Course Catalog
Check Point Cybersecurity Boot Camp (CCSA+CCSE)
Code: CCSA & CCSE
Duration: 5 Day
$5000 USD

OVERVIEW

In this five-day bundle course, you will learn the basic concepts and skills necessary to configure Check Point Next Generation Firewalls. During this course, you will gain with the fundamental knowledge, skills, and hands-on experience needed to configure, manage, and monitor an existing Quantum Security Environment. Delegates will learn how to access and navigate the Gaia Portal and the Gaia Command Line Interface, manage Administrator access, create and configure Network Objects, create new Security Policies, configure Ordered Layers and a Shared Inline Layer, elevate the traffic view and monitor system states, configure Identity Awareness, elevate security with HTTPS Inspection, configure Application Control and URL Filtering, and configure Autonomous Threat Prevention, also you will learn how to deploy Management High Availability, provide advanced policy management, configure Site-to-Site VPN, provide advanced security monitoring, upgrade a Security Gateway, use Central Deployment tool to install hotfixes, perform an import of a Primary Security Management Server, and Deploy ElasticXL Cluster.

 

Note: Supported version R82

DELIVERY FORMAT

This course is available in the following formats:

Virtual Classroom

Duration: 5 Day
Classroom

Duration: 5 Day

CLASS SCHEDULE

Delivery Format: Virtual Classroom
Date: Aug 31 2026 - Sep 04 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

Delivery Format: Virtual Classroom
Date: Sep 14 2026 - Sep 18 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

Delivery Format: Virtual Classroom
Date: Sep 28 2026 - Oct 02 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

Delivery Format: Virtual Classroom
Date: Oct 12 2026 - Oct 16 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

Delivery Format: Virtual Classroom
Date: Nov 02 2026 - Nov 06 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

Delivery Format: Virtual Classroom
Date: Nov 16 2026 - Nov 20 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

Delivery Format: Virtual Classroom
Date: Nov 30 2026 - Dec 04 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

Delivery Format: Virtual Classroom
Date: Dec 14 2026 - Dec 18 2026 | 10:00 - 18:00 EST
Location: Online
Course Length: 5 Day

$ 5000

GOALS

When you complete this course, you will be able to:

  • Access and navigate the Gaia Portal and the Gaia Command Line Interface.
  • Manage Administrator access.
  • Create and configure Network Objects.
  • Create new Security Policies.
  • Configure Ordered Layers and a Shared Inline Layer.
  • Elevate the traffic view and monitor system states.
  • Configure Identity Awareness.
  • Elevate security with HTTPS Inspection.
  • Configure Application Control and URL Filtering.
  • Deploy Management High Availability.
  • Provide advanced policy management.
  • Configure Site-to-Site VPN.
  • Provide advanced security monitoring.
  • Upgrade a Security Gateway.
  • Use Central Deployment tool to install hotfixes.
  • Perform an import of a Primary Security Management Server.
  • Deploy ElasticXL Cluster.
OUTLINE

Module 1: Introduction to Quantum Security

  • Identify the primary components of the Check Point Three-Tier Architecture and explain how they work together.

Module 2: Administrator Account Management

  • Explain the purpose of SmartConsole administrator accounts
  • Identify features for collaboration: session management, concurrent administration, policy installation

Module 3: Object Management

  • Explain the purpose of SmartConsole objects
  • Provide examples of physical and logical objects

Module 4: Security Policy Management

  • Explain the purpose of Security Policies
  • Identify the essential elements of a Security Policy.
  • Identify features and capabilities that enhance the configuration and management of the Security Policy.

Module 5: Policy Layers

  • Demonstrate an understanding of the Check Point policy layer concept.
  • Explain how layers affect traffic inspection.

Module 6: Security Operations Monitoring

  • Explain the purpose of security operations monitoring
  • Tune log server configuration
  • Use predefined and custom queries to filter the logging results.
  • Monitor the state of Check Point systems.

Module 7: Identity Awareness

  • Explain the purpose of the Identity Awareness solution
  • Identify the essential elements of Identity Awareness.

Module 8: HTTPS Inspection

  • Explain the purpose of HTTPS Inspection solution
  • Identify the essential elements of HTTPS Inspection

Module 9: Application Control and URL Filtering

  • Explain the purpose of the Application Control and URL Filtering solutions
  • Identify the essential elements of Application Control and URL Filtering

Module 10: Threat Prevention Fundamentals

  • Explain the purpose of the Threat Prevention solution
  • Identify the essential elements of Autonomous Threat Prevention

Module 11: Management High Availability

  • Explain the purpose of Management High Availability
  • Identify the essential elements of Management High Availability

Module 12: Advanced Policy Management

  • Identify ways to enhance the Security Policy with more object types
  • Create dynamic objects to make policy updatable from the Gateway
  • Manually define NAT rules
  • Configure Security Management behind NAT

