Overview

The Advanced Techniques for Cisco Firewall Threat Defense and Intrusion Prevention training shows you how to deploy and configure Cisco Secure Firewall Threat Defense system and its features as a data center network firewall or as an Internet Edge firewall with Virtual Private Network (VPN) support. You will learn how to configure identity-based policies, Secure Sockets Layer (SSL) decryption, remote-access VPN, and site-to-site VPN before moving on to advanced Intrusion Prevention System (IPS) configuration and event management, integrations with other systems, and advanced troubleshooting.

You will also learn how to automate configuration and operations of Cisco Secure Firewall Threat Defense system using programmability and Application Programming Interfaces (APIs) and how to migrate configuration from Cisco Secure Firewall Adaptive Security Appliances (ASA).

This training prepares you for the 300-710 Securing Networks with Cisco Firepower (SNCF) exam. If passed, you earn the Cisco Certified Specialist – Network Security Firepower certification and satisfy the concentration exam requirement for the Cisco Certified Networking Professional (CCNP) Security certification. This training also earns you 40 Continuing Education (CE) credits toward recertification.

Skills Covered

  • Describe Cisco Secure Firewall Threat Defense
  • Describe advanced deployment options on Cisco Secure Firewall Threat Defense
  • Describe advanced device settings for Cisco Secure Firewall Threat Defense device
  • Configure dynamic routing on Cisco Secure Firewall Threat Defense
  • Configure advanced network address translation on Cisco Secure Firewall Threat Defense
  • Configure SSL decryption policy on Cisco Secure Firewall Threat Defense
  • Deploy Remote Access VPN on Cisco Secure Firewall Threat Defense
  • Deploy identity-based policies on Cisco Secure Firewall Threat Defense
  • Deploy site-to-site IPsec-based VPN on Cisco Secure Firewall Threat Defense
  • Deploy advanced access control settings on Cisco Secure Firewall Threat Defense
  • Describe advanced event management on Cisco Secure Firewall Threat Defense
  • Describe available integrations with Cisco Secure Firewall Threat Defense
  • Troubleshoot traffic flow using advanced options on Cisco Secure Firewall Threat Defense
  • Describe benefits of automating configuration and operations of Cisco Secure Firewall Threat Defense
  • Describe configuration migration to Cisco Secure Firewall Threat Defense

Prerequisites

The knowledge and skills you are expected to have before attending this training are:

  • Knowledge of Transmission Control Protocol/Internet Protocol (TCP/IP)
  • Basic knowledge of routing protocols
  • Familiarity with the content explained in the Securing Internet Edge with Cisco Secure Firewall Threat Defense training

These skills can be found in the following Cisco Learning Offerings:

Target Audience

  • System Installers
  • System Integrators
  • System Administrators
  • Network Administrators
  • Solutions Designers

Course Curriculum

Course Outlines

  • Introducing Cisco Secure Firewall Threat Defense
  • Describing Advanced Deployment Options on Cisco Secure Firewall Threat Defense
  • Configuring Advanced Device Settings on Cisco Secure Firewall Threat Defense
  • Configuring Dynamic Routing on Cisco Secure Firewall Threat Defense
  • Configuring Advanced NAT on Cisco Secure Firewall Threat Defense
  • Configuring SSL Policy on Cisco Secure Firewall Threat Defense
  • Deploying Remote Access VPN on Cisco Secure Firewall Threat Defense
  • Deploying Identity-Based Policies on Cisco Secure Firewall Threat Defense
  • Deploying Site-to-Site VPN on Cisco Secure Firewall Threat Defense
  • Configuring Snort Rules and Network Analysis Policies
  • Describing Advanced Event Management Cisco Secure Firewall Threat Defense
  • Describing Integrations on Cisco Secure Firewall Threat Defense
  • Troubleshooting Advanced Traffic Flow on Cisco Secure Firewall Threat Defense
  • Automating Cisco Secure Firewall Threat Defense
  • Migrating to Cisco Secure Firewall Threat Defense

