Ccnp Security Course Outline Jun 2026
Hardening network devices, implementing Control Plane Policing (CoPP), and securing management protocols (SSH, SNMPv3).
Includes implementing segmentation, access control policies, AVC, URL filtering, malware protection, and management options for network security solutions.
Configuring firewalls (NGFW), site-to-site and remote access VPNs, and NetFlow-based threat detection.
Directing incoming/outgoing mail paths and implementing content filters. ccnp security course outline
The second concentration area is . While the core SCOR exam introduces VPNs, the SVPN outline drills into expert-level deployment. This course focuses on protecting data in transit across untrusted networks, such as the public internet. Students master traditional site-to-site VPNs using IPsec, but the outline emphasizes modern, scalable solutions like Dynamic Multipoint VPN (DMVPN) for hub-and-spoke topologies and Cisco Secure Firewall VPNs (formerly AnyConnect) for remote access. Notably, the SVPN outline extensively covers FlexVPN , Cisco’s unified VPN framework that simplifies the deployment of both site-to-site and remote access VPNs using the IKEv2 protocol. Additionally, students learn to deploy Virtual Tunnel Interfaces (VTIs) and troubleshoot common VPN issues like fragmentation and routing problems. By completing this outline, a network security professional gains the ability to securely connect branch offices, remote employees, and even cloud environments to the corporate network without compromising performance or security.
As workloads move to the cloud, this section addresses Cisco's cloud-native security offerings.
Using Cisco Stealthwatch (now Secure Network Analytics) for behavioral analysis. 6. Secure Network Access, Visibility, and Automation (15%) This course focuses on protecting data in transit
Network Security Engineers, Security Analysts Validity: 3 Years
: Interfacing with FMC, ISE, Umbrella, and Cisco Secure Endpoint APIs.
Antimalware (AMP), endpoint management, and multi-factor authentication. including protection against malware
3 to 5 years implementing enterprise security solutions.
This domain covers endpoint security solutions, including protection against malware, viruses, and other endpoint-based threats.
The Cisco Certified Network Professional (CCNP) Security certification is a premier validation of your ability to design, implement, configure, and troubleshoot Cisco security solutions. To achieve this certification, you must pass two exams: a core exam and one concentration exam of your choice.