Course Overview
This course explores advanced security concepts with a focus on Palo Alto,Checkpoint Firewall and SIEM. Students will learn about advanced scenarios in Palo Alto, Checkpoint Firewall and how to manage the network from threats by using this firewall. SIEM is a security information and event management (SIEM) product that collects the events. It provides real-time analysis of security alerts generated by applications and network hardware. Students will learn how to connect different devices to SIEM and view the real-time traffic.
Prerequisite(s)
Credits
6.0
- Not offered this term
- This course is not offered this term. Notify me to receive email notifications when the course opens for registration next term.
Learning Outcomes
Upon successful completion of this course, the student will be able to:
Palo Alto and Checkpoint:
- Identify firewall
- Identify basic configuration in Palo Alto firewall
- Configure and Analyze events in the firewall
- Identify Application-ID, Content-ID and User-ID
- Configure source NAT and destination NAT in the firewall
- Configure Site to Site VPN and Remote access VPN
- Configure High Availability in the firewall
- Configure DDOS protection in the firewall
SIEM:
- Describe SIEM as a network Security information and event management
- Configure a Netflow, Syslog
- Identify different parts of SIEM
- Connect different devices to SIEM
- Customize dashboard in SIEM
Effective as of Winter 2023
Related Programs
Advanced Network Security (CISA 4370) is offered as a part of the following programs:
- Indicates programs accepting international students.
- Indicates programs eligible for students to apply for Post-graduation Work Permit (PGWP).
School of Energy
- Computer Information Systems Administration
Diploma Full-time
Programs and courses are subject to change without notice. Find out more about BCIT course cancellations.