課程簡介
為什麼選擇 Check Point 與 CCSA 認證?
在勒索軟體、零日漏洞(Zero-Day
Invulnerability)與複雜網絡攻擊頻發的今天,網絡安全已成為企業營運的重中之重。Check Point
是全球頂尖的網絡資訊安全龍頭供應商,連續多年榮獲 Gartner 網路防火牆魔力象限的領導者地位。其獨家研發的次世代防火牆(NGFW),透過業界首創的單一統一管理架構,為全球無數跨國企業、金融機構與政府部門提供覆蓋雲端、網絡、資料與端點的全方位主動防禦。
隨着企業對資安合規與防護的要求日益嚴苛,市場對專業網絡保安人才的需求達到前所未有的高峰。Check Point CCSA(Check
Point Certified Security Administrator) 是全球 I.T.
業界公認含金量極高的網絡安全核心證書。考取 CCSA 不僅證明您具備實作現代企業級防火牆的專業實力,更是您晉身資安工程師(Security
Engineer)或網絡保安專家必備的黃金履歷。
掌握領先業界的次世代防火牆技術
本課程專為系統管理員、網路工程師以及有志投身資訊安全(Cybersecurity)行業的人士設計。教學內容緊貼官方最新考核標準,摒棄單純的理論死記,全面聚焦於
Check Point 核心技術架構:
• Security Gateway 核心防禦:深入理解 Check Point 的專利檢查技術,構建牢不可破的企業邊界防線。
• 軟體刀鋒(Software Blade)彈性架構:學員將親手配置並靈活調度不同的安全模塊(如 Firewall, VPN,
IPS, Application Control, Anti-Bot
等),依企業實際需求打造專屬的動態防禦網絡,徹底杜絕黑客滲透、惡意軟體與敏感資料外洩(DLP)。
• 統一集中管理(Unified Management):掌握利用單一介面進行多台閘道器的中央調配與網絡流量審計,協助企業在提升頂級資安防護的同時,大幅降低維運與整體擁有成本(TCO)。
題庫只有 180 條題目,容易溫習及通過考試!

Check Point Firewall Corporate Network

Check Point Firewall VPN Network

Check Point SmartDashboard Policy

Check Point SmartDashboard Overview
適合人仕:
有志投身
I.T 網絡保安範疇的人仕
系統工程師,網絡管理員,網絡保安人員
已考取
CCNA / MCSA / MCSE 證書的同學
修讀條件:
對
Windows Server 系統有基本操作經驗
對互聯網及
TCP/IP 有一定程度的認識
對網絡保安具有濃厚興趣
課程包括:
導師精心編製 Check Point CCSA
R82 課程筆記
Check Point
CCSA R82 Student and Lab Manual
Check Point
CCSA R82 電子書
Check
Point Security Gateway Firewall R82 試用版
課程資源下載鏈結 (包括 PDF 筆記、電子書、模擬試題、應用軟件等),隨時掌握最新學習內容
全新
9 月份更新的模擬試題連參考答案 (模擬試題 "一年" 免費更新保證,考試更有彈性)
由
Jackie Mok 親自教授
CCSA
核心課程大綱 (Core Syllabus):
安全管理基礎
(Security Management):掌握 Check Point 架構組成(SmartConsole, Security
Management Server, Security Gateway)與部署模式。
安全策略部署
(Security Policy):熟練設定並推送統一安全策略、規則庫(Rule Base)優化與隱含規則(Implied
Rules)管理。
三大防禦刀鋒管理
(Core Software Blades):深入配置 Application Control & URL
Filtering(應用程式與網頁過濾)、NAT(網絡位址轉換)以及備受重視的 Anti-Bot / Antivirus 威脅防禦。
身分識別與認證
(Identity Awareness):實作與企業 AD(Active
Directory)整合,針對不同用戶與部門進行精準的權限控管與權限隔離。
虛擬專用網建置
(Site-to-Site VPN):配置企業間安全加密隧道(VPN Tunnel),確保跨區域資料傳輸的安全與穩定。
流量監控與故障排除
(Monitoring & Troubleshooting):運用 SmartView Tracker / SmartLog
進行即時日誌分析,掌握系統運行狀態,快速定位網絡資安故障。


