Designing Cisco Security Infrastructure v1.0
ccna-banner-image

CCNP Security - Concentration: SDSI 300- 745

Designing Cisco Security Infrastructure v1.0 (SDSI 300- 745) is a 90-minute exam associated with the CCNP Security Certification.

Designing Cisco Security Infrastructure v1.0 (300-745)

Designing Cisco Security Infrastructure v1.0 (SDSI 300- 745) is a 90-minute exam associated with the CCNP Security Certification. This exam tests a candidate's knowledge of security architecture design, including secure infrastructure, applications, risk, events, requirements, artificial intelligence, automation, and DevSecOps. The course, Designing Cisco Security Infrastructure, helps candidates to prepare for this exam.

What you’ll learn 

  • Secure Infrastructure
  • Applications
  • Risk, Events, and Requirements
  • Artificial Intelligence, Automation, and DevSecOps

Syllabus Summary

Secure Infrastructure

Select the security approaches to protect against threats

  • Endpoint and client devices (on-network, off-network, and remote)
  • Identity such as MFA, passwordless, continuous trust, and identity intelligence
  • Email (phishing, ransomware, business email compromise, malware, and spoofing)

Modify the security architecture to address technical requirements

  • Hybrid workers
  • IoT
  • SaaS
  • Applications across data center and multi-cloud
  • Select a VPN and tunneling solution such as SD-WAN, IPsec, MPLS, GRE, DMVPN, and public cloud tunnel options based on business and technical requirements
  • Select the approach to secure the infrastructure management and control planes
  • Select the firewall feature or architecture such as traditional firewall, Nextgen firewall,Web Application Firewall, IPS/IDS, distributed firewall, eBPF, and host-based firewallgiven business and technical requirements
Applications
  • Select the security solution such as firewalls, SSL offloading, SSL decryption, DLP, and endpoint based on application and flow data, to protect an application
  • Select the design for cloud-native applications, microservices, containers, and serverless architectures to ensure segmentation/microsegmentation
  • Describe the design policies to address the impacts of emerging technologies such as generative AI, machine learning, and quantum computing
Risk, Events, and Requirements
  • Describe how the SOC leverages incident handling and incident response tools
  • Modify a design to mitigate risk 2024 Cisco Systems, Inc. This document is Cisco Public. Page 2 Cisco Confidential
  • Modify a security design following an incident
  • Describe the use of frameworks such as MITRE CAPEC, NIST SP 800-37, and SAFE in the lifecycle of a security design
  • Match the regulatory and industry compliance document to a given business or technical scenario
Artificial Intelligence, Automation, and DevSecOps
  • Describe the functions, uses, and role of AI in securing network infrastructure
  • Select the feature or element required to support automated security
  • architecture/infrastructure such as API tooling, Infrastructure as Code, monitoring,container scanning, security telemetry, alerting, and SOAR
  • Select the next step in workflows and pipelines to be implemented by DevSecOps engineers to minimize risk from automated deployments

Required Exam

  • Exam Code: SDSI 300- 745
  • Duration: 90 minutes
  • Exam Cost: 300 USD

Related Courses

experts-banner-background

EMIGO Expert Training Team

new-batch-mage

New Batches Commence On

Testimonials

enquiry-section1-bg
enquiry-form-model1

Learn like a Leader
Not a follower

Scan or Click on the QR Code to submit your enquiry

Enquiry
enquiry-section1-qrcode
footer-enquiry footer-enquiry