<?xml version="1.0" encoding="utf-8" ?>
<!DOCTYPE FL_Course SYSTEM "https://www.flane.de/dtd/fl_course095.dtd"><?xml-stylesheet type="text/xsl" href="https://portal.flane.ch/css/xml-course.xsl"?><course productid="37306" language="en" source="https://portal.flane.ch/swisscom/en/xml-course/suse-sec201v5" lastchanged="2026-07-24T11:46:00+02:00" parent="https://portal.flane.ch/swisscom/en/xml-courses"><title>SUSE Security Deployment and Operations</title><productcode>SEC201V5</productcode><vendorcode>SU</vendorcode><vendorname>SUSE</vendorname><fullproductcode>SU-SEC201V5</fullproductcode><version>5</version><objective>&lt;p&gt;Attendees will be taught how to:&lt;/p&gt;
&lt;ul&gt;
&lt;li&gt;Differentiate container and microservice network vulnerabilities from traditional application attack surfaces&lt;/li&gt;&lt;li&gt;Deploy and automate security profiles across single or multi-cluster environments using Fleet and Helm&lt;/li&gt;&lt;li&gt;Shift security left by integrating automated vulnerability and compliance scanning into CI/CD build pipelines&lt;/li&gt;&lt;li&gt;Enforce admission controls to validate and intercept resource creation based on critical risk criteria&lt;/li&gt;&lt;li&gt;Implement zero-trust protection by auto-learning and locking down process profiles, network rules, and file paths&lt;/li&gt;&lt;li&gt;Intercept advanced threats utilizing built-in network attack detection alongside custom DLP and WAF sensors&lt;/li&gt;&lt;li&gt;Federate global security policies centrally from a primary cluster down to all managed downstream environments&lt;/li&gt;&lt;li&gt;Manage programmatically using example REST API scripts and the containerized Management CLI&lt;/li&gt;&lt;li&gt;Integrate SIEM operations by forwarding structured log notifications to Webhooks and external Syslog servers&lt;/li&gt;&lt;/ul&gt;</objective><essentials>&lt;p&gt;Participants need a basic understanding of containerization principles, Kubernetes orchestrator operations, and fundamental container development processes. Additionally, practical comfort working inside a standard Linux terminal shell is required.&lt;/p&gt;</essentials><audience>&lt;p&gt;This course is specifically targeted at container software developers, IT cloud operators, security administrators, and DevOps personnel responsible for managing, auditing, and improving security compliance postures for containerized microservices.&lt;/p&gt;</audience><contents>&lt;h5&gt;Section 1: Course Overview&lt;/h5&gt;&lt;h5&gt;Section 2: Introduction to Container Security&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;The Need for Container Security&lt;/li&gt;&lt;li&gt;Threat and Vulnerability Management&lt;/li&gt;&lt;li&gt;SUSE Security&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 3: Deploying SUSE Security&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Deployment Methods&lt;/li&gt;&lt;li&gt;Deploying SUSE Security using SUSE Rancher Prime&lt;/li&gt;&lt;li&gt;Deploying SUSE Security using Fleet&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 4: SUSE Security Management Console User Interface&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Navigation within the Management Console&lt;/li&gt;&lt;li&gt;Security Risk Score&lt;/li&gt;&lt;li&gt;Assets&lt;/li&gt;&lt;li&gt;Network Activity&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 5: SUSE Security Management Console Basic Configuration&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Configure SUSE Security Management Console Settings&lt;/li&gt;&lt;li&gt;Manage Local Users and Roles&lt;/li&gt;&lt;li&gt;Enable Authentication from External Directories&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 6: Supply Chain Security with SUSE Security&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Vulnerability Scanning&lt;/li&gt;&lt;li&gt;Compliance Scanning&lt;/li&gt;&lt;li&gt;Admission Controls&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 7: Runtime Security with SUSE Security&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Runtime Scanning&lt;/li&gt;&lt;li&gt;Threat Based Controls&lt;/li&gt;&lt;li&gt;Zero-Trust Controls&lt;/li&gt;&lt;li&gt;Runtime Security Management with SUSE Security&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 8: Multi-Cluster Management with SUSE Security&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;Federation&lt;/li&gt;&lt;li&gt;Multi-Cluster Policies&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 9: SUSE Security API and Command Line Management&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;REST API&lt;/li&gt;&lt;li&gt;SUSE Security Management CLI&lt;/li&gt;&lt;/ul&gt;&lt;h5&gt;Section 10: Logging and Reporting&lt;/h5&gt;&lt;ul&gt;
&lt;li&gt;External Logging Services&lt;/li&gt;&lt;li&gt;SUSE Security Reports&lt;/li&gt;&lt;/ul&gt;</contents><objective_plain>Attendees will be taught how to:


- Differentiate container and microservice network vulnerabilities from traditional application attack surfaces
- Deploy and automate security profiles across single or multi-cluster environments using Fleet and Helm
- Shift security left by integrating automated vulnerability and compliance scanning into CI/CD build pipelines
- Enforce admission controls to validate and intercept resource creation based on critical risk criteria
- Implement zero-trust protection by auto-learning and locking down process profiles, network rules, and file paths
- Intercept advanced threats utilizing built-in network attack detection alongside custom DLP and WAF sensors
- Federate global security policies centrally from a primary cluster down to all managed downstream environments
- Manage programmatically using example REST API scripts and the containerized Management CLI
- Integrate SIEM operations by forwarding structured log notifications to Webhooks and external Syslog servers</objective_plain><essentials_plain>Participants need a basic understanding of containerization principles, Kubernetes orchestrator operations, and fundamental container development processes. Additionally, practical comfort working inside a standard Linux terminal shell is required.</essentials_plain><audience_plain>This course is specifically targeted at container software developers, IT cloud operators, security administrators, and DevOps personnel responsible for managing, auditing, and improving security compliance postures for containerized microservices.</audience_plain><contents_plain>Section 1: Course Overview

Section 2: Introduction to Container Security


- The Need for Container Security
- Threat and Vulnerability Management
- SUSE Security
Section 3: Deploying SUSE Security


- Deployment Methods
- Deploying SUSE Security using SUSE Rancher Prime
- Deploying SUSE Security using Fleet
Section 4: SUSE Security Management Console User Interface


- Navigation within the Management Console
- Security Risk Score
- Assets
- Network Activity
Section 5: SUSE Security Management Console Basic Configuration


- Configure SUSE Security Management Console Settings
- Manage Local Users and Roles
- Enable Authentication from External Directories
Section 6: Supply Chain Security with SUSE Security


- Vulnerability Scanning
- Compliance Scanning
- Admission Controls
Section 7: Runtime Security with SUSE Security


- Runtime Scanning
- Threat Based Controls
- Zero-Trust Controls
- Runtime Security Management with SUSE Security
Section 8: Multi-Cluster Management with SUSE Security


- Federation
- Multi-Cluster Policies
Section 9: SUSE Security API and Command Line Management


- REST API
- SUSE Security Management CLI
Section 10: Logging and Reporting


- External Logging Services
- SUSE Security Reports</contents_plain><duration unit="d" days="2">2 days</duration><pricelist><price country="DE" currency="EUR">1450.00</price><price country="AT" currency="EUR">1450.00</price><price country="CH" currency="CHF">1450.00</price><price country="SE" currency="EUR">1450.00</price><price country="SI" currency="EUR">1450.00</price><price country="US" currency="USD">2400.00</price><price country="CA" currency="CAD">3310.00</price></pricelist><miles/></course>