-
Please note: This course replaces the previous SSNGFW course.
This course, together with the Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention (SFWIPA) training, prepares you for the SNCF Securing Networks with Cisco Firepower 300-710 exam.
-
This training shows you how to implement and configure Cisco Secure Firewall Threat Defense for deployment as a next generation firewall at the internet edge. You’ll gain an understanding of Cisco Secure Firewall architecture and deployment, base configuration, packet processing and advanced options, and conducting Secure Firewall administration troubleshooting.
In this training, you will learn how to implement, configure, and manage Cisco® Secure Firewall Threat Defense for deployment, including:
- Configuring Cisco Secure Firewall Threat Defense settings and policies
- Understanding Cisco Secure Firewall Threat Defense policies and explaining how various policies affect packet processing through the device
- Performing basic threat analysis and management tasks using the Cisco Secure Firewall Management Center
-
Course Contents
-
- Describe Cisco Secure Firewall Threat Defense
- Describe Cisco Secure Firewall Threat Defense Deployment Options
- Describe management options for Cisco Secure Firewall Threat Defense
- Configure basic initial settings on Cisco Secure Firewall Threat Defense
- Configure high availability on Cisco Secure Firewall Threat Defense
- Configure basic Network Address Translation on Cisco Secure Firewall Threat Defense
- Describe Cisco Secure Firewall Threat Defense policies and explain how different policies influence packet processing through the device
- Configure Discovery Policy on Cisco Secure Firewall Threat Defense
- Configure and explain prefilter and tunnel rules in prefilter policy
- Configure an access control policy on Cisco Secure Firewall Threat Defense
- Configure security intelligence on Cisco Secure Firewall Threat Defense
- Configure file policy on Cisco Secure Firewall Threat Defense
- Configure Intrusion Policy on Cisco Secure Firewall Threat Defense
- Perform basic threat analysis using Cisco Secure Firewall Management Center
- Perform basic management and system administration tasks on Cisco Secure Firewall Threat Defense
- Perform basic traffic flow troubleshooting on Cisco Secure Firewall Threat Defense
- Manage Cisco Secure Firewall Threat Defense with Cisco Secure Firewall Threat Defense Manager
-
Target Group
-
- Network Security Engineers
- Administrators
-
Knowledge Prerequisites
-
Before taking this offering, you should understand:
- TCP/IP
- Basic routing protocols
- Firewall, VPN, and IPS concepts
-
Complementary and Continuative Courses
-
SCOR – Implementing and Operating Cisco Security Core Technologies
SISE – Implementing and Configuring Cisco Identity Services Engine
SESA – Securing Email with Cisco Email Security Appliance
SWSA – Securing the Web with Cisco Web Security Appliance
SVPN – Implementing Secure Solutions with Virtual Private Networks
SAUI – Implementing Automation for Cisco Security Solutions
SFWIPA – Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention
SCAZT – Designing and Implementing Secure Cloud Access for Users and Endpoints -
Course Objective
-
This training prepares you for the CCNP Security certification, which requires passing the 350-701 Implementing and Operating Cisco Security Core Technologies (SCOR) core exam and one concentration exam such as the 300-710 Securing Networks with Cisco Firepower (SNCF) concentration exam. This training also earns you 40 Continuing Education (CE) credits towards recertification.
Course Outline |
Learning Path Curriculum |
Cisco Secure Firewall Architecture and Deployment |
Cisco Secure Firewall Base Configuration |
Packet Processing and Advanced Inspection |
Secure Firewall Administration and Troubleshooting |
Lab Outline |
Perform Initial Device Setup |
Configure High Availability |
Configure Network Address Translation |
Configure Network Discovery |
Configure Prefilter and Access Control Policy |
Configure Security Intelligence |
Implement File Control and Advanced Malware Protection |
Configure Cisco Secure IPS |
Detailed Analysis Using the Firewall Management Center |
Manage Cisco Secure Firewall Threat Defense System |
Secure Firewall Troubleshooting Fundamentals |
Configure Managed Devices Using Cisco Secure Firewall Device Manager |

Certification as CCNP Security Certification
-
Classroom training
- Do you prefer the classic training method? A course in one of our Training Centers, with a competent trainer and the direct exchange between all course participants? Then you should book one of our classroom training dates!
-
Hybrid training
- Hybrid training means that online participants can additionally attend a classroom course. The dynamics of a real seminar are maintained, and the online participants are able to benefit from that. Online participants of a hybrid course use a collaboration platform, such as WebEx Training Center or Saba Meeting. To do this, a PC with browser and Internet access is required, as well as a headset and ideally a Web cam. In the seminar room, we use specially developed and customized audio- and video-technologies. This makes sure that the communication between all persons involved works in a convenient and fault-free way.
-
Online training
- You wish to attend a course in online mode? We offer you online course dates for this course topic. To attend these seminars, you need to have a PC with Internet access (minimum data rate 1Mbps), a headset when working via VoIP and optionally a camera. For further information and technical recommendations, please refer to.
-
Tailor-made courses
-
You need a special course for your team? In addition to our standard offer, we will also support you in creating your customized courses, which precisely meet your individual demands. We will be glad to consult you and create an individual offer for you.