Module 13: Site-to-Site VPN

  • Discuss site-to-site VPN basics, deployment, and communities
  • Describe how to analyze and interpret VPN tunnel traffic
  • Articulate how pre-shared keys and certificates can be configured to authenticate with third-party and externally managed VPN Gateways
  • Explain Link Selection and ISP Redundancy options
  • Explain tunnel management features

Module 14: Advanced Security Monitoring

  • Describe the SmartEvent and Compliance Blade solutions, including their purpose and use

Module 15: Upgrades

  • Identify supported upgrade options

Module 16: Advanced Upgrades and Migrations

  • Export/import a Management Database
  • Upgrade a Security Management Server by freshly deploying the new release or using a new appliance

Module 17: ElasticXL Cluster

  • Describe the ElasticXL Cluster solution, including its purpose and use

Module 1: Introduction to Quantum Security

  • Identify the primary components of the Check Point Three-Tier Architecture and explain how they work together.

Module 2: Administrator Account Management

  • Explain the purpose of SmartConsole administrator accounts
  • Identify features for collaboration: session management, concurrent administration, policy installation

Module 3: Object Management

  • Explain the purpose of SmartConsole objects
  • Provide examples of physical and logical objects

Module 4: Security Policy Management

  • Explain the purpose of Security Policies
  • Identify the essential elements of a Security Policy.
  • Identify features and capabilities that enhance the configuration and management of the Security Policy.

Module 5: Policy Layers

  • Demonstrate an understanding of the Check Point policy layer concept.
  • Explain how layers affect traffic inspection.

Module 6: Security Operations Monitoring

  • Explain the purpose of security operations monitoring
  • Tune log server configuration
  • Use predefined and custom queries to filter the logging results.
  • Monitor the state of Check Point systems.

Module 7: Identity Awareness

  • Explain the purpose of the Identity Awareness solution
  • Identify the essential elements of Identity Awareness.

Module 8: HTTPS Inspection

  • Explain the purpose of HTTPS Inspection solution
  • Identify the essential elements of HTTPS Inspection

Module 9: Application Control and URL Filtering

  • Explain the purpose of the Application Control and URL Filtering solutions
  • Identify the essential elements of Application Control and URL Filtering

Module 10: Threat Prevention Fundamentals

  • Explain the purpose of the Threat Prevention solution
  • Identify the essential elements of Autonomous Threat Prevention

Module 11: Management High Availability

  • Explain the purpose of Management High Availability
  • Identify the essential elements of Management High Availability

Module 12: Advanced Policy Management

  • Identify ways to enhance the Security Policy with more object types
  • Create dynamic objects to make policy updatable from the Gateway
  • Manually define NAT rules
  • Configure Security Management behind NAT

Module 13: Site-to-Site VPN

  • Discuss site-to-site VPN basics, deployment, and communities
  • Describe how to analyze and interpret VPN tunnel traffic
  • Articulate how pre-shared keys and certificates can be configured to authenticate with third-party and externally managed VPN Gateways
  • Explain Link Selection and ISP Redundancy options
  • Explain tunnel management features

Module 14: Advanced Security Monitoring

  • Describe the SmartEvent and Compliance Blade solutions, including their purpose and use

Module 15: Upgrades

  • Identify supported upgrade options

Module 16: Advanced Upgrades and Migrations

  • Export/import a Management Database
  • Upgrade a Security Management Server by freshly deploying the new release or using a new appliance

Module 17: ElasticXL Cluster

  • Describe the ElasticXL Cluster solution, including its purpose and use
LABS

Lab 1:

  • Explore Gaia on Security Management Server
  • Explore Gaia on Dedicated Log Server
  • Explore Gaia on Security Gateway Cluster Members
  • Connect to SmartConsole
  • Navigate GATEWAYS & SERVERS Vies
  • Navigate SECURITY POLICIES Views
  • Navigate LOGS & EVENTS Views
  • Navigate MANAGE & SETTINGS Views

Lab 2:

  • Create new administrators and assign profiles
  • Test administrator profile assignments
  • Manage concurrent sessions
  • Take over another session and verify status

Lab 3:

  • View and modify GATEWAYS & SERVERS objects
  • View and modify network objects
  • View and modify service objects

Lab 4:

  • Verify and modify the Security Policy.
  • Install the standard Security Policy.
  • Test the Security Policy.

