<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="2044" language="en" source="https://portal.flane.ch/swisscom/en/xml-course/checkpoint-ccse" lastchanged="2026-01-12T12:11:55+01:00" parent="https://portal.flane.ch/swisscom/en/xml-courses"><title>Check Point Cyber Security Engineering</title><productcode>CCSE</productcode><vendorcode>CP</vendorcode><vendorname>Check Point</vendorname><fullproductcode>CP-CCSE</fullproductcode><version>R82</version><essentials>&lt;p&gt;Base Knowledge 
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Unix-like and/or Windows OS&lt;/li&gt;&lt;li&gt;Internet Fundamentals&lt;/li&gt;&lt;li&gt;Networking Fundamentals&lt;/li&gt;&lt;li&gt;Networking Security&lt;/li&gt;&lt;li&gt;System Administration&lt;/li&gt;&lt;li&gt;TCP/IP Networking&lt;/li&gt;&lt;li&gt;Text Editors in Unix-like OS&lt;/li&gt;&lt;li&gt;Minimum of 6-months of practical experience with the management of a Quantum Security Environment&lt;/li&gt;&lt;/ul&gt;</essentials><audience>&lt;ul&gt;
&lt;li&gt;Security Engineers&lt;/li&gt;&lt;li&gt;Security Analysts&lt;/li&gt;&lt;li&gt;Security Consultants&lt;/li&gt;&lt;li&gt;Security Architects&lt;/li&gt;&lt;/ul&gt;</audience><outline>&lt;h4&gt;Module 1: Management High Availability&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Explain the purpose of Management High Availability&lt;/li&gt;&lt;li&gt;Identify the essential elements of Management High Availability&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Deploy and configure Management High Availability&lt;/li&gt;&lt;li&gt;Ensure the failover process functions as expected&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 2: Advanced Policy Management&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Identify ways to enhance the Security Policy with more object types&lt;/li&gt;&lt;li&gt;Create dynamic objects to make policy updatable from the Gateway&lt;/li&gt;&lt;li&gt;Manually define NAT rules&lt;/li&gt;&lt;li&gt;Configure Security Management behind NAT&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Use Updatable Objects&lt;/li&gt;&lt;li&gt;Configure Network Address Translation for server and network objects&lt;/li&gt;&lt;li&gt;Configure Management behind NAT for Branch Office connections&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 3: Site-to-Site VPN&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Discuss site-to-site VPN basics, deployment, and communities&lt;/li&gt;&lt;li&gt;Describe how to analyze and interpret VPN tunnel traffic&lt;/li&gt;&lt;li&gt;Articulate how pre-shared keys and certificates can be configured to authenticate with third-party and externally managed VPN Gateways&lt;/li&gt;&lt;li&gt;Explain Link Selection and ISP Redundancy options&lt;/li&gt;&lt;li&gt;Explain tunnel management features&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Task:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Configure Site-to-Site VPN with internally managed Security Gateways&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 4: Advanced Security Monitoring&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Describe the SmartEvent and Compliance Blade solutions, including their purpose and use&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Configure a SmartEvent Server to monitor relevant patterns and events&lt;/li&gt;&lt;li&gt;Demonstrate how to configure Events and Alerts in SmartEvent&lt;/li&gt;&lt;li&gt;Demonstrate how to run specific SmartEvent reports&lt;/li&gt;&lt;li&gt;Activate the Compliance Blade&lt;/li&gt;&lt;li&gt;Demonstrate Security Best Practice settings and alerts&lt;/li&gt;&lt;li&gt;Demonstrate Regulatory Requirements Compliance Scores&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;&lt;strong&gt;Module 5: Upgrades&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Identify supported upgrade options&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Task:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Upgrade a Security Gateway&lt;/li&gt;&lt;li&gt;Use Central Deployment tool to install Hotfixes&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 6: Advanced Upgrades and Migrations&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Export/import a Management Database&lt;/li&gt;&lt;li&gt;Upgrade a Security Management Server by freshly deploying the new release or using a new appliance&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Task:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Prepare to perform an Advanced Upgrade with Database Migration on the Primary Security Management Server in a distributed environment&lt;/li&gt;&lt;li&gt;Perform an import of a Primary Security Management Server in a distributed Check Point environment&lt;/li&gt;&lt;/ul&gt;&lt;h4&gt;Module 7: ElasticXL Cluster&lt;/h4&gt;&lt;ul&gt;
&lt;li&gt;Describe the ElasticXL Cluster solution, including its purpose and use&lt;/li&gt;&lt;/ul&gt;&lt;p&gt;
&lt;strong&gt;Lab Tasks:&lt;/strong&gt;
&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Deploy an ElasticXL Security Gateway Cluster&lt;/li&gt;&lt;/ul&gt;</outline><essentials_plain>Base Knowledge 



- Unix-like and/or Windows OS
- Internet Fundamentals
- Networking Fundamentals
- Networking Security
- System Administration
- TCP/IP Networking
- Text Editors in Unix-like OS
- Minimum of 6-months of practical experience with the management of a Quantum Security Environment</essentials_plain><audience_plain>- Security Engineers
- Security Analysts
- Security Consultants
- Security Architects</audience_plain><outline_plain>Module 1: Management High Availability


- Explain the purpose of Management High Availability
- Identify the essential elements of Management High Availability

Lab Tasks:



- Deploy and configure Management High Availability
- Ensure the failover process functions as expected
Module 2: Advanced Policy Management


- Identify ways to enhance the Security Policy with more object types
- Create dynamic objects to make policy updatable from the Gateway
- Manually define NAT rules
- Configure Security Management behind NAT

Lab Tasks:



- Use Updatable Objects
- Configure Network Address Translation for server and network objects
- Configure Management behind NAT for Branch Office connections
Module 3: Site-to-Site VPN


- Discuss site-to-site VPN basics, deployment, and communities
- Describe how to analyze and interpret VPN tunnel traffic
- Articulate how pre-shared keys and certificates can be configured to authenticate with third-party and externally managed VPN Gateways
- Explain Link Selection and ISP Redundancy options
- Explain tunnel management features

Lab Task:



- Configure Site-to-Site VPN with internally managed Security Gateways
Module 4: Advanced Security Monitoring


- Describe the SmartEvent and Compliance Blade solutions, including their purpose and use

Lab Tasks:



- Configure a SmartEvent Server to monitor relevant patterns and events
- Demonstrate how to configure Events and Alerts in SmartEvent
- Demonstrate how to run specific SmartEvent reports
- Activate the Compliance Blade
- Demonstrate Security Best Practice settings and alerts
- Demonstrate Regulatory Requirements Compliance Scores
Module 5: Upgrades



- Identify supported upgrade options

Lab Task:



- Upgrade a Security Gateway
- Use Central Deployment tool to install Hotfixes
Module 6: Advanced Upgrades and Migrations


- Export/import a Management Database
- Upgrade a Security Management Server by freshly deploying the new release or using a new appliance

Lab Task:



- Prepare to perform an Advanced Upgrade with Database Migration on the Primary Security Management Server in a distributed environment
- Perform an import of a Primary Security Management Server in a distributed Check Point environment
Module 7: ElasticXL Cluster


- Describe the ElasticXL Cluster solution, including its purpose and use

Lab Tasks:



- Deploy an ElasticXL Security Gateway Cluster</outline_plain><duration unit="d" days="3">3 days</duration><pricelist/><miles/></course>