Obiettivi | Certificazione | Contenuti | Tipologia | Prerequisiti | Durata e Frequenza | Docenti | Modalità di Iscrizione | Calendario

Il Corso SCOR Implementing and Operating Cisco Security Core Technologies fornisce ai Partecipanti le competenze necessarie per implementare e gestire le principali tecnologie di sicurezza Cisco, con un approccio orientato alla protezione avanzata contro attacchi informatici, minacce applicative, compromissioni endpoint e rischi legati ad accessi, contenuti, cloud e infrastrutture di rete. Il corso è pensato per chi opera in ambienti enterprise e security-oriented e deve consolidare competenze operative su soluzioni Cisco di livello professional. Durante il corso vengono trattate tecnologie e funzionalità come network security, security concepts, TCP/IP attacks, network application attacks, Cisco Secure Firewall ASA, Cisco Secure Firewall Threat Defense, access control policies, NAT, IPS, malware and file policies, Cisco Secure Email Gateway, email policy configuration, Cisco Secure Web Appliance, proxy services, authentication, HTTPS decryption, acceptable use control e malware protection. Il programma approfondisce inoltre VPN technologies, cryptography, IPsec, IKEv2, VTI, site-to-site VPN, remote-access VPN, SSL VPN, Cisco Umbrella, DNS Security, Secure Web Gateway, Cloud-Delivered Firewall, CASB, endpoint security, Cisco Secure Endpoint, ransomware protection, Cisco Secure Network Access, 802.1X, EAP, infrastructure protection, control plane security, Layer 2 e Layer 3 data plane security controls, management plane security controls, traffic telemetry, Cisco Secure Network Analytics, cloud security, Cisco Secure Cloud Analytics e software-defined networking. . Il Corso contribuisce alla preparazione dell’esame di Certificazione CCNP Security (Esame 350-701).
Sintesi Statistica :
- Corsi realizzati: 36;
- Numero Corsisti: 259;
- Superamento Esame: 88,07%
Contattaci ora per ricevere tutti i dettagli e per richiedere, senza alcun impegno, di parlare direttamente con uno dei nostri Docenti (Clicca qui)
oppure chiamaci subito al nostro Numero Verde (800-177596).
Calling from abroad? Reach us at +39 02 87168254.
Obiettivi del corso
Di seguito una sintesi degli obiettivi principali del Corso SCOR Implementing and Operating Cisco Security Core Technologies:
- Implementare soluzioni di network security con Cisco Secure Firewall ASA e Cisco Secure Firewall Threat Defense.
- Configurare policy di sicurezza per IPS, malware protection, file policies, email security e web security.
- Gestire soluzioni VPN, IPsec, IKEv2, VTI, site-to-site VPN, remote-access VPN e SSL VPN.
- Applicare controlli di sicurezza su endpoint, accessi, 802.1X, EAP, control plane, data plane e management plane.
- Utilizzare Cisco Umbrella, Cisco Secure Endpoint, Cisco Secure Network Analytics, Cisco Secure Cloud Analytics e cloud security controls.
Certificazione del corso
Esame 350-701 SCOR Implementing and Operating Cisco Security Core Technologies;
Esame Parte delle Certificazioni: CCNP Security, CCIE Security; L’esame verifica le competenze del candidato nell’implementazione e gestione delle principali tecnologie di sicurezza Cisco. L’esaminato deve dimostrare conoscenza e capacità operative nell’ambito della network security, inclusi concetti di sicurezza, minacce TCP/IP, network application attacks, protezione dell’infrastruttura, secure access control, control plane security, Layer 2 e Layer 3 data plane security controls e management plane security controls. L’esame valuta inoltre competenze su Cisco Secure Firewall ASA e Cisco Secure Firewall Threat Defense, con focus su access control policies, NAT, IPS, malware protection e file policies. Sono inclusi anche contenuti relativi a content security, con tecnologie come Cisco Secure Email Gateway e Cisco Secure Web Appliance, oltre a proxy services, authentication, HTTPS decryption, acceptable use control e malware protection. Il candidato deve dimostrare conoscenza delle soluzioni VPN, cryptography, IPsec, IKEv2, VTI, site-to-site VPN, remote-access VPN e SSL VPN. Sono testati anche ambiti di secure network access, 802.1X, EAP, Cisco Secure Network Access, endpoint protection, Cisco Secure Endpoint, Cisco Umbrella, DNS Security, Secure Web Gateway, Cloud-Delivered Firewall, CASB, Cisco Secure Network Analytics, traffic telemetry, cloud security e Cisco Secure Cloud Analytics.
