Detect advanced threats and strengthen cybersecurity resilience.
Learn how to use FortiSandbox to identify, analyze, and respond to sophisticated cyber threats that evade traditional security controls.
Develop practical skills in threat detection, malware analysis, automated threat intelligence, and security integration to improve your organization’s security posture.
- Why get trained: Gain hands-on knowledge of FortiSandbox technologies that help security teams identify malicious activity, investigate threats, and improve protection against advanced attacks.
- Why it matters: Organizations face increasingly sophisticated cyber threats, making advanced threat detection and proactive security measures essential for protecting critical systems and data.
- Who should attend: Security administrators, cybersecurity analysts, SOC analysts, incident responders, network security engineers, Fortinet administrators, and professionals responsible for threat detection and security operations.
Build advanced threat detection capabilities and improve your organization’s cyber resilience with FortiSandbox. HRD Corp Claimable

Overview
In this course, you will learn how to protect your organization and improve its security against advanced threats that bypass traditional security controls. You will learn about how FortiSandbox detects advanced threats.
You will also learn about how FortiSandbox dynamically generates local threat intelligence, and how other advanced threat protection (ATP) components leverage this threat intelligence information to protect organizations from advanced threats.
Skills Covered
After completing this course, you will be able to:
- Identify threat actors and their motivations
- Identify different types of counterattacks
- Describe the Fortinet solutions for different stages of the Cyber Kill Chain
- Analyze the MITRE ATT&CK matrix
- Identify FortiSandbox architecture and key components
- Plan a FortiSandbox deployment
- Describe FortiSandbox input methods
- Select an appropriate deployment mode and configure initial settings
- Explain FortiSandbox interface requirements
- Configure alert emails, SNMP monitoring, and a remote backup
- Analyze dashboards, the operation center, and system events
- Monitor FortiSandbox operation and troubleshoot system issues
- Manage guest VMs
- Configure VM association settings and scan options
- Configure high availability cluster settings and health checks
- Monitor cluster health and individual nodes
- Configure FortiGate, FortiMail, FortiWeb, and FortiClient EMS integration with FortiSandbox
- Configure threat intelligence sharing
- Monitor submission logs from various Fortinet Security Fabric devices
- Troubleshoot integration issues
- Analyze scan job reports
Prerequisites
You must have an understanding of the topics covered in FCF – FortiGate Fundamentals (or have equivalent experience).
It is also recommended that you have an understanding of the topics covered in the following courses, or have equivalent experience:
- FortiGate Administrator
- FortiMail
- FortiWeb
- FortiClient EMS
Target Audience
This course is intended for network security professionals responsible for designing, implementing, and maintaining a Fortinet advanced threat protection solution with FortiSandbox.

Exam & Certification
This course is intended to help you prepare for the Fortinet NSE 5 – FortiSandbox Administrator exam. This exam is part of the FCP Security Operations certification track.
Training & Certification Guide
Why train with Trainocate
Speak to a Training Consultant
All courses are HRD Claimable.
Get in touch with our team via the form or WhatsApp us on +6011-5119 6631