Lab Outline

  • Deploy Advanced Connection Settings
  • Configure Dynamic Routing
  • Configure SSL Policy
  • Configure Remote Access VPN
  • Configure Site-to-Site VPN
  • Customize IPS and NAP Policies
  • Configure Cisco Secure Firewall Threat Defense Integrations
  • Troubleshoot Cisco Secure Firewall Threat Defense
  • Migrate Configuration from Cisco Secure Firewall ASA

Dates & Locations

Let’s make it work for you

Can’t find a date that fits? Need to train your whole team? Looking for a discount?
Speak to one of our learning experts today.

August 3, 2026 - August 7, 2026

Location: Kuala Lumpur
Modal: ILT
Availability: TBC
Exam:
RM 1350

August 3, 2026 - August 7, 2026

Location: Online
Modal: VILT
Availability: TBC
Exam:
RM 1350

November 16, 2026 - November 20, 2026

Location: Kuala Lumpur
Modal: ILT
Availability: TBC
Exam:
RM 1350

November 16, 2026 - November 20, 2026

Location: Online
Modal: VILT
Availability: TBC
Exam:
RM 1350
Trainocate exam and cert

Exam & Certification

CCNP Security

Earning your Cisco Certified Network Professional (CCNP) Security certification proves that you can step into the ever-evolving network landscape and protect the infrastructures that clients rely on.

Prove your skills in all things security infrastructure, including network, cloud, and content security, endpoint protection and detection, secure network access, visibility, and enforcement.

 

Training & Certification Guide

  • Duration: 90 minutes
  • Languages: English, Japanese
  • Price: $300 USD

This exam tests your knowledge of Cisco Firepower® Threat Defense and Firepower® 7000 and 8000 Series virtual appliances, including:

  • Policy configurations
  • Integrations
  • Deployments
  • Management and troubleshooting

Software and networking become more and more interconnected every day, creating ever greater need for robust, scalable security across all platforms—from networks to mobile devices. With intent-based networking, security teams can take advantage of automation to scale their security solutions. To capitalize on these opportunities, today’s security professionals need a broader range of skills and deeper focus in strategic technology areas. The CCNP Security certification program gives you exactly that breadth and depth.

We designed the Cisco CCNP Security certification to help you prove your skills in the ever-changing landscape of security technologies. The certification covers core technologies and a security focus area of your choice. You choose where you want to focus. You choose where to take your career.

Among the industry’s most widely recognized and respected certifications, CCNP sets you apart. It tells the world you know what you are doing. In addition, completing any CCNP certification exam earns you a Cisco® Specialist certification, so you get recognized for your accomplishments along the way.

  • Show the world you know your stuff with a high-value certification
  • Customize your certification to your technical focus
  • Position yourself for advancement in the fast-paced world of security technologies
  • Add security automation skills to your areas of expertise
  • Earn a Specialist certification for passing any CCNP exam – core or concentration
  • Qualify for the CCIE Security lab exam by passing the CCNP core exam
  • Link that CCNP certification badge to all your social media profiles

Securing Networks with Cisco Firewalls v1.1 (SNCF 300-710) is a 90-minute exam associated with the CCNP Security Certification. This exam tests a candidate’s knowledge of Cisco Secure Firewall (formerly Cisco Firepower) and Cisco Secure Firewall Management Center (formerly Cisco Firepower Management Center), including policy configurations, integrations, deployments, management, and troubleshooting.

The following topics are general guidelines for the content likely to be included on the exam. However, other related topics may also appear on any specific delivery of the exam. To better reflect the contents of the exam and for clarity purposes, the guidelines below may change at any time without notice.

  • Deployment – 30%
  • Configuration – 30%
  • Management and Troubleshooting – 25%
  • Integration – 15%

Frequently Asked Questions

Speak to a Training Consultant

All courses are HRD Claimable.
Get in touch with our team via the form or WhatsApp us on +6011-5119 6631

Preferred mode of training
Checkboxes