Contenuti del corso
Network Security Technologies
- Core information security concepts and strategies
- Common security flaws in TCP/IP networks
- Network application-based attacks and attack vectors
- Interaction between security technologies against cyber threats
- Security architecture principles for enterprise environments
Cisco Secure Firewall ASA Deployment
- Deployment of Cisco Secure Firewall ASA
- Network settings and NAT configuration
- Access control policies on Cisco Secure Firewall ASA
- Traffic filtering and policy enforcement
- Verification of basic firewall operations
Cisco Secure Firewall Threat Defense Basics
- Basic configuration of Cisco Secure Firewall Threat Defense
- NAT configuration on Cisco Secure Firewall Threat Defense
- Access control policy implementation
- Traffic inspection and enforcement concepts
- Verification of Secure Firewall Threat Defense deployment
Cisco Secure Firewall Threat Defense IPS, Malware, and File Policies
- IPS policy deployment on Cisco Secure Firewall Threat Defense
- Malware protection concepts and configuration
- File policy implementation and enforcement
- Threat detection and prevention workflows
- Verification of inspection and security policy behavior
Cisco Secure Email Gateway Basics
- Basic deployment of Cisco Secure Email Gateway
- Listener configuration concepts
- HAT and RAT configuration
- Email traffic handling and relay behavior
- Verification of email gateway operations
Cisco Secure Email Policy Configuration
- Email security policy concepts
- Configuration of Cisco Secure Email policies
- Policy enforcement for inbound and outbound email traffic
- Threat protection and content control for email flows
- Verification and troubleshooting of email security policies
Cisco Secure Web Appliance Deployment
- Deployment of Cisco Secure Web Appliance
- Proxy services configuration
- Authentication and user identification
- HTTPS decryption concepts and implementation
- Acceptable use control and malware protection
VPN Technologies and Cryptography Concepts
- Fundamentals of VPN technologies
- Cryptography concepts and algorithms
- IPsec architecture and security associations
- Encryption, authentication, and integrity mechanisms
- VPN use cases in secure enterprise connectivity
Cisco Secure Site-to-Site VPN Solutions
- Site-to-site VPN architecture
- Cisco secure site-to-site connectivity solutions
- IPsec VPN design and deployment models
- Secure intersite communication concepts
- Verification of site-to-site VPN connectivity
Cisco IOS VTI-Based Point-to-Point IPsec VPNs
- Virtual Tunnel Interface (VTI) concepts
- Point-to-point IPsec VPN deployment on Cisco IOS
- IKEv2 tunnel configuration
- Routing integration with VTI-based VPNs
- Verification of encrypted point-to-point connectivity
Point-to-Point IPsec VPNs on the Cisco Secure Firewall ASA and Cisco Secure Firewall Threat Defense
- Point-to-point IPsec VPN configuration on Cisco Secure Firewall ASA
- Point-to-point IPsec VPN configuration on Cisco Secure Firewall Threat Defense
- Tunnel establishment and policy matching
- Traffic encryption and VPN forwarding behavior
- Verification and troubleshooting of IPsec VPN operations
Cisco Secure Remote-Access VPN Solutions
- Remote-access VPN architecture
- Cisco secure remote-access connectivity solutions
- User access and authentication concepts
- Secure connectivity for remote users
- Design considerations for remote-access VPN services
Remote-Access SSL VPNs on the Cisco Secure Firewall ASA and Cisco Secure Firewall Threat Defense
- SSL VPN concepts and use cases
- Remote-access VPN configuration on Cisco Secure Firewall ASA
- Remote-access VPN configuration on Cisco Secure Firewall Threat Defense
- Secure user access and policy enforcement
- Verification of remote-access VPN connectivity
Describing Information Security Concepts
- Core information security principles
- Confidentiality, integrity, and availability concepts
- Threat, vulnerability, and risk fundamentals
- Security controls and defense strategies
