CCIE Professional Development
2 total works
Integrated Security Technologies and Solutions - Volume I
by Aaron Woland, Vivek Santuka, Mason Harris, and Jamie Sanbower
The essential reference for security pros and CCIE Security candidates: policies, standards, infrastructure/perimeter and content security, and threat protection
Integrated Security Technologies and Solutions – Volume I offers one-stop expert-level instruction in security design, deployment, integration, and support methodologies to help security professionals manage complex solutions and prepare for their CCIE exams. It will help security pros succeed in their day-to-day jobs and also get ready for their CCIE Security written and lab exams.
Part of the Cisco CCIE Professional Development Series from Cisco Press, it is authored by a team of CCIEs who are world-class experts in their Cisco security disciplines, including co-creators of the CCIE Security v5 blueprint. Each chapter starts with relevant theory, presents configuration examples and applications, and concludes with practical troubleshooting.
Volume 1 focuses on security policies and standards; infrastructure security; perimeter security (Next-Generation Firewall, Next-Generation Intrusion Prevention Systems, and Adaptive Security Appliance [ASA]), and the advanced threat protection and content security sections of the CCIE Security v5 blueprint. With a strong focus on interproduct integration, it also shows how to combine formerly disparate systems into a seamless, coherent next-generation security solution.
- Review security standards, create security policies, and organize security with Cisco SAFE architecture
- Understand and mitigate threats to network infrastructure, and protect the three planes of a network device
- Safeguard wireless networks, and mitigate risk on Cisco WLC and access points
- Secure the network perimeter with Cisco Adaptive Security Appliance (ASA)
- Configure Cisco Next-Generation Firewall Firepower Threat Defense (FTD) and operate security via Firepower Management Center (FMC)
- Detect and prevent intrusions with Cisco Next-Gen IPS, FTD, and FMC
- Configure and verify Cisco IOS firewall features such as ZBFW and address translation
- Deploy and configure the Cisco web and email security appliances to protect content and defend against advanced threats
- Implement Cisco Umbrella Secure Internet Gateway in the cloud as your first line of defense against internet threats
- Protect against new malware with Cisco Advanced Malware Protection and Cisco ThreatGrid
Integrated Security Technologies and Solutions - Volume II
by Aaron Woland, Vivek Santuka, Jamie Sanbower, and Chad Mitchell
The essential reference for security pros and CCIE Security candidates: identity, context sharing, encryption, secure connectivity and virtualization
Integrated Security Technologies and Solutions – Volume II brings together more expert-level instruction in security design, deployment, integration, and support. It will help experienced security and network professionals manage complex solutions, succeed in their day-to-day jobs, and prepare for their CCIE Security written and lab exams.
Volume II focuses on the Cisco Identity Services Engine, Context Sharing, TrustSec, Application Programming Interfaces (APIs), Secure Connectivity with VPNs, and the virtualization and automation sections of the CCIE v5 blueprint. Like Volume I, its strong focus on interproduct integration will help you combine formerly disparate systems into seamless, coherent, next-generation security solutions.
Part of the Cisco CCIE Professional Development Series from Cisco Press, it is authored by a team of CCIEs who are world-class experts in their Cisco security disciplines, including co-creators of the CCIE Security v5 blueprint. Each chapter starts with relevant theory, presents configuration examples and applications, and concludes with practical troubleshooting.
- Review the essentials of Authentication, Authorization, and Accounting (AAA)
- Explore the RADIUS and TACACS+ AAA protocols, and administer devices with them
- Enforce basic network access control with the Cisco Identity Services Engine (ISE)
- Implement sophisticated ISE profiling, EzConnect, and Passive Identity features
- Extend network access with BYOD support, MDM integration, Posture Validation, and Guest Services
- Safely share context with ISE, and implement pxGrid and Rapid Threat Containment
- Integrate ISE with Cisco FMC, WSA, and other devices
- Leverage Cisco Security APIs to increase control and flexibility
- Review Virtual Private Network (VPN) concepts and types
- Understand and deploy Infrastructure VPNs and Remote Access VPNs
- Virtualize leading Cisco Security products
- Make the most of Virtual Security Gateway (VSG), Network Function Virtualization (NFV), and microsegmentation