Skip to main content

The Cisco Security Monitoring Analysis and Response System (CS-MARS)

Our Ration for the course : 4.7 Start Based on 40 users

Able to use CS-MARS to do customer parser for unknown devices in CS-MARS

Able to use CS-MARS to investigate an incident and

Able to use CS-MARS to monitor security and host

Name of Course Scheduled Dates Vanue Registration Link
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Abu Dhabi, UAE Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Dubai, UAE Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Chennai, India Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Manama, Bahrain Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Cairo, Egypt Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Tehran, Iran Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Alexandria, Egypt Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Baghdad, Iraq Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Kuwait City, Kuwait Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Abu Dhabi, UAE Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Beirut, Lebanon Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Doha, Qatar Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Riyadh, Saudi Arabia Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Jeddah, Saudi Arabia Registration Now
The Cisco Security Monitoring Analysis and Response System CS-MARS To be determined Abu Dhabi, UAE Registration Now

The Cisco Security Monitoring Analysis and Response System (CS-MARS) is part of the Cisco Security Management Suite which provides security monitoring for network security devices and host application made by Cisco or non-Cisco providers.

Prerequisites

  • Cisco® Implementing Cisco® Intrusion Prevention
  • System (IPS)
  • Cisco® Securing Networks with Cisco® Routers
  • and Switches (SNRS)
  • Cisco® Interconnecting Cisco® Networking
  • Devices Part 1 (ICND1)
  • Cisco® Interconnecting Cisco® Networking
  • Devices Part 2 (ICND2)
  • Cisco® Securing Networks with ASA
  • Fundamentals (SNAF)
  • Cisco® Implementing Cisco® IOS Network
  • Security (IINS)
Learning Level:  
Advanced
Duration:  
3 days

Lesson 1: Introducing Cisco Security Monitoring,

  • Analysis, and Response System
  • Effective Security Monitoring and Management
  • Cisco Self-Defending Network and the Role of
  • Cisco Security MARS
  • Cisco Security MARS
  • Cisco Security MARS Terminology
  • Cisco Security MARS Technologies
  • Cisco Security MARS User Interface
  • Cisco Security MARS Product Portfolio

Lesson 2: Understanding the System Architecture

  • Cisco Security MARS Software Components
  • Cisco Security MARS Process Flow Details


Lesson 3: Configuring a Cisco Security MARS

  • Appliance
  • Initial Cisco Configuration Overview
  • Scenario: Configuration Tasks
  • Deployment Planning Guidelines
  • Pre-Lab Activity: Accessing the Remote Lab
  • Lab 3: Accessing the Cisco Security MARS Appliance

Lesson 4: Adding Reporting and Mitigation Devices

  • Overview of Reporting and Mitigation Devices
  • Scenario: Adding a Cisco Reporting Device and Enabling NetFlow
  • Data-Enabling Features of Cisco Security MARS
  • Integrating Cisco Security MARS with Third-Party Applications
  • Lab 4-1: Adding Reporting Devices and Enabling NetFlow
  • Lab 4-2: Configuring the Syslog Forwarding Feature

Lesson 5: Viewing the Summary Page

  • Summary Page Overview
  • Dashboard
  • Network Status
  • My Reports
  • Scenario: Getting Information from the
  • Summary Page
  • Lab 5: Generating Summary Reports

Lesson 6: Managing Rules

  • Rules Overview
  • Working with System and User Inspection Rules
  • Working with Drop Rules
  • Rule Groups Overview
  • Lab 6-1: Configuring Cisco Security MARS Event Types
  • Lab 6-2: Configuring an Inspection Rule

Lesson 7: Understanding Queries and Reports

  • Query Page
  • Scenario: Configuring a Query Reports Page
  • Scenario: Configuring a System Report
  • Lab 7: Performing a Query and Creating a Custom Report

Lesson 8: Investigating and Mitigating Incidents

  • Incidents Overview
  • Incidents
  • Scenario: Role of Cisco Security MARS in Your Network
  • False Positives
  • Case Management
  • Scenario: Configuring a Case to Track an Incident.
  • Configuring Notifications
  • Case Study: Preventing the W32 Blaster Worm.
  • Lab 8: Performing Incident Investigation and Mitigation

Lesson 9: Working with User-Defined Log Parser Templates

  • Overview of User-Defined Log Parser Templates
  • Scenario: Configuring a Customer Parser
  • Lab 9: Configuring the Custom Parser

Lesson 10: Integrating with Cisco Security Manager

  • Overview of Cisco Security Manager Policy Table Lookup
  • Scenario: Invoking Cisco Security Manager Policy
  • Table Lookup from Cisco Security MARS
  • Lab 10: Performing Cisco Security Manager
  • Policy Lookup

Lesson 11: Managing and Administering the System

  • Management Overview
  • Overview of System Maintenance Tasks
  • IPS Signature Dynamic Update Settings
  • Upgrading the Cisco Security MARS Appliance Software
  • Migrating Data from Cisco Security MARS 4.3.x to 5.3.x
  • Lab 11-1: Reviewing the CLI and Upgrading the
  • Device Version

Lesson 12: Troubleshooting and Optimizing Cisco

  • Security MARS
  • Hardware Installation Issues
  • Device Configuration Issues
  • Global Controller-to-Local Controller
  • Communications
  • Sizing Cisco Security MARS Deployment
  • Tuning Cisco Security MARS
  • Securing Cisco Security MARS

Lesson 13: Using the Cisco Security MARS Global

  • Controller
  • Cisco Security MARS Global Controller Overview
  • Configuring the Cisco Security MARS Global
  • Controller
  • Summary Tab
  • Incidents Tab
  • Queries and Reports
  • Rules Tab
  • Management Tab
  • System Maintenance Tab

Lesson 14: Course Review

  • Cisco Security MARS at Work

This is an advanced learning level course which consists of a 5 Days duration.
The participant will be entitled for a certification of Certified after completing of his/her training successfully.

  • doodles

    Reseller Customer Employee

  • doodles

    Channel Partner

To enroll or register to any training course, you can use the registration page from training page or fill the request a call back form from each course pages. The following page will provide you a list of course and training that we are providing based on the category and from each course item you can see the course details.
URL: https://nbizinfosol.twtests.co.in/training.aspx
Another method is to fill a Request a call back form provided in each Training/Course pages.

We are providing course materials during training and completion certificate after succesful training.

Yes. you can fill the registration form avaialble in the website or you can directly call us to enroll the course.Our executives will guide you to do further steps.

Based upon the course you are enrolling, we will charge the exam fee . We will give you the details of course fee and exam fee anytime to clear it.

Yes. We are providing the Course completion certificate for all courses we are providing.

Yes. We will provide assistance and support to apply for any exam.

Two types of payment available:

1. Visit our office and pay direct,You are always welcome to Nbizinfosol.
2. We are providing online payment via paypal payment gateway.Based upon your request we will provide the link to access the payment page.