- Role of security policies in enterprise environments
Describe Common TCP/IP Attacks
- Common attacks against TCP/IP protocols
- Network reconnaissance and exploitation techniques
- Attacks targeting hosts and network services
- Protocol weaknesses and abuse scenarios
- Defensive approaches against TCP/IP-based attacks
Describe Common Network Application Attacks
- Common attacks against network applications
- Application-layer threat techniques
- Exploitation of insecure application behavior
- Impact of application attacks on enterprise security
- Defensive controls for application-layer protection
Common Endpoint Attacks
- Common endpoint attack techniques
- Malware, ransomware, and file-based threats
- Endpoint compromise scenarios
- Attack paths targeting users and devices
- Endpoint protection and detection concepts
Cisco Umbrella Deployment
- Cisco Umbrella security capabilities
- DNS Security deployment models
- Secure Web Gateway and Cloud-Delivered Firewall concepts
- Policy management in Cisco Umbrella
- Use of Investigate console for threat analysis
Endpoint Security Technologies
- Endpoint security fundamentals
- Common endpoint protection technologies
- Detection and response concepts
- Endpoint visibility and threat prevention
- Integration of endpoint security into enterprise defense
Cisco Secure Endpoint
- Cisco Secure Endpoint architecture
- Basic features and endpoint protection capabilities
- Endpoint analysis using Secure Endpoint Console
- Ransomware protection concepts
- Verification of endpoint detection and response workflows
Cisco Secure Network Access Solutions
- Cisco Secure Network Access concepts
- Secure access control for users and devices
- Policy-based access enforcement
- Network access visibility and control
- Integration with enterprise security architecture
802.1X Authentication
- 802.1X authentication fundamentals
- Extensible Authentication Protocol (EAP) concepts
- Supplicant, authenticator, and authentication server roles
- Secure network access workflows
- Use cases for wired and wireless access control
802.1X Authentication Configuration
- Device configuration for 802.1X operations
- Authentication policy implementation
- EAP-based access control verification
- Troubleshooting of 802.1X authentication issues
- Operational validation of secure access configuration
Network Infrastructure Protection
- Infrastructure protection controls
- Security controls for routers, switches, and firewalls
- Hardening principles for network devices
- Protection against unauthorized access and misuse
- Baseline security practices for enterprise infrastructure
Control Plane Security Solutions
- Control plane protection concepts
- Defenses against attacks targeting routing and management processes
- Control Plane Policing principles
- Protection of critical network device functions
- Verification of control plane security behavior
Layer 2 Data Plane Security Controls
- Layer 2 data plane attack mitigation
- Cisco IOS Layer 2 security features
- Protection against switching-based attacks
- Configuration and verification of Layer 2 security controls
- Operational validation of Layer 2 traffic protection
Layer 3 Data Plane Security Controls
- Layer 3 data plane protection concepts
- Cisco IOS and Cisco ASA Layer 3 security controls
- Filtering and forwarding protection mechanisms
- Configuration and verification of Layer 3 controls
- Troubleshooting of Layer 3 security behavior
Management Plane Security Controls
- Management plane protection concepts
- Secure administrative access to network devices
- Device management hardening
- Authentication and authorization for management access
- Verification of management plane security controls
Traffic Telemetry Methods
- Baseline telemetry for network infrastructure
- Telemetry collection from security devices
- Visibility into traffic flows and security events
- Monitoring data for detection and response
- Use of telemetry in security operations
Cisco Secure Network Analytics Deployment
