1­-855­-778­-7246
> > > SECUR202

Integrated Threat Defense Investigation and Mitigation (SECUR202)

 

Course Overview

The Cisco Integrated Threat Defense Investigation and Mitigation (SECUR202) course is an instructor-led, lab-based, hands-on course offered by Cisco® Learning Services. The overall course goal is to enable students to identify, isolate, and mitigate network threats using the Cisco Integrated Threat Defense solution platforms. This course is the second in a pair of courses covering the Cisco Integrated Threat Defense solution.

This course will introduce students to network threat investigation and then reinforce student learning through a series of lab scenarios designed to identify relationships between the Cisco products and the stages of the attack lifecycle.

Course Content

Module 1: Network Threat Investigation Introduction
  • Network Attack Introduction
  • Hunting Network Threats in the Enterprise
Module 2: Investigation and Mitigation of Email Malware Threats
  • Examining Email Malware Threats
  • Investigating and Verifying Email Malware Threat Mitigation
Module 3: Investigation and Mitigation of Email Phishing Threats
  • Examining Email Phishing Attacks
  • Configuring Cisco ESA for URL and Content Filtering
  • Investigating and Verifying Email Phishing Threat Mitigation
Module 4: Investigation and Mitigation of Data Exfiltration Threats
  • Exploiting Vulnerable Network Servers
  • Investigating Data Exfiltration Threats
  • Mitigating and Verifying Data Exfiltration Threats
Module 5: Investigation and Mitigation of Malware Threats
  • Examining Endpoint Malware Protection
  • Investigating and Mitigating Endpoint Malware Threats

Who should attend

This course is designed for technical professionals who need to know how to use a deployed Integrated Threat Defense (ITD) network solution to identify, isolate, and mitigate network threats. The primary audience for this course includes:

  • Network analysts
  • Network investigators

Prerequisites

The knowledge and skills that a student must have before attending this course are as follows:

  • Technical understanding of TCP/IP networking and network architecture
  • Technical understanding of security concepts and protocols
  • Familiarity with Cisco Identity Services Engine, Cisco Stealthwatch®, Cisco Firepower®, and Cisco AMP for Endpoints is an advantage

Course Objectives

Upon completion of this course, you should be able to:

  • Describe the stages of the network attack lifecycle and identify ITD solution platform placement based on a given stage
  • Detail how to locate and mitigate email malware attacks
  • Describe email phishing attacks and the steps taken to locate and mitigate them on the network
  • Identify and mitigate data exfiltration threats on the network
  • Identify malware threats on the network and mitigate those threats after investigation
Classroom Training

Duration 2 days

Price
  • Canada: CAD 2,600
  • Cisco Learning Credits: 20 CLC
Online Training

Duration 2 days

Price
  • Canada: CAD 2,600
  • Cisco Learning Credits: 20 CLC
 
Click on town name to book Schedule
This is an Instructor-Led Classroom course
This computer icon in the schedule indicates that this date/time will be conducted as Instructor-Led Online Training.
This is a FLEX course, which is delivered both virtually and in the classroom.
  *   This class is delivered by a partner.
Canada

Currently there are no training dates scheduled for this course.  For enquiries please write to info@fastlaneca.com.

United States
Apr 16-17, 2020 Online Training 09:00 US/Eastern * Enroll

Fast Lane Flex™ Classroom If you can't find a suitable date, don't forget to check our world-wide FLEX™ training schedule.

Europe
Hungary
Nov 16-18, 2020 This is a FLEX event Budapest 3 days Course language: English Enroll
Online Training Time zone: Europe/Budapest Enroll
Slovenia
May 25-27, 2020 This is a FLEX event Ljubljana 3 days Course language: English Enroll
Online Training Time zone: Europe/Ljubljana Enroll
United Kingdom
Mar 12-13, 2020 Online Training Time zone: Europe/London * Enroll
Jun 29-Jul 1, 2020 This is a FLEX event London, City 3 days Enroll
Online Training Time zone: Europe/London Enroll
Jul 2-3, 2020 Online Training Time zone: Europe/London * Enroll
Sep 21-23, 2020 This is a FLEX event London, City 3 days Enroll
Online Training Time zone: Europe/London Enroll
Nov 30-Dec 2, 2020 This is a FLEX event London, City 3 days Enroll
Online Training Time zone: Europe/London Enroll