Login     Signup
   info@zetlantechnologies.com        +91-8680961847

  /   Cisco Training & Certifications   /   CCIE Security

CCIE Security Certification

Demonstrate mastery of planning, designing, deploying, operating, and optimizing solutions for complex enterprise security networks. Lead the changes in security solutions with the Cisco Certified Internetwork Expert (CCIE) Security certification.



CCIE Security Certification

Demonstrate mastery of planning, designing, deploying, operating, and optimizing solutions for complex enterprise security networks. Lead the changes in security solutions with the Cisco Certified Internetwork Expert (CCIE) Security certification.



Make your mark with the end-to-end skills for secure IT infrastructure


The CCIE Security certification is designed to help you build cutting-edge skills to position yourself as a technical leader in the ever-changing landscape of security technologies and solutions.


ccnalogo

CCIE Security Certification

Contextual Policy Enforcement

Demonstrate your ability to apply security policies based on context and to provide Rapid Threat Containment by quickly identifying, isolating, and mitigating security threats to minimize their impact on the network.

Centralized policy Orchestration

Showcase your skills to orchestrate security policies from a single, central point within the network—the Cisco Catalyst Center—to streamline policy management and ensure consistency across diverse types of security devices.


Cloud Adoption

Highlight your proficiency in deploying DNS layer security, Firewall as a Service, Cloud Access Security Broker, and Secure Web Gateway through Cisco Umbrella for robust cloud-delivered security solutions

Automation and Programmability

Exhibit your ability in developing and troubleshooting secure API calls to communicate with security appliances using HTTP. Automate configuration steps by consuming API calls through Python automation.



How it works

No Formal Prerequisites Necessary


There are no formal prerequisites for this certification.


Learners are recommended to have five to seven years of experience with designing, deploying, operating, and optimizing security technologies and solutions.

Example learner profiles

As our most advanced certifications, Cisco expert certifications tell the world you’re among the best of the best in your field. Many candidates have previous experience in IT security and are aiming for a senior-level or leadership position.



CCIE Security


Security Architect : Design, build, and maintain a company's security system to protect its digital assets. Security Analyst : Curtail security breaches by identifying the causes and sources of threats. IT security Officer : Oversees information security, cybersecurity, and IT risk management programs based on industry-accepted frameworks.

1. Perimeter Security and Intrusion Prevention

  • Deployment modes on Cisco ASA and Cisco FTD
    • Routed
    • Transparent
    • Single
    • Multi-context
    • Multi-instance
  • Firewall features on Cisco ASA and FTD
    • NAT
    • Application inspection
    • Traffic zones
    • Policy-based routing
    • Traffic redirection to service modules
    • Identity firewall
  • Security features on Cisco IOS/IOS XE
    • Application awareness
    • Zone-based firewall
    • NAT
  • Cisco FMC features
    • Alerting
    • Logging
    • Reporting
    • Dynamic objects
  • Cisco NGIPS deployment modes
    • In-line
    • Passive
    • TAP
  • Cisco NGFW features
    • SSL inspection
    • User identity
    • Geolocation
    • AVC
  • Detect and mitigate common types of attacks
    • DoS/DDoS
    • Evasion techniques
    • Spoofing
    • Man-in-the-middle
    • Botnet
  • Clustering and high availability features on Cisco ASA and Cisco FTD
  • Policies and rules for traffic control on Cisco ASA and Cisco FTD
  • Routing protocols security on Cisco IOS, Cisco ASA, and Cisco FTD
  • Network connectivity through Cisco ASA and Cisco FTD
  • Correlation and remediation rules on Cisco FMC

  • Cisco AnyConnect client-based, remote-access VPN technologies on Cisco ASA, Cisco FTD, and Cisco routers
  • Cisco IOS CA for VPN authentication
  • FlexVPN, DMVPN, and IPsec L2L tunnels
  • VPN high availability methods
    • Cisco ASA VPN clustering
    • Dual-hub DMVPN deployments
  • Infrastructure segmentation methods
    • VLAN
    • PVLAN
    • GRE
    • VRF-Lite
  • Micro segmentation with Cisco Trust Sec using SFT and SXP

