:00 US/Eastern Enroll
Nov 3-6, 2020 Online Training 09:00 US/Pacific Enroll
Canada
Feb 11-14, 2020 Online Training 09:00 Canada/Central Enroll
Apr 7-10, 2020 Online Training 09:00 Canada/Eastern Enroll
May 12-15, 2020 Online Training 09:00 Canada/Pacific Enroll
Jul 14-17, 2020 Online Training 09:00 Canada/Central Enroll
Sep 15-18, 2020 Online Training 09:00 Canada/Eastern Enroll
Nov 3-6, 2020 Online Training 09:00 Canada/Pacific Enroll

Fast Lane Flex™ Classroom If you can't find a suitable date, don't forget to check our world-wide FLEX™ training schedule.

Europe
United Kingdom
Apr 27-30, 2020 This is a FLEX event London, City Enroll
Online Training Time zone: Europe/London Enroll
 
...