<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="7723" language="en" source="https://portal.flane.ch/swisscom/en/xml-course/7723" lastchanged="2026-01-12T12:10:51+01:00" parent="https://portal.flane.ch/swisscom/en/xml-courses"><title>Check Point Certified Security Administrator and Expert Boot Camp</title><productcode>CCSA/CCSER</productcode><vendorcode>CP</vendorcode><vendorname>Check Point</vendorname><fullproductcode>CP-CCSA/CCSER</fullproductcode><version>R82</version><audience>&lt;p&gt;This course is recommended for technical professionals and experts who support, install, and deploy Check Point products.&lt;/p&gt;</audience><outline>&lt;h4&gt;Module 1: Introduction to Quantum Security&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Identify the primary components of the Check Point Three-Tier Architecture and explain how they work together.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Explore Gaia on Security Management Server&lt;/li&gt;&lt;li&gt;Explore Gaia on Dedicated Log Server&lt;/li&gt;&lt;li&gt;Explore Gaia on Security Gateway Cluster Members&lt;/li&gt;&lt;li&gt;Connect to SmartConsole&lt;/li&gt;&lt;li&gt;Navigate GATEWAYS &amp;amp; SERVERS Vies&lt;/li&gt;&lt;li&gt;Navigate SECURITY POLICIES Views&lt;/li&gt;&lt;li&gt;Navigate LOGS &amp;amp; EVENTS Views&lt;/li&gt;&lt;li&gt;Navigate MANAGE &amp;amp; SETTINGS Views&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 2: Administrator Account Management&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of SmartConsole administrator accounts&lt;/li&gt;&lt;li&gt;Identify features for collaboration: session management, concurrent administration, policy installation&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Create new administrators and assign profiles&lt;/li&gt;&lt;li&gt;Test administrator profile assignments&lt;/li&gt;&lt;li&gt;Manage concurrent sessions&lt;/li&gt;&lt;li&gt;Take over another session and verify status&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 3: Object Management&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of SmartConsole objects&lt;/li&gt;&lt;li&gt;Provide examples of physical and logical objects&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;View and modify GATEWAYS &amp;amp; SERVERS objects&lt;/li&gt;&lt;li&gt;View and modify network objects&lt;/li&gt;&lt;li&gt;View and modify service objects&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 4: Security Policy Management&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of Security Policies&lt;/li&gt;&lt;li&gt;Identify the essential elements of a Security Policy.&lt;/li&gt;&lt;li&gt;Identify features and capabilities that enhance the configuration and management of the Security Policy.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Verify and modify the Security Policy.&lt;/li&gt;&lt;li&gt;Install the standard Security Policy.&lt;/li&gt;&lt;li&gt;Test the Security Policy.&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 5: Policy Layers&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Demonstrate an understanding of the Check Point policy layer concept.&lt;/li&gt;&lt;li&gt;Explain how layers affect traffic inspection.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Add an Ordered Layer&lt;/li&gt;&lt;li&gt;Configure and deploy Ordered Layer rules&lt;/li&gt;&lt;li&gt;Test Ordered Layer policy&lt;/li&gt;&lt;li&gt;Create Inline DMZ Layer&lt;/li&gt;&lt;li&gt;Test Inline DMZ Layer&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 6: Security Operations Monitoring&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of security operations monitoring&lt;/li&gt;&lt;li&gt;Tune log server configuration&lt;/li&gt;&lt;li&gt;Use predefined and custom queries to filter the logging results.&lt;/li&gt;&lt;li&gt;Monitor the state of Check Point systems.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Configure log management&lt;/li&gt;&lt;li&gt;Enhance rulebase view, rules, and logging&lt;/li&gt;&lt;li&gt;Review logs and search for data&lt;/li&gt;&lt;li&gt;Configure Monitoring Blade&lt;/li&gt;&lt;li&gt;Monitor status of the systems&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 7: Identity Awareness&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of the Identity Awareness solution&lt;/li&gt;&lt;li&gt;Identify the essential elements of Identity Awareness.