Endpoint Protection 14.2 Configure and Protect

Course Description

The Symantec Endpoint Protection 14.2 Configure & Protect course is developed for the network, IT security, and systems administration professionals in a Security Operations position who are assigned with configuring optimum security settings for endpoints protected by Endpoint Protection 14.2. This class brings context and examples of attacks and tools used by cybercriminals.

Prerequisites

This course assumes that students have a basic understanding of computer terminology, including TCP/IP networking terms, Internet terms, and an administrator-level knowledge of Microsoft Windows operating systems.

Target Audience

Hands-On
This course includes practical hands-on exercises that enable you to test your new skills and begin to use those skills in a working environment

 

Learning Objectives

Secure endpoints against network and file-based threats
Control endpoint integrity and compliance
Enforce adaptive security posture

Content Outline

  •  Describing how Endpoint Protection protects each layer of the network stack
  •  Discovering the tools and methods used by attackers
  •  Describing the stages of an attack
  • Preventing network attacks
  • Examining Firewall Policy elements
  • Creating custom firewall rules
  • Enforcing corporate security policy with firewall rules
  • Configuring advanced firewall feature
  •  Introducing Intrusion Prevention technologies
  •  Configuring the Memory Exploit Mitigation policy
  •  Configuring the Intrusion Prevention policy 
  •  Managing custom signatures
  •  Monitoring Intrusion Prevention events
     
  •  Describing threat types
  •  Discovering how attackers disguise their malicious applications
  •  Describing threat vectors
  •  Describing Advanced Persistent Threats and a typical attack scenario
  •  Following security best practices to reduce risks
  • Virus and Spyware protection needs and solutions
  • Examining file reputation scoring
  • Describing how endpoints are protected with the Intelligent Threat Cloud Service
  • Describing how the emulator executes a file in a sandbox and the machine learning  engine's role and function
  • Describing download protection with Download Insight.
  • Describing file system and Email Auto-Protect and various Auto Protect considerations.
  • Describing SONAR real-time protection.
  • Describing the different scan types and scan considerations.
     
  • Platform and Virus and Spyware Protection policy overview 
  • Tailoring scans to meet an environment's needs
  • Ensuring real-time protection for clients
  • Detecting and remediating risks in downloaded files
  • Identifying zero-day and unknown threats
  • Preventing email from downloading malware
  • Configuring advanced options Monitoring virus and spyware activity
  • Navigating the Linux client
  • Tailoring Virus and Spyware settings for Linux clients
  • Monitoring Linux clients
  • SEP for Linux Logs
  • Touring the SEP for Mac client
  • Securing Mac clients
  • Monitoring Mac clients
  • SEP Logs on Mac clients
  • Host Integrity
  • Ensuring client compliance with Host Integrity
  • Host Integrity concepts
  • Configuring Host Integrity
  • Troubleshooting Host Integrity
  • Monitoring Host Integrity
  • Application Control overview
  • Describing Application Control and concepts
  • Creating application rulesets to restrict how applications run
  • Monitoring Application Control events
  • Introducing Device Control
  • Describing Device Control features and concepts for Windows
  • Describing Device Control features and concepts for Mac clients
  • Discovering hardware access policy violations with reports, logs, and notifications
  • What is System Lockdown? 
  • Creating and managing the file fingerprint list
  • System Lockdown use cases

Creating locations to ensure the appropriate level of security when logging on remotely
Assigning policies to locations
Monitoring locations on the SEPM and SEP client

  • Describing security exceptions
  • Describing the automatic exclusion created during installation
  • Managing Windows and Mac exclusions
  • Monitoring security exceptions

Certification

250-428 Administration of Symantec Endpoint 14

FAQs

Endpoint security is securing endpoints or entry points of end-user devices such as laptops, desktops, and mobile devices from exploitation by malicious actors and campaigns.

 

Endpoint security examines files, processes, and systems for suspicious or malicious activity. Organizations can install an endpoint protection platform — EPP — on devices to prevent malicious actors from using malware or other tools to infiltrate their systems.

 

Endpoint security refers to cybersecurity services for network endpoints. These services may include antivirus, email filtering, web filtering, and firewall services.

 

To attend the training session, you should have operational Desktops or Laptops with the required specifications and a good internet connection to access the labs. 

We would always recommend you attend the live session to practice & clarify the doubts instantly and get more value from your investment. However, if you have to skip the class due to some contingency, Radiant Tech learning will help you with the recorded session of that particular day. However, those recorded sessions are not meant only for personal consumption and NOT for distribution or any commercial use.

 

Radiant Tech learning has a data center containing a Virtual Training environment for participant's hand-on-practice. Participants can easily access these labs over Cloud with the help of a remote desktop connection. Radiant virtual labs allow you to learn from anywhere in the world and any time zone. 

 

The learners will be enthralled as we engage them in real-world and Oriented industry projects during the training program. These projects will improve your skills and knowledge and give you a better experience. These real-time projects will help you a lot in your future tasks and assignments.

 

You can request a return if you do not desire to enroll in the course.

 

Yes you can.

 

We use the ideal standards in Internet security. Any data retained is not communicated with third parties.

 

It is recommended but not mandatory. Being acquainted with the primary course material will enable students and the trainer to move at the desired pace during classes. You can access courseware for most vendors.

You can buy online from the page by clicking "Buy Now." You can view alternate payment methods on the payment options page.

 

Yes, students can pay from the course page.

 

The course completion certification will be awarded to all the professionals who have completed the training program & the project assignment given by your instructor. You can use the certificate in future job interviews to help you to achieve your dream job.

 

Radiant believes in a practical & creative approach to training & development, distinguishing it from other training & developmental platforms. Moreover, training courses are undertaken by experts with a range of experience in their domain.

 

Radiant team of experts will be available at email support@radianttechlearning.com to answer your technical queries even after the training program.

 

Yes, Radiant will provide you with the most updated high, value-relevant real-time projects & case studies in each training program.

Technical issues are unpredictable & might occur with us as well. Participants must ensure access to the required configuration with good internet speed.

 

Radiant Techlearning offers training programs on weekdays, weekends & combination of weekdays & weekends. We provide you with complete liberty to choose the schedule that suits your needs.

 

Radiant has highly intensive selection criteria for Technology Trainers & Consultants who deliver training programs. Our trainers & consultants undergo rigorous technical and behavioral interview and assessment processes before they are boarded in the company.

Our Technology experts/trainers & consultants carry deep-dive knowledge in the technical subject & are certified by the OEM.

Our training programs are practically oriented with 70% – 80% hands-on training technology tools. Our training program focuses on one-on-one interaction with each participant, the latest content in the curriculum, real-time projects, and case studies during the training program.

Our faculty will provide you with the knowledge of each course from the fundamental level easily, and you are free to ask your doubts any time your respective faculty.

Our trainers have the patience and ability to simplify difficult concepts with depth and breadth of knowledge.

We provide a support session to ensure quality learning even after the training program.

 

Send a Message.


  • Enroll