Cisco Security Certifications



Similar documents
Data Center Certification

Data Center Certification

Cisco Certification Skills Matrix

Securing Networks with Cisco Routers and Switches 1.0 (SECURE)

CCNA Security 2.0 Scope and Sequence

Implementing Cisco Secure AccessSolutions Exam

Implementing Cisco IOS Network Security v2.0 (IINS)

Implementing Cisco Secure Mobility

VPN_2: Deploying Cisco ASA VPN Solutions

Cisco Certified Network Associate (CCNA) Cisco Certified Network Associate (CCNA)

SNRS. Securing Networks with Cisco Routers and Switches. Length 5 days. Format Lecture/lab

CCNA Security v1.0 Scope and Sequence

SSECMGT: CManaging Enterprise Security with Cisco Security Manager v4.x

Deploying Cisco ASA VPN Solutions

Managing Enterprise Security with Cisco Security Manager

CCNA Cisco Associate- Level Certifications

Managing Enterprise Security with Cisco Security Manager

CCNA Security v1.0 Scope and Sequence

Cisco Certified Security Professional (CCSP)

CISCO IOS NETWORK SECURITY (IINS)

IINS Implementing Cisco Network Security 3.0 (IINS)

Chapter 1 The Principles of Auditing 1

Designing Cisco Network Service Architectures ARCH v2.1; 5 Days, Instructor-led

Implementing Cisco IOS Network Security

Expert Reference Series of White Papers. Cisco Certifications

Inquire about our programs at Worcester Technical High School!

CCIE Exam Certification CCIE Routing and Switching Exam Certification Guide dec-2009

To participate in the hands-on labs in this class, you need to bring a laptop computer with the following:

Implementing Secured Converged Wide Area Networks (ISCW) Version 1.0

For Sales Kathy Hall

ACADEMIA LOCAL CISCO UCV-MARACAY CONTENIDO DE CURSO CURRICULUM CCNA. SEGURIDAD CCNA SECURITY. VERSION 1.0

Cisco Advanced Services for Network Security

PCI Compliance for Branch Offices: Using Router-Based Security to Protect Cardholder Data

ICT Infrastructure & Network Management

Computer Network Engineering

CCIE 100 Success Secrets

AC : INNOVATIVE NETWORK SECURITY COURSE DEVELOPMENT

Cisco Certified Security Professional (CCSP) 50 Cragwood Rd, Suite 350 South Plainfield, NJ 07080

Implementing Cisco Intrusion Prevention System 7.0 (IPS)

Computer Network Engineering

Implementing Core Cisco ASA Security (SASAC)

Brandman University. School of CCNA

Asheville-Buncombe Technical Community College Department of Networking Technology. Course Outline

How To Extend Security Policies To Public Clouds

Cisco Certified Network Expert (CCNE)

Latest IT Exam Questions & Answers

NESCOT Cyberoam Training Academy

Firefly Acceleration Program for CCIE Data Center Certification

Cisco Career Certifications and Paths

Evaluating the Cisco ASA Adaptive Security Appliance VPN Subsystem Architecture

Using Entrust certificates with VPN

Cisco Data Center Virtualization Assessment Service

CCIE Security Written Exam ( ) version 4.0

Cisco IWAN and Akamai Intelligent Platform : Maximize Your WAN Investment

A Preliminary Evaluation of the new Cisco Network Security Course

ICAB5238B Build a highly secure firewall

Cisco Virtualization Experience Infrastructure: Secure the Virtual Desktop

INTEGRATING SUBSTATION IT AND OT DEVICE ACCESS AND MANAGEMENT

IPv6 Fundamentals, Design, and Deployment

Associate in Science Degree in Computer Network Systems Engineering

CCNP: Implementing Secure Converged Wide-area Networks

HP ProCurve Networking certification for resellers. Place yourself above the competition

(d-5273) CCIE Security v3.0 Written Exam Topics

Sophos Certified Architect Course overview

CISCO LEARNING PARTNER DOMAIN SPECIFIC COURSE LIST

Cisco Certified Network Professional - Routing & Switching

Interconnecting Cisco Networking Devices, Part 2 Course ICND2 v2.0; 5 Days, Instructor-led

LoneStar College Tomball Cisco Networking Academy

Securing Networks with Cisco Routers and Switches ( )

Interconnecting Cisco Networking Devices Part 2

PCI Compliance: Improve Payment Security

Configuration Guide. How to set up the IPSec site-to-site Tunnel between the D-Link DSR Router and the Cisco Firewall. Overview