Lab 5:

  • Add an Ordered Layer
  • Configure and deploy Ordered Layer rules
  • Test Ordered Layer policy
  • Create Inline DMZ Layer
  • Test Inline DMZ Layer

Lab 6:

  • Configure log management
  • Enhance rulebase view, rules, and logging
  • Review logs and search for data
  • Configure Monitoring Blade
  • Monitor status of the systems

Lab 7:

  • Adjust security policy for Identity Awareness
  • Configure Identity Collector
  • Define the user access role
  • Test Identity Awareness

Lab 8:

  • Enable HTTPS Inspection
  • Adjust access control rules
  • Deploy Security Gateway certificate
  • Test and analyze policy with HTTPS Inspection

Lab 9:

  • Adjust the Access Control Policy
  • Create and adjust Application Control and URL
  • Test and adjust the Application Control and URL Filtering Rules

Lab 10:

  • Enable Autonomous Threat Prevention
  • Test Autonomous Threat Prevention

Lab 11:

  • Deploy and configure Management High Availability
  • Ensure the failover process functions as expected

Lab 12:

  • Use Updatable Objects
  • Configure Network Address Translation for server and network objects
  • Configure Management behind NAT for Branch Office connections

Lab 13:

  • Configure Site-to-Site VPN with internally managed Security Gateways

Lab 14:

  • Configure a SmartEvent Server to monitor relevant patterns and events
  • Demonstrate how to configure Events and Alerts in SmartEvent
  • Demonstrate how to run specific SmartEvent reports
  • Activate the Compliance Blade
  • Demonstrate Security Best Practice settings and alerts
  • Demonstrate Regulatory Requirements Compliance Scores

Lab 15:

  • Upgrade a Security Gateway
  • Use Central Deployment tool to install Hotfixes

Lab 16:

  • Prepare to perform an Advanced Upgrade with Database Migration on the Primary Security Management Server in a distributed environment
  • Perform an import of a Primary Security Management Server in a distributed Check Point environment

Lab 17:

  • Deploy an ElasticXL Security Gateway Cluster

Lab 1:

  • Explore Gaia on Security Management Server
  • Explore Gaia on Dedicated Log Server
  • Explore Gaia on Security Gateway Cluster Members
  • Connect to SmartConsole
  • Navigate GATEWAYS & SERVERS Vies
  • Navigate SECURITY POLICIES Views
  • Navigate LOGS & EVENTS Views
  • Navigate MANAGE & SETTINGS Views

Lab 2:

  • Create new administrators and assign profiles
  • Test administrator profile assignments
  • Manage concurrent sessions
  • Take over another session and verify status

Lab 3:

  • View and modify GATEWAYS & SERVERS objects
  • View and modify network objects
  • View and modify service objects

Lab 4:

  • Verify and modify the Security Policy.
  • Install the standard Security Policy.
  • Test the Security Policy.

Lab 5:

  • Add an Ordered Layer
  • Configure and deploy Ordered Layer rules
  • Test Ordered Layer policy
  • Create Inline DMZ Layer
  • Test Inline DMZ Layer

Lab 6:

  • Configure log management
  • Enhance rulebase view, rules, and logging
  • Review logs and search for data
  • Configure Monitoring Blade
  • Monitor status of the systems

Lab 7:

  • Adjust security policy for Identity Awareness
  • Configure Identity Collector
  • Define the user access role
  • Test Identity Awareness

Lab 8:

  • Enable HTTPS Inspection
  • Adjust access control rules
  • Deploy Security Gateway certificate
  • Test and analyze policy with HTTPS Inspection

Lab 9:

  • Adjust the Access Control Policy
  • Create and adjust Application Control and URL
  • Test and adjust the Application Control and URL Filtering Rules

Lab 10:

  • Enable Autonomous Threat Prevention
  • Test Autonomous Threat Prevention

Lab 11:

  • Deploy and configure Management High Availability
  • Ensure the failover process functions as expected

Lab 12:

  • Use Updatable Objects
  • Configure Network Address Translation for server and network objects
  • Configure Management behind NAT for Branch Office connections

Lab 13:

  • Configure Site-to-Site VPN with internally managed Security Gateways

Lab 14:

  • Configure a SmartEvent Server to monitor relevant patterns and events
  • Demonstrate how to configure Events and Alerts in SmartEvent
  • Demonstrate how to run specific SmartEvent reports
  • Activate the Compliance Blade
  • Demonstrate Security Best Practice settings and alerts
  • Demonstrate Regulatory Requirements Compliance Scores

Lab 15:

  • Upgrade a Security Gateway
  • Use Central Deployment tool to install Hotfixes

Lab 16:

  • Prepare to perform an Advanced Upgrade with Database Migration on the Primary Security Management Server in a distributed environment
  • Perform an import of a Primary Security Management Server in a distributed Check Point environment

Lab 17:

  • Deploy an ElasticXL Security Gateway Cluster
WHO SHOULD ATTEND

Technical persons who support, install, deploy, or administer Check Point Software Blades should attend this course. This could include the following:

  • Security Engineers
  • Security Analysts
  • System administrators
  • Security managers
  • Network engineers
  • Security Consultants / Architects
  • Anyone seeking CCSA/ CCSE certification
PREREQUISITES

A minimum of one year of experience with Check Point products is recommended, along with a working knowledge of Windows, UNIX, networking technologies, the Internet, and TCP/IP.