Course Overview
This two-day Specialist-level course is designed for security professionals who want to gain the concepts and skills necessary to deploy and manage Custom Threat Prevention within a Check Point Security environment.
What you’ll learn
Learn How To:
- Customize IPS Protections for specific security needs.
- Identify ways to optimize Threat Prevention performance.
How You Will Benefit:
- Apply Threat Prevention technologies to customize and strengthen your security posture and stay ahead of emerging threats.
Requirements
- Internet Fundamentals
- Networking Fundamentals
- Networking Security
- System Administration
- Check Point Training/Certification:
- Check Point Certified Security Administrator (CCSA) - required
- Check Point Certified Security Expert (CCSE) - recommended
Target audiences
- Security professionals who want to customize IPS and Anti-Bot/Anti-Virus Protections for specific security needs and identify ways to optimize Threat Prevention performance.
Curriculum
- 1 Section
- 11 Lessons
- 2 Days
Expand all sectionsCollapse all sections
- Topics11
- 1.1Module 1: History of Threat Prevention Lab Tasks Verify the Security Environment Verify Connectivity Between Systems
- 1.2Module 2: IPS Protections Lab Tasks Enable and Configure Custom Threat Prevention Configure the Inspection Settings Update IPS Protections Configure General and Specific Protections Configure and Test Core Protections
- 1.3Module 4: Threat Prevention Policy Profiles Lab Tasks Create Custom Threat Prevention Profiles Configure the Custom Profiles Configure Anti-Bot and Anti-Virus in the Custom Profiles
- 1.4Module 3: Anti-Virus and Anti-Bot Protections Lab Tasks Enable Anti-Bot and Anti-Virus Configure Anti-Bot and Anti-Virus
- 1.5Module 5: Threat Prevention Policy Layers Lab Tasks Configure Gateway Interface Settings Configure Threat Prevention Policy Layers Configure Threat Prevention Rules with Custom Profiles
- 1.6Module 6: Threat Prevention Logs and Traffic Analysis Lab Tasks Modify Threat Prevention Logs and Configure SmartEvent Settings Test Threat Prevention Protections View Threat Prevention Logs and Events Use Web SmartConsole to View Logs and Events.
- 1.7Module 7: Threat Prevention Exceptions and Exclusions Lab Tasks Use IPS and Threat Prevention Exceptions Create an Inspection Settings Exception Create a Core Activations Exception
- 1.8Module 8: Correlated Threat Prevention Views and Reports Lab Tasks Verify SmartEvent Activation Generate and Verify Logs for Reporting Configure SmartEvent Views and Reports
- 1.9Module 9: Threat Prevention Updates Lab Tasks Verify Recent Updates Configure Update Settings
- 1.10Module 10: Threat Prevention Performance Optimization Lab Tasks Analyze Threat Prevention Performance Create Penalty Box Exceptions and Null Profiles Test the Panic Button Protocol
- 1.11Module 11: Advanced Threat Prevention Features and Troubleshooting Lab Tasks Add a Custom SNORT Rule Create and Test a Custom Threat Indicator Observe Traffic Drops in Real Time Audit Configuration Changes