IMPLEMENTING CISCO IP ROUTING V2.0 (ROUTE)

How To Protect Your Network From Attack From A Network Security Threat

Cisco Actualtests Exam Questions & Answers

Cisco ASA 5500-X Series ASA 5512-X, ASA 5515-X, ASA 5525-X, ASA 5545-X, and ASA 5555-X

Implementing Cisco IOS Network Security

Table of Contents. Introduction. Audience. At Course Completion

Experience Our Cisco Best-in-Class Training as Cisco Learning Specialized Partner

The Cisco ASA 5500 as a Superior Firewall Solution

MUHAMMAD USMAN SHARIF

Securing Cisco Network Devices (SND)

Certification Information. New CCNA Cisco Systems, Inc. All rights reserved. Cisco Public

Security Threats VPNs and IPSec AAA and Security Servers PIX and IOS Router Firewalls. Intrusion Detection Systems

How To Pass A Credit Course At Florida State College At Jacksonville

INTERCONNECTING CISCO NETWORKING DEVICES PART 2 V2.0 (ICND 2)

Cisco Security Manager 4.2: Integrated Security Management for Cisco Firewall, IPS, and VPN Solutions

Technology Consultant Security Specialist High Profile Organisations Overview and Core Competencies

Cisco IOS Advanced Firewall

REDCENTRIC MANAGED FIREWALL SERVICE DEFINITION

WHITE PAPER. The Linksys Connected Office portfolio includes:

Intel Security Certified Product Specialist Security Information Event Management (SIEM)

Interconnecting Cisco Networking Devices, Part 2 **Part of CCNA Route/Switch**

Managed Services: Taking Advantage of Managed Services in the High-End Enterprise

For Sales Kathy Hall

Track 2: Introductory Track PREREQUISITE: BASIC COMPUTER EXPERIENCE

Transcription:

Cisco Security Certifications Learning@Cisco Increasing Demand for Practical Network Security Skills Cisco has taken note of the evolution of the role of the network security professional and its relevance to the industry. The speed at which network security is evolving demands more practical, hands-on skills in network security engineering and has made network security performance more visible to the entire organization. Network security engineers in the marketplace today understand the products and the discipline of good network security, the practices and compliance mandates of industry and government, and the need to protect their organizations from increasingly sophisticated threats to their systems. Cisco network security engineers have real-world security implementation and troubleshooting skills. Job-Ready Practical Skills The Cisco CCNA Security, CCNP Security, and CCIE Security certification programs are practical, relevant, and job-ready certification curricula aligned closely with the specific tasks expected of these in-demand professionals. Cisco realizes that the network security professional increasingly must focus on design, configuration, and support responsibilities as the technical consultant and device specialist or expert on a security team. Therefore, the Cisco Security curriculum is specific to the best practices of network security administrators, engineers, and experts using the latest Cisco equipment, devices, and appliances. Network Security Best Practices The CCNA Security, CCNP Security, and CCIE Security programs validate basic through advanced knowledge of the skills required to design, configure, and engineer secure network infrastructures using the latest Cisco security devices, technologies, and appliances. The curricula emphasize the real-world best practices of network security using the features of Cisco IOS Software security, Cisco ASA adaptive security appliance secure virtual private networks (VPNs), Cisco Intrusion Prevention System (IPS), and Cisco security management tools and using the techniques to optimize these technologies in a single, integrated network security solution. Achieving CCNA Security Certification CCNA Security certification offers professionals job-ready training and skills. The certification lays the foundation for job roles such as network security specialist, security administrator, and network security support engineer. Candidates gain knowhow in securing Cisco routers and switches and their associated networks. The CCNA Security program is a three-year certification program intended to provide baseline security education and testing for network professionals interested in network security. Relevant skills learned include testing, deploying, configuring, maintaining, and troubleshooting Cisco network security appliances and Cisco IOS Software devices that establish the security posture of the network. Before attempting the CCNA Security certification, candidates must meet the 1 2012 Cisco and/or its affiliates. All rights reserved.

