Skip to main Content

CASB, SD-WAN and SASE

  • Code training GKCSS
  • Duur 1 dag

Virtueel leren Prijs

eur795,00

(excl. BTW)

Vraag een groepstraining aan Schrijf je in

Methode

Deze training is in de volgende formats beschikbaar:

  • Class Connect

    Verbind naar een klas in HD

  • E-learning (in je eigen tempo)

    Elektronisch leren in je eigen tempo

  • Klassikale training

    Klassikaal leren

  • Op locatie klant

    Op locatie klant

  • Virtueel leren

    Virtueel leren

Vraag deze training aan in een andere lesvorm.

Trainingsbeschrijving

Naar boven
As more data moves to the cloud, new tools and methods are needed to control your data and comply to security regulations. This CASB, SD-WAN and SASE training is based on the latest security trends as defined by Gartner, Forrester and the Cloud Security Alliance (CSA). A CASB (Cloud Access Security Broker) is essential to mitigate and control the risks involved in the (unwanted) usage of the Cloud (Shadow IT for example).

SASE (Secure Access Service Edge) is a new category of cloud-native networking and security solutions. Because SASE (but also CASB) is a combination of existing security and networking tools, in this training you will gain insight in the latest networking and security tools.

This training is also part of the 5-day Masterclass Digital Transformation (GKMDT).
    • Methode: Virtueel leren
    • Datum: 20 september, 2024
    • Locatie: Virtueel-en-klassikaal

    eur795,00

    • Methode: Virtueel leren
    • Datum: 22 november, 2024
    • Locatie: Virtueel-en-klassikaal

    eur795,00

Doelgroep

Naar boven
  •  Anyone who wants to know about the latest trends in Cloud security

Trainingsdoelstellingen

Naar boven
After completing this course you should be able to:
  • Identify the features of a Cloud Access Security Broker (CASB)
  • Understand the need for a CASB
  • Identify the challenges with the hybrid Cloud
  • Explain the difference between API only and multimode CASBs
  • Understand the difference between first-gen and next-gen multimode CASBs
  • Understand the architecture a CASB solution
  • Compare the different implementations of a CASB solution (log collection, packet capture, Cloud APIs, proxies and AJAX-VM)
  • Explain the agentless AJAX-VM implementation
  • Understand the problem with proxy solutions
  • List the major vendors of CASB solutions
  • Understand the decisive factors when buying a CASB solution
  • Explain the architecture of a Software Defined Network
  • Explain what a WAN is
  • Describe the features of SD-WAN
  • Understand the challenges with current WAN architectures
  • Compare the current WAN technology with SD-WAN
  • Identify the advantages of SD-WAN
  • Understand the implementation of a SD-WAN
  • Understand the concept of Secure Access Service Edge (SASE)
  • Explain the problem of service chaining
  • Identify the mandatory services of a SASE solution
  • Understand the architecture and implementation of a SASE solution
  • Explain the different Points of Presence (PoP)
  • Compare SASE vendors PoPs and network offerings (global private backbone)
  • Understand the essentials services offered by a SASE solution:
    • Software-defined perimeter (SDP) en Zero Trust network access (ZTNA)
    • Secure web gateway (SWG) versus Firewall as a service (FWaaS) versus Nextgen firewall (NGFW) versus Web Application firewall (WAF)
    • Next-generation antimalware (NGAM)
    • Intrusion Detection Systems (IDS) versus Intrusion prevention system (IPS)
    • Remote Browser Isolation (RBI)
  • Explain the role of Deep Packet Inspection (DPI)
  • List the major SASE vendors
  • Understand the decisive factors when buying a SASE solution

Inhoud training

Naar boven
 
  • What are the features of Zero Trust Network Access
  • What is a CASB?
  • Why do you need a CASB? What does a CASB offer, what are the advantages?
  • Architecture CASB, first-gen versus next-gen Multi-mode CASBs
  • Agentless CASB: AJAX-VM
  • The different implementations of CASB: log collection, packet capture, Cloud APIs, proxies and AJAX-VM
  • Recommendations and vendors
  • What is SD-WAN and Software Defined Networking
  • Challenges with the current WAN technology
  • Comparison MPLS and SD-WAN
  • Advantages SD-WAN: transport agnostic, tunnel bonding, intelligent routing
  • SD-WAN architecture and implementation
  • Recommendations and vendors
  • What is SASE
  • Het problem with Service chaining
  • Why SASE, what are the advantages
  • Architecture and implementation: SASE Cloud and SASE Points of Presence (PoP)
  • What are the essential components of Networking as a Service and Security as a service:
    • Software defined wide area network, SD-WAN
    • Software-defined perimeter (SDP) en Zero Trust network access (ZTNA)
    • Secure web gateway (SWG) versus Firewall as a service (FWaaS) versus Nextgen firewall (NGFW) versus Web Application firewall (WAF)
    • Next-generation antimalware (NGAM)
    • Intrusion Detection Systems (IDS) versus Intrusion prevention system (IPS)
    • Remote Browser Isolation (RBI)
  • The role of Deep Packet Inspection (DPI)
  • Recommendations and vendors

Voorkennis

Naar boven
Attendees should meet the following prerequisites:
  • Basic internet usage skills

Vervolgtrainingen

Naar boven
 The following courses are recommended for further study.
  • The latest trends in IT security: Zero Trust Network Access (ZTNA) , CARTA and SDP --> GKZTNACS
Cookie Control toggle icon