Book description
Trust the best-selling Official Cert Guide series from Cisco Press to help you learn, prepare, and practice for exam success. They are built with the objective of providing assessment, review, and practice to help ensure you are fully prepared for your certification exam.
Cisco CyberOps Associate CBROPS 200-201 Official Cert Guide presents you with an organised test-preparation routine using proven series elements and techniques. Do I Know This Already? quizzes open each chapter and enable you to decide how much time you need to spend on each section. Exam topic lists make referencing easy. Chapter-ending Exam Preparation Tasks help you drill on key concepts you must know thoroughly.
Master Cisco CyberOps Associate CBROPS 200-201 exam topics
Assess your knowledge with chapter-opening quizzes
Review key concepts with exam preparation tasks
Practice with realistic exam questions in the practice test software
Cisco CyberOps Associate CBROPS 200-201 Official Cert Guide from Cisco Press enables you to succeed on the exam the first time and is the only self-study resource approved by Cisco. Leading Cisco technology expert Omar Santos shares preparation hints and test-taking tips, helping you identify areas of weakness and improve both your conceptual knowledge and hands-on skills.
This complete study package includes
A test-preparation routine proven to help you pass the exam
Do I Know This Already? quizzes, which enable you to decide how much time you need to spend on each section
Chapter-ending exercises, which help you drill on key concepts you must know thoroughly
The powerful Pearson Test Prep Practice Test software, with two full exams comprised of well-reviewed, exam-realistic questions, customization options, and detailed performance reports
A video mentoring lesson from the authors Complete Video Course
A final preparation chapter, which guides you through tools and resources to help you craft your review and test-taking strategies
Study plan suggestions and templates to help you organise and optimise your study time
Well regarded for its level of detail, study plans, assessment features, and challenging review questions and exercises, this official study guide helps you master the concepts and techniques that ensure your exam success.
This official study guide helps you master all the topics on the Cisco CyberOps Associate CBROPS 200-201 exam, including
Security concepts
Security monitoring
Host-based analysis
Network intrusion analysis
Security policies and procedures
Table of contents
- Cover Page
- About This eBook
- HalfTitle Page
- Title Page
- Copyright Page
- About the Author
- About the Technical Reviewer
- Dedication
- Acknowledgments
- Contents at a Glance
- Reader Services
- Contents
- Command Syntax Conventions
-
Introduction
- The Cisco CyberOps Associate Certification
- The Exam Objectives (Domains)
- Steps to Pass the 200-201 CBROPS Exam
- Signing Up for the Exam
- Facts About the Exam
- About the Cisco CyberOps Associate CBROPS 200-201 Official Cert Guide
- The Companion Website for Online Content Review
- How to Access the Pearson Test Prep (PTP) App
- Credits List
-
Chapter 1. Cybersecurity Fundamentals
- “Do I Know This Already?” Quiz
- Foundation Topics
- Introduction to Cybersecurity
- Threats, Vulnerabilities, and Exploits
- Network Security Systems
- Intrusion Detection Systems and Intrusion Prevention Systems
- Advanced Malware Protection
- Web Security Appliance
- Email Security Appliance
- Cisco Security Management Appliance
- Cisco Identity Services Engine
- Security Cloud-Based Solutions
- Cisco NetFlow
- Data Loss Prevention
- The Principles of the Defense-in-Depth Strategy
- Confidentiality, Integrity, and Availability: The CIA Triad
- Risk and Risk Analysis
- Personally Identifiable Information and Protected Health Information
- Principle of Least Privilege and Separation of Duties
- Security Operations Centers
- Playbooks, Runbooks, and Runbook Automation
- Digital Forensics
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 2. Introduction to Cloud Computing and Cloud Security
- “Do I Know This Already?” Quiz
- Foundation Topics
- Cloud Computing and the Cloud Service Models
- Cloud Security Responsibility Models
- DevOps, Continuous Integration (CI), Continuous Delivery (CD), and DevSecOps
- Understanding the Different Cloud Security Threats
