Protecting against Malware Threats with Cisco AMP for Endpoints (SSFAMP)

 

Who should attend

This course is designed for technical professionals who need to know how to deploy and manage FireAMP in your network environment. The primary audience for this course includes:

  • Security administrators
  • Security consultants
  • Network administrators
  • System engineers
  • Technical support personnel
  • Channel partners and resellers

Prerequisites

Technical understanding of TCP/IP networking and network architecture
Basic familiarity with the concepts of malware detection

Course Objectives

Upon completion of this course, you should be able to:

  • Understand the architecture and various components of FireAMP and FireAMP cloud
  • Understand security concerns around malware and how attacks unfold
  • Understand and navigate the FireAMP interface, dashboard, and its components
  • Manage malware detection mechanisms
  • Understand advanced policy configuration for endpoints
  • Understand how to deploy and ditsribute the FireAMP connector
  • Understand file analysis and FireAMP reporting
  • Understand the private cloud offering

Course Content

Course Outline

  • Module 1: FireAMP Overview and Architecture
  • Module 2: Console Interface and Navigation
  • Module 3: Outbreak Control
  • Module 4: Endpoint Policies
  • Module 5: Groups and Deployment
  • Module 6: Analysis
  • Module 7: Anlaysis Case Studies
  • Module 8: Accounts


Lab Outline

  • Lab 1: Performing the Initial Setup
  • Lab 2: Initialize the Private Cloud
  • Lab 3: Accessing the FireAMP Console
  • Lab 4: Reviewing the Interface
  • Lab 5: Simple Custom Detections
  • Lab 6: Advanced Custom Detection
  • Lab 7: Application Blocking
  • Lab 8: Whitelisting
  • Lab 9: DFC IP Backist
  • Lab 10: Create a FireAMP Policy
  • Lab 11: Creating Groups
  • Lab 12: Deploying the Connector
  • Lab 13: Connector Command Line Installation
  • Lab 14: Query the History Database
  • Lab 15: Manually Install a Policy
  • Lab 16: Testing Your Policy
  • Lab 17: Working with FireAMP Events
  • Lab 18: Detection/ Quarantine Events
  • Lab 19: File Trajectory
  • Lab 20: Device Trajectory
  • Lab 21: Reporting
  • Lab 22: ZBot Analysis and Remediation
  • Lab 23: User Accounts
  • Lab 24: Enable Demo Data

Prices & Delivery methods

Online Training

Duration
3 days

  • on request
  • Cisco Learning Credits: 30
Classroom Training

Duration
3 days

Price
  • on request
  • Cisco Learning Credits: 30
E-Learning

Subscription duration
180 days

Price
  • on request

Click on town name or "Online Training" to book Schedule

Instructor-led Online Training:   This is an Instructor-Led Online (ILO) course. These sessions are conducted via WebEx in a VoIP environment and require an Internet Connection and headset with microphone connected to your computer or laptop.
This is a FLEX course, which is delivered simultaneously in two modalities. Choose to attend the Instructor-Led Online (ILO) virtual session or Instructor-Led Classroom (ILT) session.

Europe

Germany

This is a FLEX course. Hamburg Enroll
Online Training Time zone: Central European Time (CET) Enroll
This is a FLEX course. Frankfurt Enroll
Online Training Time zone: Central European Summer Time (CEST) Enroll

United Kingdom

Online Training Time zone: Greenwich Mean Time (GMT) 5 days Enroll