new ccnp security

New CCNP Security exam guide 27.02.2020

As you know on 23 February 2020 Cisco Introduced a new CCNP Security exam. About this changes you can read from my Cisco Introduced new CCNP Security Certification program (Updated 24.02.2019).

Achieving CCNP Security certification proves your skills with security solutions. To earn CCNP Security certification, you pass two exams: one that covers core security technologies and one security concentration exam of your choice, so you can customize your certification to your technical area of focus.

Cisco® CCNP® certifications are customizable, with only two exams:

  • The core exam covers on topics that apply across technology, including automation and programmability
  • The concentration exam covers a focus area of your choice in that technology.

Core Exam- Implementing and Operating Cisco Security Core Technologies (SCOR 350-701). This exam tests your knowledge of implementing and operating core security technologies, including:

  • Network security
  • Cloud security
  • Content security
  • Endpoint protection and detection
  • Secure network access
  • Visibility and enforcement

For now, there is only one SCOR v.1 official course by Cisco e-learning

Implementing and Operating Cisco Security Core Technologies (SCOR) v1.0

This course helps you prepare for the Cisco® CCNP® Security and CCIE® Security certifications and for senior-level security roles. In this course, you will master the skills and technologies you need to implement core Cisco security solutions to provide advanced threat protection against cybersecurity attacks. You will learn security for networks, cloud and content, endpoint protection, secure network access, visibility, and enforcements. You will get extensive hands-on experience deploying Cisco Firepower® Next-Generation Firewall and Cisco Adaptive Security Appliance (ASA) Firewall; configuring access control policies, mail policies, and 802.1X Authentication; and more. You will get introductory practice on Cisco Stealthwatch® Enterprise and Cisco Stealthwatch Cloud threat detection features.

This course, including the self-paced material, helps prepare you to take the exam, Implementing and Operating Cisco Security Core Technologies (350-701 SCOR), which leads to the new CCNP Security, CCIE Security, and the Cisco Certified Specialist – Security Core certifications. 

In this course, you will master the skills and technologies you need to implement core Cisco security solutions to provide advanced threat protection against cybersecurity attacks. You will learn security for networks, cloud and content, endpoint protection, secure network access, visibility, and enforcement. You will get extensive hands-on experience deploying Cisco Firepower® Next-Generation Firewall and Cisco Adaptive Security Appliance (Cisco ASA) Firewall; configuring access control policies, mail policies, and 802.1X Authentication; and more. You will get introductory practice on Cisco Stealthwatch® Enterprise and Cisco Stealthwatch Cloud threat detection features.

This course helps you prepare to take the Implementing and Operating Cisco Security Core Technologies (350-701 SCOR) exam, which leads to the new CCNP Security, CCIE Security, and the Cisco Certified Specialist – Security Core certifications.

Course Objectives

After taking this course, you should be able to:

  • Describe information security concepts and strategies within the network
  • Describe common TCP/IP, network application, and endpoint attacks
  • Describe how various network security technologies work together to guard against attacks
  • Implement access control on Cisco ASA appliance and Cisco Firepower Next-Generation Firewall
  • Describe and implement basic email content security features and functions provided by Cisco Email Security Appliance
  • Describe and implement web content security features and functions provided by Cisco Web Security Appliance
  • Describe Cisco Umbrella® security capabilities, deployment models, policy management, and Investigate console
  • Introduce VPNs and describe cryptography solutions and algorithms
  • Describe Cisco secure site-to-site connectivity solutions and explain how to deploy Cisco IOS Virtual Tunnel Interface (VTI)-based point-to-point IPsec VPNs, and point-to-point IPsec VPN on the Cisco ASA and Cisco Firepower Next-Generation Firewall (NGFW)
  • Describe and deploy Cisco secure remote access connectivity solutions and describe how to configure 802.1X and Extensible Authentication Protocol (EAP) authentication
  • Provide basic understanding of endpoint security and describe Advanced Malware Protection (AMP) for Endpoints architecture and basic features
  • Examine various defenses on Cisco devices that protect the control and management plane
  • Configure and verify Cisco IOS Software Layer 2 and Layer 3 data plane controls
  • Describe Cisco Stealthwatch Enterprise and Stealthwatch Cloud solutions
  • Describe basics of cloud computing and common cloud attacks and how to secure cloud environment

Target Audience

  • Security engineers
  • Network engineers, designers, administrators, and managers
  • Systems engineers
  • Consulting systems engineers
  • Technical solutions architects
  • Cisco integrators and partners

Course Prerequisites

To fully benefit from this course, you should have the following knowledge and skills:

  • Skills and knowledge equivalent to those learned in Implementing and Administering Cisco Solutions (CCNA®) v1.0 course
  • Familiarity with Ethernet and TCP/IP networking
  • Working knowledge of Microsoft Windows
  • Working knowledge of Cisco IOS networking and concepts
  • Familiarity with basics of networking security concepts

This course, including the self-paced material, helps prepare you to take the exam, Implementing and Operating Cisco Security Core Technologies (350-701 SCOR), which leads to the new CCNP Security, CCIE Security, and the Cisco Certified Specialist – Security Core certifications. 

The second part of the CCNP Security exam is Concentration exams.

In below the list of these exams :

Securing Networks with Cisco Firepower (SNCF 300-710)

This exam tests your knowledge of Cisco Firepower® Threat Defense and Firepower® 7000 and 8000 Series virtual appliances, including:

  • Policy configurations
  • Integrations
  • Deployments
  • Management and troubleshooting

Implementing and Configuring Cisco Identity Services Engine (SISE 300-715)

This exam tests your knowledge of Cisco Identify Services Engine, including:

  • Architecture and deployment
  • Policy enforcement
  • Web Auth and guest services
  • Profiler
  • BYOD
  • Endpoint compliance
  • Network access device administration

Securing Email with Cisco Email Security Appliance (SESA 300-720)

This exam tests your knowledge of Cisco Email Security Appliance, including:

  • Administration
  • Spam control and antispam
  • Message filters
  • Data loss prevention
  • LDAP
  • Email authentication and encryption
  • System quarantines and delivery methods

Securing the Web with Cisco Web Security Appliance (SWSA 300-725)

This exam tests your knowledge of Cisco Web Security Appliance, including:

  • Proxy services
  • Authentication
  • Decryption policies
  • Differentiated traffic access policies and identification policies
  • Acceptable use control settings
  • Malware defense
  • Data security and data loss prevention

Implementing Secure Solutions with Virtual Private Networks (SVPN 300-730)

This exam tests your knowledge of implementing secure remote communications with Virtual Private Network (VPN) solutions, including:

  • Secure communications
  • Architectures
  • Troubleshooting

Automating and Programming Cisco Security Solutions (SAUTO 300-735)

This exam tests your knowledge of implementing security automated solutions, including:

  • Programming concepts
  • RESTful APIs
  • Data models
  • Protocols
  • Firewalls
  • Web
  • DNS
  • Cloud and email security
  • ISE

Please help me correct them if you find any mistakes. For supporting us Share this with your friends