&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Adjust security policy for Identity Awareness&lt;/li&gt;&lt;li&gt;Configure Identity Collector&lt;/li&gt;&lt;li&gt;Define the user access role&lt;/li&gt;&lt;li&gt;Test Identity Awareness&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 8: HTTPS Inspection&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of HTTPS Inspection solution&lt;/li&gt;&lt;li&gt;Identify the essential elements of HTTPS Inspection&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Enable HTTPS Inspection&lt;/li&gt;&lt;li&gt;Adjust access control rules&lt;/li&gt;&lt;li&gt;Deploy Security Gateway certificate&lt;/li&gt;&lt;li&gt;Test and analyze policy with HTTPS Inspection&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 9: Application Control and URL Filtering&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of the Application Control and URL Filtering solutions&lt;/li&gt;&lt;li&gt;Identify the essential elements of Application Control and URL Filtering&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Adjust the Access Control Policy&lt;/li&gt;&lt;li&gt;Create and adjust Application Control and URL&lt;/li&gt;&lt;li&gt;Test and adjust the Application Control and URL Filtering Rules&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 10: Threat Prevention Fundamentals&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of the Threat Prevention solution&lt;/li&gt;&lt;li&gt;Identify the essential elements of Autonomous Threat Prevention&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Enable Autonomous Threat Prevention&lt;/li&gt;&lt;li&gt;Test Autonomous Threat Prevention&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 11: Management High Availability&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of Management High Availability&lt;/li&gt;&lt;li&gt;Identify the essential elements of Management High Availability&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Deploy and configure Management High Availability&lt;/li&gt;&lt;li&gt;Ensure the failover process functions as expected&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 12: Advanced Policy Management&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Identify ways to enhance the Security Policy with more object types&lt;/li&gt;&lt;li&gt;Create dynamic objects to make policy updatable from the Gateway&lt;/li&gt;&lt;li&gt;Manually define NAT rules&lt;/li&gt;&lt;li&gt;Configure Security Management behind NAT&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Use Updatable Objects&lt;/li&gt;&lt;li&gt;Configure Network Address Translation for server and network objects&lt;/li&gt;&lt;li&gt;Configure Management behind NAT for Branch Office connections&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 13: Site-to-Site VPN&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Discuss site-to-site VPN basics, deployment, and communities&lt;/li&gt;&lt;li&gt;Describe how to analyze and interpret VPN tunnel traffic&lt;/li&gt;&lt;li&gt;Articulate how pre-shared keys and certificates can be configured to authenticate with third-party and externally managed VPN Gateways&lt;/li&gt;&lt;li&gt;Explain Link Selection and ISP Redundancy options&lt;/li&gt;&lt;li&gt;Explain tunnel management features&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Task:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Configure Site-to-Site VPN with internally managed Security Gateways&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 14: Advanced Security Monitoring&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Describe the SmartEvent and Compliance Blade solutions, including their purpose and use&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Configure a SmartEvent Server to monitor relevant patterns and events&lt;/li&gt;&lt;li&gt;Demonstrate how to configure Events and Alerts in SmartEvent&lt;/li&gt;&lt;li&gt;Demonstrate how to run specific SmartEvent reports&lt;/li&gt;&lt;li&gt;Activate the Compliance Blade&lt;/li&gt;&lt;li&gt;Demonstrate Security Best Practice settings and alerts&lt;/li&gt;&lt;li&gt;Demonstrate Regulatory Requirements Compliance Scores&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 15: Upgrades&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Identify supported upgrade options&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Task:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Upgrade a Security Gateway&lt;/li&gt;&lt;li&gt;Use Central Deployment tool to install Hotfixes&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 16: Advanced Upgrades and Migrations&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Export/import a Management Database&lt;/li&gt;&lt;li&gt;Upgrade a Security Management Server by freshly deploying the new release or using a new appliance&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Task:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Prepare to perform an Advanced Upgrade with Database Migration on the Primary Security Management Server in a distributed environment&lt;/li&gt;&lt;li&gt;Perform an import of a Primary Security Management Server in a distributed Check Point environment&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 17: ElasticXL Cluster&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Describe the ElasticXL Cluster solution, including its purpose and use&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Deploy an ElasticXL Security Gateway Cluster&lt;/li&gt;&lt;/ul&gt;</outline><audience_plain>This course is recommended for technical professionals and experts who support, install, and deploy Check Point products.</audience_plain><outline_plain>Module 1: Introduction to Quantum Security


