e-Learning | CASB, SD-WAN and SASE | Global Knowledge Skip to main Content

CASB, SD-WAN and SASE

  • Course Code GKCSS
  • Duration 1 day

Elearning (Self-paced) Price

eur295,00

excl. VAT

Add to Cart Add to Cart

Course Delivery

This course is available in the following formats:

  • Class Connect HD

    Connect to a class in HD

  • Company Event

    Event at company

  • Elearning (Self-paced)

    Self paced electronic learning

  • Public Classroom

    Traditional Classroom Learning

  • Virtual Learning

    Learning that is virtual

Request this course in a different delivery format.

Course Overview

Top

Nederlands:

In deze eLearning CASB, SD-WAN en SASE krijgt u een overzicht van de laatste (cloud) security en netwerk technologieën en leert u: Wat is het? Waarom heb ik het nodig? Hoe werkt het? Hoe moet ik het implementeren? Wat zijn de belangrijkste vendors?

Omdat steeds meer kritische data naar de Cloud verhuist, zijn er nieuwe methoden en tools nodig om te kunnen voldoen aan security, compliance en governance eisen. Deze training CASB, SD-WAN en SASE is gebaseerd op de laatste security trends zoals gedefinieerd door Gartner, Forrester en de Cloud Security Alliance (CSA).

Een CASB (Cloud Access Security Broker) is onmisbaar om de risico’s te beheersen van het (ongewenste) gebruik van de Cloud (b.v. Shadow IT). Omdat SASE (maar ook CASB) een combinatie van bestaande security en netwerk tools is, krijgt u in deze training inzicht in de laatste security en netwerk tools.

==

English:

n this eLearning course CASB, SD-WAN and SASE you get an overview of the latest (cloud) security and networking technologies and you will learn: What is it? Why do I need it? How can I implement it? What are the major vendors?

As more data moves to the cloud, new tools and methods are needed to control your data and comply to security regulations. This CASB, SD-WAN and SASE Training is based on the latest security trends as defined by Gartner, Forrester and the Cloud Security Alliance (CSA).

A CASB (Cloud Access Security Broker) is essential to mitigate and control the risks involved in the (unwanted) usage of the Cloud (Shadow IT for example).

Because SASE (but also CASB) is a combination of existing security and networking tools, in this training you will gain insight in the latest security tools.

As more data moves to the cloud, new tools and methods are needed to control your data and comply to security regulations. This CASB, SD-WAN and SASE training is based on the latest security trends as defined by Gartner, Forrester and the Cloud Security Alliance (CSA). A CASB (Cloud Access Security Broker) is essential to mitigate and control the risks involved in the (unwanted) usage of the Cloud (Shadow IT for example).

SASE (Secure Access Service Edge) is a new category of cloud-native networking and security solutions. Because SASE (but also CASB) is a combination of existing security and networking tools, in this training you will gain insight in the latest networking and security tools.

Target Audience

Top
  •  Anyone who wants to know about the latest trends in Cloud security

Course Objectives

Top
After completing this course you should be able to:
  • Identify the features of a Cloud Access Security Broker (CASB)
  • Understand the need for a CASB
  • Identify the challenges with the hybrid Cloud
  • Explain the difference between API only and multimode CASBs
  • Understand the difference between first-gen and next-gen multimode CASBs
  • Understand the architecture a CASB solution
  • Compare the different implementations of a CASB solution (log collection, packet capture, Cloud APIs, proxies and AJAX-VM)
  • Explain the agentless AJAX-VM implementation
  • Understand the problem with proxy solutions
  • List the major vendors of CASB solutions
  • Understand the decisive factors when buying a CASB solution
  • Explain the architecture of a Software Defined Network
  • Explain what a WAN is
  • Describe the features of SD-WAN
  • Understand the challenges with current WAN architectures
  • Compare the current WAN technology with SD-WAN
  • Identify the advantages of SD-WAN
  • Understand the implementation of a SD-WAN
  • Understand the concept of Secure Access Service Edge (SASE)
  • Explain the problem of service chaining
  • Identify the mandatory services of a SASE solution
  • Understand the architecture and implementation of a SASE solution
  • Explain the different Points of Presence (PoP)
  • Compare SASE vendors PoPs and network offerings (global private backbone)
  • Understand the essentials services offered by a SASE solution:
    • Software-defined perimeter (SDP) en Zero Trust network access (ZTNA)
    • Secure web gateway (SWG) versus Firewall as a service (FWaaS) versus Nextgen firewall (NGFW) versus Web Application firewall (WAF)
    • Next-generation antimalware (NGAM)
    • Intrusion Detection Systems (IDS) versus Intrusion prevention system (IPS)
    • Remote Browser Isolation (RBI)
  • Explain the role of Deep Packet Inspection (DPI)
  • List the major SASE vendors
  • Understand the decisive factors when buying a SASE solution

Course Content

Top
 
  • What are the features of Zero Trust Network Access
  • What is a CASB?
  • Why do you need a CASB? What does a CASB offer, what are the advantages?
  • Architecture CASB, first-gen versus next-gen Multi-mode CASBs
  • Agentless CASB: AJAX-VM
  • The different implementations of CASB: log collection, packet capture, Cloud APIs, proxies and AJAX-VM
  • Recommendations and vendors
  • What is SD-WAN and Software Defined Networking
  • Challenges with the current WAN technology
  • Comparison MPLS and SD-WAN
  • Advantages SD-WAN: transport agnostic, tunnel bonding, intelligent routing
  • SD-WAN architecture and implementation
  • Recommendations and vendors
  • What is SASE
  • Het problem with Service chaining
  • Why SASE, what are the advantages
  • Architecture and implementation: SASE Cloud and SASE Points of Presence (PoP)
  • What are the essential components of Networking as a Service and Security as a service:
    • Software defined wide area network, SD-WAN
    • Software-defined perimeter (SDP) en Zero Trust network access (ZTNA)
    • Secure web gateway (SWG) versus Firewall as a service (FWaaS) versus Nextgen firewall (NGFW) versus Web Application firewall (WAF)
    • Next-generation antimalware (NGAM)
    • Intrusion Detection Systems (IDS) versus Intrusion prevention system (IPS)
    • Remote Browser Isolation (RBI)
  • The role of Deep Packet Inspection (DPI)
  • Recommendations and vendors

Course Prerequisites

Top
Attendees should meet the following prerequisites:
  • Basic internet usage skills

Follow on Courses

Top
 The following courses are recommended for further study.
  • The latest trends in IT security: Zero Trust Network Access (ZTNA) , CARTA and SDP --> GKZTNACS
Cookie Control toggle icon