Visual
Cert Exam (VCE) 模擬考試軟件,增強考試能力!
課程電腦設備:
授課語言:
課程全長:
4 堂 x 3 小時 ( Instructor-Led 導師主導課堂 : 理論 + 實戰 ) 及 3 小時 ( 自修研習時段 ) , 合共 15 小時
![]() |
|
HK$ 3,480 ( 正價 )
HK$ 2,980 ( 優惠價 )
請即致電 2380 9888 ( 來電請設有 來電顯示) / WhatsApp 確認優惠 . * 每學員優惠使用次數不限 . 優惠不可重疊使用 . 優惠詳情請參閱課程內頁相關說明 . |
試題數量: 100 題
考試時間: 120 分鐘
合格分數: 70 %
模擬試題參考
題庫只有 180 條題目,容易溫習及通過考試!
成功通過考試後獲得的國際認可證書及資格:
• Identify the primary components of the Check Point Three-Tier Architecture and explain how they work together in the Check Point environment.
Lab Tasks
• Explore Gaia on the Security Management Server
• Explore Gaia on the Dedicated Log Server
• Explore Gaia on the Security Gateway Cluster Members
• Connect to SmartConsole
• Navigate GATEWAYS & SERVERS Views
• Navigate SECURITY POLICIES Views
• Navigate LOGS & EVENTS Views
• Navigate MANAGE & SETTINGS Views
Module 2: Administrator Account Management
• Explain the purpose of SmartConsole administrator accounts.
• Identify useful features for administrator collaboration, such as session management, concurrent administration, and concurrent policy installation.
Lab Tasks
• Create New Administrators and Assign Profiles
• Test Administrator Profile Assignments
• Manage Concurrent Administrator Sessions
• Take Over Another Session and Verify Session Status
Module 3: Object Management
• Explain the purpose of SmartConsole Objects.
• Give examples of SmartConsole Physical and Logical Objects.
Lab Task3
• View and Modify GATEWAYS & SERVERS Objects
• View and Modify Network Objects
• View and Modify Service Objects
Module 4: Security Policy Management
• Explain the purpose of Security Policies.
• Identify the essential elements of a Security Policy.
• Identify features and capabilities that enhance the configuration and management of the Security Policy.
Lab Tasks
• Verify the Security Policy
• Modify Security Policies
• Install the Standard Security Policy
• Test the Security Policy
Module 5: Policy Layers
• Demonstrate an understanding of the Check Point policy layer concept.
• Explain how policy layers affect traffic inspection.
Lab Tasks
• Add an Ordered Layer
• Configure and Deploy the Ordered Layer Rules
• Test the Ordered Layer Policy
• Create an Inline DMZ Layer
• Test the Inline DMZ Layer
Module 6: Security Operations Monitoring
• Explain the purpose of Security Operations Monitoring.
• Tune the Log Server configuration.
• Use predefined and custom queries to filter the logging results.
• Monitor the state of Check Point systems.
Lab Tasks
• Configure Log Management
• Enhance Rulebase View, Rules, and Logging
• Review Logs and Search for Data
• Configure the Monitoring Blade
• Monitor the Status of the Systems
Module 7: Identity Awareness
• Explain the purpose of the Identity Awareness solution.
• Identify the essential elements of Identity Awareness.
Lab Tasks
• Adjust the Security Policy for Identity Awareness
• Configure the Identity Collector
• Define the User Access Role
• Test Identity Awareness
Module 8: HTTPS Inspection
• Explain the purpose of the HTTPS Inspection solution.
• Identify the essential elements of HTTPS Inspection.
Lab Tasks
• Enable HTTPS Inspection
• Adjust Access Control Rules
• Deploy the Security Gateway Certificate
• Test and Analyze Policy with HTTPS Inspection
Module 9: Application Control and URL Filtering
• Explain the purpose of the Application Control and URL Filtering solutions.
• Identify the essential elements of Application Control and URL Filtering.
Lab Tasks
• Adjust the Access Control Policy
• Create and Adjust Application Control and URL
• Test and Adjust the Application Control and URL Filtering Rules
Module 10: Threat Prevention Fundamentals
• Explain the purpose of the Threat Prevention solution.
• Identify the essential elements of Autonomous Threat Prevention.
Lab Tasks
• Enable Autonomous Threat Prevention
• Test Autonomous Threat Prevention