- Identify the primary components of the Check Point Three-Tier Architecture and explain how they work together.

Lab Tasks:



- Explore Gaia on Security Management Server
- Explore Gaia on Dedicated Log Server
- Explore Gaia on Security Gateway Cluster Members
- Connect to SmartConsole
- Navigate GATEWAYS &amp; SERVERS Vies
- Navigate SECURITY POLICIES Views
- Navigate LOGS &amp; EVENTS Views
- Navigate MANAGE &amp; SETTINGS Views
Module 2: Administrator Account Management


- Explain the purpose of SmartConsole administrator accounts
- Identify features for collaboration: session management, concurrent administration, policy installation

Lab Tasks:



- Create new administrators and assign profiles
- Test administrator profile assignments
- Manage concurrent sessions
- Take over another session and verify status
Module 3: Object Management


- Explain the purpose of SmartConsole objects
- Provide examples of physical and logical objects

Lab Tasks:



- View and modify GATEWAYS &amp; SERVERS objects
- View and modify network objects
- View and modify service objects
Module 4: Security Policy Management


- Explain the purpose of Security Policies
- Identify the essential elements of a Security Policy.
- Identify features and capabilities that enhance the configuration and management of the Security Policy.

Lab Tasks:



- Verify and modify the Security Policy.
- Install the standard Security Policy.
- Test the Security Policy.
Module 5: Policy Layers


- Demonstrate an understanding of the Check Point policy layer concept.
- Explain how layers affect traffic inspection.

Lab Tasks:



- Add an Ordered Layer
- Configure and deploy Ordered Layer rules
- Test Ordered Layer policy
- Create Inline DMZ Layer
- Test Inline DMZ Layer
Module 6: Security Operations Monitoring


- Explain the purpose of security operations monitoring
- Tune log server configuration
- Use predefined and custom queries to filter the logging results.
- Monitor the state of Check Point systems.

Lab Tasks:



- Configure log management
- Enhance rulebase view, rules, and logging
- Review logs and search for data
- Configure Monitoring Blade
- Monitor status of the systems
Module 7: Identity Awareness


- Explain the purpose of the Identity Awareness solution
- Identify the essential elements of Identity Awareness.

Lab Tasks:



- Adjust security policy for Identity Awareness
- Configure Identity Collector
- Define the user access role
- Test Identity Awareness
Module 8: HTTPS Inspection


- Explain the purpose of HTTPS Inspection solution
- Identify the essential elements of HTTPS Inspection

Lab Tasks:



- Enable HTTPS Inspection
- Adjust access control rules
- Deploy Security Gateway certificate
- Test and analyze policy with HTTPS Inspection
Module 9: Application Control and URL Filtering


- Explain the purpose of the Application Control and URL Filtering solutions
- Identify the essential elements of Application Control and URL Filtering

Lab Tasks:



- Adjust the Access Control Policy
- Create and adjust Application Control and URL
- Test and adjust the Application Control and URL Filtering Rules
Module 10: Threat Prevention Fundamentals


- Explain the purpose of the Threat Prevention solution
- Identify the essential elements of Autonomous Threat Prevention

Lab Tasks:



- Enable Autonomous Threat Prevention
- Test Autonomous Threat Prevention
Module 11: Management High Availability


- Explain the purpose of Management High Availability
- Identify the essential elements of Management High Availability

Lab Tasks:



- Deploy and configure Management High Availability
- Ensure the failover process functions as expected
Module 12: Advanced Policy Management


- Identify ways to enhance the Security Policy with more object types
- Create dynamic objects to make policy updatable from the Gateway
- Manually define NAT rules
- Configure Security Management behind NAT

Lab Tasks:



- Use Updatable Objects
- Configure Network Address Translation for server and network objects
- Configure Management behind NAT for Branch Office connections
Module 13: Site-to-Site VPN


- Discuss site-to-site VPN basics, deployment, and communities
- Describe how to analyze and interpret VPN tunnel traffic
- Articulate how pre-shared keys and certificates can be configured to authenticate with third-party and externally managed VPN Gateways
- Explain Link Selection and ISP Redundancy options
- Explain tunnel management features

Lab Task:



- Configure Site-to-Site VPN with internally managed Security Gateways
Module 14: Advanced Security Monitoring


- Describe the SmartEvent and Compliance Blade solutions, including their purpose and use

Lab Tasks:



- Configure a SmartEvent Server to monitor relevant patterns and events
- Demonstrate how to configure Events and Alerts in SmartEvent
- Demonstrate how to run specific SmartEvent reports
- Activate the Compliance Blade
- Demonstrate Security Best Practice settings and alerts
- Demonstrate Regulatory Requirements Compliance Scores
Module 15: Upgrades


- Identify supported upgrade options

Lab Task:



- Upgrade a Security Gateway
- Use Central Deployment tool to install Hotfixes
Module 16: Advanced Upgrades and Migrations


- Export/import a Management Database
- Upgrade a Security Management Server by freshly deploying the new release or using a new appliance

Lab Task:



- Prepare to perform an Advanced Upgrade with Database Migration on the Primary Security Management Server in a distributed environment
- Perform an import of a Primary Security Management Server in a distributed Check Point environment
Module 17: ElasticXL Cluster


- Describe the ElasticXL Cluster solution, including its purpose and use

Lab Tasks:



- Deploy an ElasticXL Security Gateway Cluster</outline_plain><duration unit="d" days="5">5 days</duration><pricelist><price country="SI" currency="EUR">2500.00</price><price country="DE" currency="EUR">3950.00</price><price country="AT" currency="EUR">3950.00</price><price country="FR" currency="EUR">3950.00</price><price country="IL" currency="ILS">13700.00</price><price country="CH" currency="EUR">4937.50</price></pricelist><miles/></course>