課程簡介
為什麼選擇 Check Point 與 CCSA 認證?
在勒索軟體、零日漏洞(Zero-Day
Invulnerability)與複雜網絡攻擊頻發的今天,網絡安全已成為企業營運的重中之重。Check Point
是全球頂尖的網絡資訊安全龍頭供應商,連續多年榮獲 Gartner 網路防火牆魔力象限的領導者地位。其獨家研發的次世代防火牆(NGFW),透過業界首創的單一統一管理架構,為全球無數跨國企業、金融機構與政府部門提供覆蓋雲端、網絡、資料與端點的全方位主動防禦。
隨着企業對資安合規與防護的要求日益嚴苛,市場對專業網絡保安人才的需求達到前所未有的高峰。Check Point CCSA(Check
Point Certified Security Administrator) 是全球 I.T.
業界公認含金量極高的網絡安全核心證書。考取 CCSA 不僅證明您具備實作現代企業級防火牆的專業實力,更是您晉身資安工程師(Security
Engineer)或網絡保安專家必備的黃金履歷。
掌握領先業界的次世代防火牆技術
本課程專為系統管理員、網路工程師以及有志投身資訊安全(Cybersecurity)行業的人士設計。教學內容緊貼官方最新考核標準,摒棄單純的理論死記,全面聚焦於
Check Point 核心技術架構:
• Security Gateway 核心防禦:深入理解 Check Point 的專利檢查技術,構建牢不可破的企業邊界防線。
• 軟體刀鋒(Software Blade)彈性架構:學員將親手配置並靈活調度不同的安全模塊(如 Firewall, VPN,
IPS, Application Control, Anti-Bot
等),依企業實際需求打造專屬的動態防禦網絡,徹底杜絕黑客滲透、惡意軟體與敏感資料外洩(DLP)。
• 統一集中管理(Unified Management):掌握利用單一介面進行多台閘道器的中央調配與網絡流量審計,協助企業在提升頂級資安防護的同時,大幅降低維運與整體擁有成本(TCO)。
題庫只有 180 條題目,容易溫習及通過考試!

Check Point Firewall Corporate Network

Check Point Firewall VPN Network

Check Point SmartDashboard Policy

Check Point SmartDashboard Overview
適合人仕:
有志投身
I.T 網絡保安範疇的人仕
系統工程師,網絡管理員,網絡保安人員
已考取
CCNA / MCSA / MCSE 證書的同學
修讀條件:
對
Windows Server 系統有基本操作經驗
對互聯網及
TCP/IP 有一定程度的認識
對網絡保安具有濃厚興趣
課程包括:
導師精心編製 Check Point CCSA R81.20 課程筆記
Check Point
CCSA R81.20 Student and Lab Manual
Check Point
CCSA R81.20 電子書
Check
Point Security Gateway Firewall R81.20 試用版
課程資源下載鏈結 (包括 PDF 筆記、電子書、模擬試題、應用軟件等),隨時掌握最新學習內容
全新
4 月份更新的模擬試題連參考答案 (模擬試題 "一年" 免費更新保證,考試更有彈性)
由
Jackie Mok 親自教授
CCSA
核心課程大綱 (Core Syllabus):
安全管理基礎
(Security Management):掌握 Check Point 架構組成(SmartConsole, Security
Management Server, Security Gateway)與部署模式。
安全策略部署
(Security Policy):熟練設定並推送統一安全策略、規則庫(Rule Base)優化與隱含規則(Implied
Rules)管理。
三大防禦刀鋒管理
(Core Software Blades):深入配置 Application Control & URL
Filtering(應用程式與網頁過濾)、NAT(網絡位址轉換)以及備受重視的 Anti-Bot / Antivirus 威脅防禦。
身分識別與認證
(Identity Awareness):實作與企業 AD(Active
Directory)整合,針對不同用戶與部門進行精準的權限控管與權限隔離。
虛擬專用網建置
(Site-to-Site VPN):配置企業間安全加密隧道(VPN Tunnel),確保跨區域資料傳輸的安全與穩定。
流量監控與故障排除
(Monitoring & Troubleshooting):運用 SmartView Tracker / SmartLog
進行即時日誌分析,掌握系統運行狀態,快速定位網絡資安故障。


Visual
Cert Exam (VCE) 模擬考試軟件,增強考試能力!
課程電腦設備:
授課語言:
課程全長:
4 堂 x 3 小時 ( Instructor-Led 導師主導課堂 : 理論 + 實戰 ) 及 3 小時 ( 自修研習時段 ) , 合共 15 小時
![]() |
|
HK$ 3,480 ( 正價 )
HK$ 2,980 ( 優惠價 )
請即致電 2380 9888 ( 來電請設有 來電顯示) / WhatsApp 確認優惠 . * 每學員優惠使用次數不限 . 優惠不可重疊使用 . 優惠詳情請參閱課程內頁相關說明 . |
試題數量: 100 題
考試時間: 120 分鐘
合格分數: 70 %
模擬試題參考
題庫只有 180 條題目,容易溫習及通過考試!
成功通過考試後獲得的國際認可證書及資格:
Chapter
1 - Introduction to Check Point Technology• Describe Check Point’s unified approach to network management
and elements of this architecture
• Design a distributed environment using the network detailed in the
course topology
• Install the Security Gateway R81 in a distributed environment
Chapter
2 - Deployment Platforms• Given network specifications, perform a backup and restore the
current Gateway installation
• Identify critical files needed to purge or backup, import and
export users and groups
• Deploy Gateways using sysconfig and cpconfig from the Gateway
command line
Chapter
3 - Introduction to the Security Policy• Given the network topology, create and configure network, host and gateway objects
• Verify SIC establishment between the Security Server and the Gateway using SmartDashboard
• Create a basic Rule Base in SmartDashboard
• Configure NAT rules on Web and Gateway servers
• Evaluate existing policies and optimize the rules based on current corporate requirements
• Maintain the Security Management Server with scheduled backups and policy versions
Chapter
4 - Monitoring Traffic and Connections• Use Queries in SmartView Tracker to monitor IPS and common network traffic
• Using packet data on a given corporate network, generate reports, troubleshoot system
• Using SmartView Monitor to configure alerts and traffic counters, view a Gateway’s status
• Using SmartView Monitor to monitor suspicious activity rules, analyze tunnel activity
Chapter
5 - Using SmartUpdate• Monitor remote Gateways using SmartUpdate to evaluate the need for upgrades
• Use SmartUpdate to apply upgrade packages to single or multiple VPN-1 Gateways
• Upgrade and attach product licenses using SmartUpdate
Chapter
6 - User Management and Authentication• Centrally manage users to ensure only authenticated users securely access the corporate network
• Manage users to access the corporate LAN by using external databases
Chapter
7 - Identity Awareness• Acquire user information used by the Security Gateway to control access
• Define Access Roles for use in an Identity Awareness rule
• Implement Identity Awareness in the Firewall Rule Base
Chapter
8 - Introduction to Check Point VPNs• Configure a pre-shared secret site-to-site VPN with partner sites
• Configure permanent tunnels for remote access to corporate resources
• Configure VPN tunnel sharing between host-based, subunit-based and gateway-based tunnels