- Deployment of Cisco Secure Network Analytics
- Network visibility and behavioral analytics concepts
- Detection of suspicious traffic patterns
- Integration with threat alerts and encrypted traffic analytics
- Verification of Secure Network Analytics operations
Cloud Computing and Cloud Security
- Cloud computing fundamentals
- Common cloud attack techniques
- Shared responsibility security concepts
- Cloud workload and application protection
- Security considerations for cloud environments
Cloud Security
- Methods for securing cloud environments
- Cloud access and policy enforcement
- Protection of cloud workloads and data
- Cloud threat visibility and monitoring
- Security architecture for hybrid and multicloud environments
Cisco Secure Cloud Analytics Deployment
- Deployment of Cisco Secure Cloud Analytics
- Cloud traffic monitoring concepts
- Private and public cloud visibility
- Detection of anomalous cloud behavior
- Operational use of cloud analytics dashboards
Software-Defined Networking
- Basics of software-defined networking
- Network programmability concepts
- Separation of control plane and data plane
- Security considerations in SDN environments
- Role of programmability in modern security architectures
Attività Laboratoriali
- Configure Network Settings and NAT on Cisco Secure Firewall ASA
- Configure Cisco Secure Firewall ASA Access Control Policies
- Configure Cisco Secure Firewall Threat Defense NAT
- Configure Cisco Secure Firewall Threat Defense Access Control Policy
- Configure Cisco Secure Firewall Threat Defense Discovery and IPS Policy
- Configure Cisco Secure Firewall Threat Defense Malware and File Policy
- Configure Listener, HAT, and RAT on Cisco Email Secure Email Gateway
- Configure Cisco Secure Email Policies
- Configure Proxy Services, Authentication, and HTTPS Decryption
- Enforce Acceptable Use Control and Malware Protection
- Configure Static VTI Point-to-Point IPsec IKEv2 Tunnel
- Configure Point-to-Point VPN between Cisco Secure Firewall Threat Defense Devices
- Configure Remote Access VPN on the Cisco Secure Firewall Threat Defense
- Examine Cisco Umbrella Dashboard and DNS Security
- Examine Cisco Umbrella Secure Web Gateway and Cloud-Delivered Firewall
- Explore Cisco Umbrella CASB Functionalities
- Explore Cisco Secure Endpoint
- Perform Endpoint Analysis Using Cisco Secure Endpoint Console
- Explore File Ransomware Protection by Cisco Secure Endpoint Console
- Explore Secure Network Analytics v7.4.2
- Explore Global Threat Alerts Integration and ETA Cryptographic Audit
- Explore Cloud Analytics Dashboard and Operations
- Explore Secure Cloud Private and Public Cloud Monitoring
Tipologia
Corso di Formazione con Docente
Docenti
I docenti sono Istruttori accreditati CISCO e certificati in altre tecnologie IT, con anni di esperienza pratica nel settore e nella Formazione.
Infrastruttura laboratoriale
Per tutte le tipologie di erogazione, il Corsista può accedere alle attrezzature e ai sistemi reali Cisco presenti nei Nostri laboratori o direttamente presso i data center Cisco in modalità remota. Ogni partecipante dispone di un accesso per implementare le varie configurazioni avendo così un riscontro pratico e immediato della teoria affrontata. Ecco di seguito alcune topologie di rete dei Laboratori Cisco Disponibili:

Dettagli del corso
Prerequisiti
Si consiglia la partecipazione al Corso Cisco CCNA e al Corso Cisco Cybersecurity.
Durata del corso
- Durata Estensiva 60 Ore;
- Durata Intensiva 5gg;
Frequenza
Varie tipologie di Frequenza Estensiva ed Intensiva.
Date del corso
- Corso Cisco SCOR (Formula Intensiva) – 20/07/2026 – 09:00 – 17:00
- Corso Cisco SCOR (Formula Intensiva) – 16/11/2026 – 09:00 – 17:00
Modalità di iscrizione
Le iscrizioni sono a numero chiuso per garantire ai tutti i partecipanti un servizio eccellente.
L’iscrizione avviene richiedendo di essere contattati dal seguente Link, o contattando la sede al numero verde 800-177596 o inviando una richiesta all’email [email protected].
