Learning Services Protecting Against Malware Threats with Cisco AMP for Endpoints

advertisement
Data Sheet
Learning Services
Protecting Against Malware Threats with
Cisco AMP for Endpoints
The Protecting Against Malware Threats with Cisco® AMP for Endpoints is an
instructor-led, lab-based, hands-on course offered by Cisco Learning Services. It is a
lab-intensive course that introduces students to the powerful features of Cisco AMP
for Endpoints software. Day one of this 3-day virtual class covers modern threats,
vulnerabilities, and Cisco Advanced Malware Protection (AMP) technologies. Days
two and three detail the Cisco AMP for Endpoints product architecture and how it can
be used to protect against malware.
You learn how to build and manage a Cisco AMP for Endpoints deployment, create policies for endpoint groups,
and deploy connectors. You also analyze malware detections using powerful tools available in the AMP for
Endpoints console.
This course combines lecture materials and hands-on labs throughout to make sure that you are able to
successfully deploy and manage an AMP for Endpoints deployment.
Duration
Instructor-led virtual classroom: 3 days
Target Audience
This course is designed for technical professionals who need to know how to deploy and manage Cisco AMP for
Endpoints software in their network environments.
Targeted roles include:
●
Security administrators
●
Security consultants
© 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 1 of 4
●
Network administrators
●
System engineers
●
Technical support personnel
●
Channel partners and resellers
Course Objectives
After completing this course, you should be able to:
●
Describe malware terminology and recognize malware categories
●
Describe the architecture and individual security features of Windows, Apple Mac, and Linux operating
systems and the concept of vulnerabilities
●
Describe the components and behavior of exploit kits and botnets
●
Describe modern attack vectors and trends
●
Recognize the key components and methodologies of Cisco Advanced Malware Protection
●
Recognize the key features and concepts of the AMP for Endpoints product
●
Navigate the AMP for Endpoints console interface and perform first-use setup tasks
●
Configure and customize AMP for Endpoints to perform malware detection
●
Create and configure a policy for AMP-protected endpoints
●
Plan, deploy, and troubleshoot an AMP for Endpoints installation
●
Analyze files and events by using the AMP for Endpoints console and be able to produce threat reports
●
Use the AMP for Endpoints tools to analyze a malware attack
●
Describe all features of the Accounts menu for both public and private cloud installations
Course Prerequisites
Cisco recommends that you have the following prerequisite knowledge and skills:
●
TCP/IP experience including the major protocols, common services, and basic network traffic routing
●
General information security fundamentals
●
Fundamentals of how operating systems work, including OS configuration structures, file system I/O and
basic OS usage and management
Course Outline
●
Module 1: Modern Malware
●
Module 2: Operating Systems and Vulnerabilities
●
Module 3: Exploit Kits and Botnets
●
Module 4: Attack Vectors and Trends
●
Module 5: Introduction to Cisco AMP Technologies
●
Module 6: AMP for Endpoints Overview and Architecture
●
Module 7: Console Interface and Navigation
●
Module 8: Outbreak Control
●
Module 9: Endpoint Policies
© 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 2 of 4
●
Module 10: Groups and Deployment
●
Module 11: Analysis
●
Module 12: Analysis Case Studies
●
Module 13: Accounts
Lab Outline
●
Lab 1: Sample Malware Behavior
●
Lab 2: Accessing AMP for Endpoints
●
Lab 3: Outbreak Control
●
Lab 4: Endpoint Policies
●
Lab 5: Groups and Deployment
●
Lab 6: Analysis
●
Lab 7: Zbot Analysis
●
Lab 8: User Accounts
Lab Topology
Following is the lab topology for this course as shown in Figure 1.
Figure 1.
Lab Topology for All Labs in This Course
Registration Email
For more information about schedules and registration for this course, contact aeskt_registration@cisco.com.
© 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
Page 3 of 4
Cisco Capital
Financing to Help You Achieve Your Objectives
Cisco Capital can help you acquire the technology you need to achieve your objectives and stay competitive. We
can help you reduce CapEx. Accelerate your growth. Optimize your investment dollars and ROI. Cisco Capital
financing gives you flexibility in acquiring hardware, software, services, and complementary third-party equipment.
And there’s just one predictable payment. Cisco Capital is available in more than 100 countries. Learn more.
Website Addresses for More Information
For more information about Cisco Learning Services for Cisco classic products and technologies, visit
http://www.cisco.com/go/cls.
®
For information about Cisco TelePresence training, visit http://www.cisco.com/go/telepresencetraining/.
For information about broadband video training for service providers, visit http://www.cisco.com/go/spvtraining.
®
For information about Cisco WebEx technology training, visit http://www.cisco.com/go/webextraining.
For information about mobile Internet technology training, visit http://www.cisco.com/go/mitg.
Printed in USA
© 2016 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
C78-736404-00 02/16
Page 4 of 4
Download