1
1

00:00:00,090  -->  00:00:01,380
<v ->In this section of the course,</v>
2

2

00:00:01,380  -->  00:00:04,440
we're going to cover network architecture and segmentation.
3

3

00:00:04,440  -->  00:00:05,550
Now, you may remember,
4

4

00:00:05,550  -->  00:00:07,500
back in our coverage of instant responses
5

5

00:00:07,500  -->  00:00:10,140
that we mentioned this concept of segmentation.
6

6

00:00:10,140  -->  00:00:11,970
Now, this time as we go through it,
7

7

00:00:11,970  -->  00:00:14,370
we're going to dive much deeper into this architecture
8

8

00:00:14,370  -->  00:00:15,203
that we're going to use
9

9

00:00:15,203  -->  00:00:17,880
to be able to create this segmentation for our networks.
10

10

00:00:17,880  -->  00:00:19,230
Now, throughout this section,
11

11

00:00:19,230  -->  00:00:21,930
we're going to be focused on domain one, security operations,
12

12

00:00:21,930  -->  00:00:24,480
and domain two, vulnerability management.
13

13

00:00:24,480  -->  00:00:29,220
Specifically looking at objectives 1.1, 1.4, and 2.5.
14

14

00:00:29,220  -->  00:00:30,780
Objective 1.1 states,
15

15

00:00:30,780  -->  00:00:32,880
that you must be able to explain the importance of system
16

16

00:00:32,880  -->  00:00:35,970
and network architecture concepts in security operations.
17

17

00:00:35,970  -->  00:00:38,910
But our focus here is going to be on the segmentation
18

18

00:00:38,910  -->  00:00:41,820
and network architecture portions of this objective.
19

19

00:00:41,820  -->  00:00:44,520
Objective 1.4 states that you must be able to compare
20

20

00:00:44,520  -->  00:00:45,930
and contrast threat intelligence
21

21

00:00:45,930  -->  00:00:47,670
and threat hunting concepts.
22

22

00:00:47,670  -->  00:00:49,590
Here we're going to be specifically focused
23

23

00:00:49,590  -->  00:00:51,780
on the idea of honeypots and active defenses
24

24

00:00:51,780  -->  00:00:54,270
that are being listed underneath this objective.
25

25

00:00:54,270  -->  00:00:56,760
And we also have objective 2.5, which states
26

26

00:00:56,760  -->  00:00:57,900
that you must be able to explain
27

27

00:00:57,900  -->  00:01:00,000
concepts related to vulnerability response,
28

28

00:01:00,000  -->  00:01:01,350
handling, and management.
29

29

00:01:01,350  -->  00:01:02,970
And our focus under this objective
30

30

00:01:02,970  -->  00:01:05,430
is going to be on asset and change management.
31

31

00:01:05,430  -->  00:01:07,980
So in this section of the course, we're going to start out
32

32

00:01:07,980  -->  00:01:11,040
by discussing the importance of asset and change management.
33

33

00:01:11,040  -->  00:01:12,540
Then we're going to be discussing
34

34

00:01:12,540  -->  00:01:14,820
the basic architecture of our networks.
35

35

00:01:14,820  -->  00:01:17,220
Next, we're going to dive into segmentation,
36

36

00:01:17,220  -->  00:01:20,460
jumpboxes, virtualization, virtualized infrastructure,
37

37

00:01:20,460  -->  00:01:22,170
and the use of honeypots.
38

38

00:01:22,170  -->  00:01:24,900
Then we're going to discuss the concept of zero trust
39

39

00:01:24,900  -->  00:01:27,540
which is a security framework that requires all users
40

40

00:01:27,540  -->  00:01:30,180
whether inside or outside of your organization's network
41

41

00:01:30,180  -->  00:01:33,480
to be authenticated, authorized, and continuously validated
42

42

00:01:33,480  -->  00:01:35,550
for their security configuration and posture
43

43

00:01:35,550  -->  00:01:37,500
before being granted or keeping access
44

44

00:01:37,500  -->  00:01:39,120
to applications and data.
45

45

00:01:39,120  -->  00:01:41,370
Now after that, I'm going to perform a demonstration
46

46

00:01:41,370  -->  00:01:43,500
to show you how to configure network segmentation
47

47

00:01:43,500  -->  00:01:46,380
and security within your own enterprise networks.
48

48

00:01:46,380  -->  00:01:48,360
And finally, we're going to take a short quiz to see
49

49

00:01:48,360  -->  00:01:50,160
what you learned during this section of the course,
50

50

00:01:50,160  -->  00:01:51,930
and help you review those quiz questions
51

51

00:01:51,930  -->  00:01:52,950
to make sure you can explain
52

52

00:01:52,950  -->  00:01:54,690
why the right answers were right.
53

53

00:01:54,690  -->  00:01:56,880
So let's start exploring network architecture
54

54

00:01:56,880  -->  00:01:59,230
and segmentation in this section of the course.