-
Please note: This course replaces the previous SSNGFW course.
This course, together with the Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention (SFWIPA) training, prepares you for the SNCF Securing Networks with Cisco Firepower 300-710 exam.
-
This training shows you how to implement and configure Cisco Secure Firewall Threat Defense for deployment as a next generation firewall at the internet edge. You’ll gain an understanding of Cisco Secure Firewall architecture and deployment, base configuration, packet processing and advanced options, and conducting Secure Firewall administration troubleshooting.
In this training, you will learn how to implement, configure, and manage Cisco® Secure Firewall Threat Defense for deployment, including:
- Configuring Cisco Secure Firewall Threat Defense settings and policies
- Understanding Cisco Secure Firewall Threat Defense policies and explaining how various policies affect packet processing through the device
- Performing basic threat analysis and management tasks using the Cisco Secure Firewall Management Center
-
Course Contents
-
- Describe Cisco Secure Firewall Threat Defense
- Describe Cisco Secure Firewall Threat Defense Deployment Options
- Describe management options for Cisco Secure Firewall Threat Defense
- Configure basic initial settings on Cisco Secure Firewall Threat Defense
- Configure high availability on Cisco Secure Firewall Threat Defense
- Configure basic Network Address Translation on Cisco Secure Firewall Threat Defense
- Describe Cisco Secure Firewall Threat Defense policies and explain how different policies influence packet processing through the device
- Configure Discovery Policy on Cisco Secure Firewall Threat Defense
- Configure and explain prefilter and tunnel rules in prefilter policy
- Configure an access control policy on Cisco Secure Firewall Threat Defense
- Configure security intelligence on Cisco Secure Firewall Threat Defense
- Configure file policy on Cisco Secure Firewall Threat Defense
- Configure Intrusion Policy on Cisco Secure Firewall Threat Defense
- Perform basic threat analysis using Cisco Secure Firewall Management Center
- Perform basic management and system administration tasks on Cisco Secure Firewall Threat Defense
- Perform basic traffic flow troubleshooting on Cisco Secure Firewall Threat Defense
- Manage Cisco Secure Firewall Threat Defense with Cisco Secure Firewall Threat Defense Manager
-
Target Group
-
- Network Security Engineers
- Administrators
-
Knowledge Prerequisites
-
Before taking this offering, you should understand:
- TCP/IP
- Basic routing protocols
- Firewall, VPN, and IPS concepts
-
Complementary and Continuative Courses
-
SCOR – Implementing and Operating Cisco Security Core Technologies
SISE – Implementing and Configuring Cisco Identity Services Engine
SESA – Securing Email with Cisco Email Security Appliance
SWSA – Securing the Web with Cisco Web Security Appliance
SVPN – Implementing Secure Solutions with Virtual Private Networks
SAUI – Implementing Automation for Cisco Security Solutions
SFWIPA – Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention
SCAZT – Designing and Implementing Secure Cloud Access for Users and Endpoints -
Course Objective
-
This training prepares you for the CCNP Security certification, which requires passing the 350-701 Implementing and Operating Cisco Security Core Technologies (SCOR) core exam and one concentration exam such as the 300-710 Securing Networks with Cisco Firepower (SNCF) concentration exam. This training also earns you 40 Continuing Education (CE) credits towards recertification.
Course Outline |
Learning Path Curriculum |
Cisco Secure Firewall Architecture and Deployment |
Cisco Secure Firewall Base Configuration |
Packet Processing and Advanced Inspection |
Secure Firewall Administration and Troubleshooting |
Lab Outline |
Perform Initial Device Setup |
Configure High Availability |
Configure Network Address Translation |
Configure Network Discovery |
Configure Prefilter and Access Control Policy |
Configure Security Intelligence |
Implement File Control and Advanced Malware Protection |
Configure Cisco Secure IPS |
Detailed Analysis Using the Firewall Management Center |
Manage Cisco Secure Firewall Threat Defense System |
Secure Firewall Troubleshooting Fundamentals |
Configure Managed Devices Using Cisco Secure Firewall Device Manager |

Certification as CCNP Security Certification
-
Classroom training
- Do you prefer the classic training method? A course in one of our Training Centers, with a competent trainer and the direct exchange between all course participants? Then you should book one of our classroom training dates!
-
Hybrid training
- Hybrid training means that online participants can additionally attend a classroom course. The dynamics of a real seminar are maintained, and the online participants are able to benefit from that. Online participants of a hybrid course use a collaboration platform, such as WebEx Training Center or Saba Meeting. To do this, a PC with browser and Internet access is required, as well as a headset and ideally a Web cam. In the seminar room, we use specially developed and customized audio- and video-technologies. This makes sure that the communication between all persons involved works in a convenient and fault-free way.
-
Online training
- You wish to attend a course in online mode? We offer you online course dates for this course topic. To attend these seminars, you need to have a PC with Internet access (minimum data rate 1Mbps), a headset when working via VoIP and optionally a camera. For further information and technical recommendations, please refer to.
-
Tailor-made courses
-
You need a special course for your team? In addition to our standard offer, we will also support you in creating your customized courses, which precisely meet your individual demands. We will be glad to consult you and create an individual offer for you.