requirements for Cisco CCNA certification and have at least one to three years of experience in the field of networking. Completion of the CCNA certification requires the prerequisite exams and recommended training shown in Table 1. Table 1 CCNA Security 640-802 or 640-822 and 640-816 CCNA Composite or Interconnecting Cisco Network Devices 1 (ICND1) and Interconnecting Cisco Network Devices 2 (ICND2) Completion of the CCNA Security curriculum requires the exam and recommended training shown in Table 2. Table 2 CCNA Security 640-553 Implementing Cisco IOS Network Security (IINS) CNSS 4011 Recognition The U.S. National Security Agency (NSA) and the Committee on National Security Systems (CNSS) recognize that Cisco CCNA Security courses meet the CNSS 4011 training standard. Compliance with this standard means that the Cisco CCNA Security certification program provides the required training for network security professionals who assist federal agencies and private sector entities to protect their information and aid in the defense of information resources vital to the nation. This standard is intended for information security professionals responsible for identifying system vulnerabilities, investigating and documenting system security technologies and policies, and analyzing and evaluating system security technologies. Achieving CCNP Security Certification In the demanding security environment, CCNP Security certification offers employers proof of job-ready training and skills from experienced, professional-level network security engineers. Industry forecasts show that, in the next five years, the number of network security professionals will need to double, and most of these professionals will need the validation of an industry certification. The CCNP Security program is a three-year certification program intended to distinguish the Cisco network security engineers who have the necessary skills to test, deploy, configure, maintain, and troubleshoot the Cisco network security appliances and Cisco IOS Software devices that establish the security posture of the network. Before attempting the CCNP Security certification or any of its associated security specialist certifications, individuals must meet the requirements for the Cisco CCNA Security certification and have at least one to three years of experience in the field of network security. Completion of the CCNA Security certification requires the prerequisite exams and recommended training that was shown in Table 1. The CCNP Security curriculum requires the exams and recommended training shown in Table 3. Table 3 CCNP Security 642-627 Implementing Cisco Intrusion Prevention System (IPS) 2 2012 Cisco and/or its affiliates. All rights reserved.

CNSS 4013 Recognition The U.S. National Security Agency (NSA) and the Committee on National Security Systems (CNSS) recognize that Cisco security courseware meets the CNSS 4013 training standard. This compliance means that the Cisco CCNP Security certification program provides the required training for network security professionals who assist federal agencies and private sector entities to protect their information and aid in the defense of information resources vital to the nation. This advanced standard is intended for system administrators responsible for the security oversight or management of critical networks. The formal NSA and CNSS certification gives Cisco the authority to recognize candidates who have demonstrated that they have met the CNSS 4013 training standard. Candidates who have met the standard are issued a letter of recognition acknowledging their completion of the related requirements. This letter of recognition can be used as confirmation of having met the CNSS 4013 requirements. Achieving CCIE Security Certification The CCIE Security Program recognizes individuals who have the knowledge and skills to implement, maintain, and support extensive Cisco network security solutions using the latest industry best practices and technologies. This program is the industry standard for recognition and rewards for network security engineers who have demonstrated expertlevel performance in implementation, configuration, and troubleshooting of Cisco network security solutions. The CCIE Security program is a two-year certification program intended to recognize the Cisco network security experts who have the necessary skills to test, deploy, configure, maintain, and troubleshoot Cisco network security appliances and Cisco IOS Software devices that establish the security posture of the network. Attaining and maintaining this performance-based, practical certification proves skills that are only achievable by distinct experts in the network security field. This certification carries prestige that is envied by security professionals worldwide. To gain Security CCIE certification, candidates not only must prove their theoretical knowledge of security best practices but also must demonstrate them in a lab environment with real equipment using real-world scenarios. There are no formal prerequisites for Cisco CCIE certification. Candidates must first pass a written qualification exam and then pass the corresponding hands-on lab exam. Candidates are expected to have an in-depth understanding of the exam topics and are strongly encouraged to have three to five years of job experience before attempting certification. The CCIE Security curriculum requires the exams shown in Table 4. Table 4 CCIE Security Exam Name 350-018 CCIE Security Written Exam CCIE Security Lab Exam v4.0 CCIE Security Lab Exam v4.0 CCNP Security Product and Technology Security Specialist Within the CCNP Security curriculum are several network security engineering specialist certifications for cross-training and staff development. Intended for individuals who specialize in one or more technologies or products that make up the network security infrastructure, these specialist certifications offer a convenient validation of skills and competency in intrusion prevention, VPNs, perimeter firewalls, high availability, IEEE 802.1x, mobile access, Network Admission Control (NAC), and the Cisco IOS Software security features embedded in the latest Cisco routers and switches. The following security specialist certifications are included in the CCNP Security curriculum. Cisco ASA Security Specialist The Cisco ASA Security Specialist certification recognizes security professionals who have attained specialized, in-depth expertise in the recommended best practices for designing, implementing, maintaining, and troubleshooting network security solutions using the adaptive security appliance technologies. The Cisco ASA adaptive security appliance is a best-in-class product, widely deployed and in use at leading enterprises and service providers worldwide. The 3 2012 Cisco and/or its affiliates. All rights reserved.