  • Device hardening techniques and control plane protection methods
    • CoPP
    • IP source routing
    • iACLs
  • Management plane protection techniques
    • CPU
    • Memory thresholding
    • Securing device access
  • Data plane protection Techniques
    • uRPF
    • QoS
    • RTBH
  • Layer 2 security Techniques
    • DAI
    • IPDT
    • STP security
    • Port security
    • DHCP snooping
    • RA Guard
    • VACL
  • Wireless Security Technologies
    • WPA
    • WPA2
    • WPA3
    • TKIP
    • AES
  • Monitoring protocols
    • NetFlow/IPFIX/NSEL
    • SNMP
    • SYSLOG
    • RMON
    • eStreamer
  • Security features to comply with organizational security policies, procedures, and standards BCP 38
    • ISO 27001
    • RFC 2827
    • PCI-DSS
  • Cisco SAFE model to validate network security design and to identify threats to different PINs
  • Interaction with network devices through APIs using basic Python scripts
    • REST API requests and responses
      • HTTP action verbs, error codes, cookies, headers
      • JSON or XML payload
      • Authentication
    • Data Encoding Formats
      • JSON
      • XML
      • YAML
    • Cisco DNAC Northbound APIs use cases
      • Authentication and authorization
      • Network discovery
      • Network device
      • Network host

  • Cisco ISE scalability using multiple nodes and personas
  • Cisco switches and Cisco Wireless LAN Controllers for network access AAA with Cisco ISE
  • Cisco devices for administrative access with Cisco ISE
  • AAA for network access with 802.1X and MAB using Cisco ISE
  • Guest lifecycle management using Cisco ISE and Cisco WLC
  • BYOD on-boarding and network access flows
  • Cisco ISE integration with external identity sources
    • LDAP
    • AD
    • External RADIUS
  • Provisioning Cisco AnyConnect with Cisco ISE and Cisco ASA
  • Posture assessment with Cisco ISE
  • Endpoint profiling using Cisco ISE and Cisco network infrastructure including device sensor
  • Integration of MDM with Cisco ISE
  • Certification-based authentication using Cisco ISE
  • Authentication methods
    • EAP Chaining and TEAP
    • MAR
  • Identity mapping on Cisco ASA, Cisco ISE, Cisco WSA, and Cisco FTD
  • PxGrid integration between security devices Cisco WSA, Cisco ISE, and Cisco FMC
  • Integration of Cisco ISE with multifactor authentication
  • Access control and single sign-on using Cisco DUO security technology
  • Cisco IBNS 2.0 (C3PL) for authentication, access control, and user policy enforcement

  • Cisco AMP for networks, Cisco AMP for endpoints, and Cisco AMP for content security (Cisco ESA, and Cisco WSA)
  • Detect, analyze, and mitigate malware incidents
  • Perform packet capture and analysis using Wireshark, tcpdump, SPAN, ERSPAN, and RSPAN
  • Cloud security
    • DNS proxy through Cisco Umbrella virtual appliance
    • DNS security policies in Cisco Umbrella
    • RBI policies in Cisco Umbrella
    • CASB policies in Cisco Umbrella
    • DLP policies in Cisco Umbrella
  • Web filtering, user identification, and Application Visibility and Control (AVC) on Cisco FTD and Cisco WSA
  • WCCP redirection on Cisco devices
  • Email security features
    • Mail policies
    • DLP
    • Quarantine
    • Authentication
    • Encryption
  • HTTP decryption and inspection on Cisco FTD, Cisco WSA, and Cisco Umbrella
  • Cisco SMA for centralized content security management
  • Cisco advanced threat solutions and their integration: Cisco Stealthwatch, Cisco FMC, Cisco AMP, Cisco CTA, Threat Grid, ETA, Cisco WSA, Cisco SMA, Cisco Threat Response, and Cisco Umbrella


Fees Structure : 15500 INR / 185 USD
Total No of Class : 118 Video Class
Class Duration : 68:30 Working Hours
Download Feature : Download Avalable
Technical Support : Call / Whatsapp : +91 8680961847
Working Hours : Monday to Firday 9 AM to 6 PM
Payment Mode : Credit Card / Debit Card / NetBanking / Wallet (Gpay/Phonepay/Paytm/WhatsApp Pay)

Brochure       Buy Now       Sample Demo

Fees Structure : 22500 INR / 270 USD
Class Duration : 60 Days
Class Recording : Live Class Recording available
Class Time : Monday to Firday 1.5 hours per day / Weekend 3 Hours per day
Technical Support : Call / Whatsapp : +91 8680961847
Working Hours : Monday to Firday 9 AM to 6 PM
Payment Mode : Credit Card / Debit Card / NetBanking / Wallet (Gpay/Phonepay/Paytm/WhatsApp Pay)

Download Brochure       Pay Online