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 3. Access Control Models
- “Do I Know This Already?” Quiz
- Foundation Topics
- Information Security Principles
- Subject and Object Definition
- Access Control Fundamentals
- Access Control Process
- Information Security Roles and Responsibilities
- Access Control Types
- Access Control Models
- Access Control Mechanisms
- Identity and Access Control Implementation
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 4. Types of Attacks and Vulnerabilities
-
Chapter 5. Fundamentals of Cryptography and Public Key Infrastructure (PKI)
- “Do I Know This Already?” Quiz
- Foundation Topics
- Cryptography
- Block and Stream Ciphers
- Symmetric and Asymmetric Algorithms
- Hashes
- Digital Signatures
- Next-Generation Encryption Protocols
- IPsec and SSL/TLS
- Fundamentals of PKI
- Root and Identity Certificates
- Revoking Digital Certificates
- Using Digital Certificates
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 6. Introduction to Virtual Private Networks (VPNs)
-
Chapter 7. Introduction to Security Operations Management
- “Do I Know This Already?” Quiz
- Foundation Topics
- Introduction to Identity and Access Management
- Security Events and Log Management
- Asset Management
- Introduction to Enterprise Mobility Management
- Configuration and Change Management
- Vulnerability Management
- Patch Management
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 8. Fundamentals of Intrusion Analysis
- “Do I Know This Already?” Quiz
- Foundation Topics
- Introduction to Incident Response
- The Incident Response Plan
- The Incident Response Process
- Information Sharing and Coordination
- Incident Response Team Structure
- Common Artifact Elements and Sources of Security Events
- Understanding Regular Expressions
- Protocols, Protocol Headers, and Intrusion Analysis
- How to Map Security Event Types to Source Technologies
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 9. Introduction to Digital Forensics
- “Do I Know This Already?” Quiz
- Foundation Topics
- Introduction to Digital Forensics
- The Role of Attribution in a Cybersecurity Investigation
- The Use of Digital Evidence
- Evidentiary Chain of Custody
- Reverse Engineering
- Fundamentals of Microsoft Windows Forensics
- Fundamentals of Linux Forensics
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 10. Network Infrastructure Device Telemetry and Analysis
- Chapter 11. Endpoint Telemetry and Analysis
- Chapter 12. Challenges in the Security Operations Center (SOC)
-
Chapter 13. The Art of Data and Event Analysis
- “Do I Know This Already?” Quiz
- Foundation Topics
- Normalizing Data
- Using the 5-Tuple Correlation to Respond to Security Incidents
- Using Retrospective Analysis and Identifying Malicious Files
- Mapping Threat Intelligence with DNS and Other Artifacts
- Using Deterministic Versus Probabilistic Analysis
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 14. Classifying Intrusion Events into Categories
- Chapter 15. Introduction to Threat Hunting
- Chapter 16. Final Preparation
- Glossary of Key Terms
- Appendix A: Answers to the “Do I Know This Already?” Quizzes and Review Questions
- Appendix B: Understanding Cisco Cybersecurity Operations Fundamentals CBROPS 200-201 Exam Updates
- Index
- Appendix C: Study Planner
- Where are the companion content files? - Register
- Inside Front Cover
- Inside Back Cover
- Code Snippets
Product information
- Title: Cisco CyberOps Associate CBROPS 200-201 Official Cert Guide
- Author(s):
- Release date: December 2020
- Publisher(s): Cisco Press
- ISBN: 9780136807964
You might also like
book
Cisco Certified DevNet Associate DEVASC 200-901 Official Cert Guide
Trust the best-selling Official Cert Guide series from Cisco Press to help you learn, prepare, and …
book
CCNP and CCIE Enterprise Core ENCOR 350-401 Official Cert Guide
Trust the best-selling Official Cert Guide series from Cisco Press to help you learn, prepare, and …
book
CCNP and CCIE Enterprise Core ENCOR 350-401 Official Cert Guide, 2nd Edition
Trust the best-selling Official Cert Guide series from Cisco Press to help you learn, prepare, and …
book
Cisco Certified DevNet Professional DEVCOR 350-901 Official Cert Guide
Trust the best-selling Official Cert Guide series from Cisco Press to help you learn, prepare, and …