Cisco ASA Security Specialist certification is recognized as the benchmark security product certification for engineers, consultants, and architects who configure advanced Cisco ASA adaptive security appliance firewalls and VPN solutions, including advanced protocol handling, remote-access VPNs, Cisco IOS SSL VPNs, site-to-site VPNs, high-availability VPNs, and failover features (see Table 5). Table 5 Cisco ASA Security Specialist Certification Cisco Firewall Security Specialist Cisco firewalls are ubiquitous in the world of network security today. Professionals with the skills to design, implement, and maintain Cisco firewall solutions using the Cisco ASA adaptive security appliance and zone-based firewall solutions in Cisco routers and switches are in high demand. The Cisco Firewall Security Specialist certification focuses on validating the skills and knowledge needed to implement perimeter security solutions using Cisco security appliances. These certified specialists are actively involved in developing secure business solutions and designing and delivering multiple levels of secure access to the network (see Table 6). Table 6 Cisco Firewall Security Specialist Certification Cisco IOS Security Specialist The Cisco IOS Software security specialist demonstrates the hands-on knowledge and skills that are required to secure networks using Cisco IOS Software security features embedded in the latest Cisco routers and switches and the widely deployed Cisco security appliances. Cisco IOS Software security specialists are able to secure the network environment and provide security services based on Cisco IOS Software: zone-based policy firewall; Cisco IOS Software IPS; user-based firewall; secure tunnels using IP Security (IPsec) VPN technology, including public key infrastructure (PKI), virtual tunnel interface (VTI) and dynamic VTI (DVTI), Group Encrypted Transport VPN (GET VPN), and Dynamic Multipoint VPN (DMVPN); 802.1x authentication; and advanced switch security features (see Table 7). Table 7 Cisco IOS Security Specialist Certification Cisco IPS Security Specialist The Cisco IPS appliance is a primary device to maintain the security posture of networks. Information systems security (infosec) and network professionals who have the skills to properly deploy and configure the Cisco IPS appliance are in high demand. Cisco IPS specialists are professionals who can deploy, configure, and troubleshoot this appliance to work effectively in a complete security solution. Cisco IPS specialists can operate and monitor Cisco IOS Software and IPS technologies to prevent, understand, and respond to intrusion attempts (see Table 8). Table 8 Cisco IPS Security Specialist Certification Required 642-627 Implementing Cisco Intrusion Prevention System (IPS) 4 2012 Cisco and/or its affiliates. All rights reserved.

Cisco VPN Security Specialist Cisco offers numerous VPN solutions and configurations. Cisco VPN solutions are widely deployed in many networks today. Enterprises and service providers deploy numerous VPN solutions at any given time for their various customers and organizations, from simple point-to-point tunneling to multilayer, dynamic, high-availability VPNs. Cisco VPN security specialists can configure, maintain, and troubleshoot these VPN solutions using Cisco IOS Software and the robust Cisco ASA adaptive security appliance (see Table 9). Table 9 Cisco VPN Security Specialist Certification Recertification Cisco CCNP Security exams can be used to recertify your associate, professional and security specialist certifications. Achieving or recertifying any of the certifications that are detailed in Tables 3 through 9 automatically extends active associate, specialist, and professional-level certifications up to the point of expiration of the last certification achieved. Cisco professional-level certifications are valid for three years, and specialist certifications are active for two years. To recertify, certificate holders should pass any 642 exam that is part of the professional-level curriculum, or any Cisco CCIE written exam, or Cisco CCDE written exam, or current CCDE practical exam, or CCAR interview and the CCAR board review before the certification expiration date. Learn More For more information or to register for this program, visit www.ciscolearningnetwork.com. Cisco and the Cisco Logo are trademarks of Cisco Systems, Inc. and/or its affiliates in the U.S. and other countries. A listing of Cisco s trademarks can be found at www.cisco. com/go/trademarks. Third-party trademarks mentioned are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (1007R) DDM12CS3636 05/12