We will compare CCIE Security v5.0 and CCIE Security v6.0. We will see how Cisco will make changes to the upcoming exam until February 24, 2020.
What is CCIE Security v5.0?
The Cisco Certified Internetwork Expert Security (CCIE Security) program is designed for security experts who have the knowledge and skills to implement and maintain Network Security Solutions by using industry best practices. Architects and Engineers are taught to implement, troubleshoot and support Cisco Security Solutions and Technologies. They learn to protect security systems against threats, risks, requirements, and vulnerabilities.
What is CCIE Security v6.0?
The new CCIE Security v6.0 Certification program is designed to prepare candidates for expert-level job roles in security technologies and distinguishes them as a technical leader. CCIE Security v6.0 includes automation and programmability. The CCIE Security Exam covers Core Security Technologies along with handling the entire network from designing and deploying to operating and troubleshooting.
Pre-requisites for CCIE Security v5.0 and CCIE Security v6.0
Exam Topics of CCIE Security v5.0
Written Exam and Lab Exam
Exam Topics for New CCIE Security v6.0
Implementing and Operating Cisco Security Core Technologies (SCOR 300-701) – Written Exam
CCIE Security v6.0 Lab Exam
Exam Pattern – CCIE Security v5.0
Step 1: 400-251 CCIE Security Written Exam
The CCIE Security v5.0 Written Exam is designed for expert-level candidates who can implement, troubleshoot, and support Cisco Security Solutions and Technologies. Candidates are taught to follow the latest industry practices to secure systems and environments against risks, threats, vulnerabilities, and requirements.
Topics Include Network Functionality, Security Related Concepts, Security Technologies, and Security Products and Solutions in Policy Management, Device Hardening, Next Generation Intrusion Prevention, Next Generation Firewall, Malware Protection, and Identity Services.
It also includes technologies like Network Programmability, Cloud and Internet of Things (IoT).
Step 2: CCIE Security Lab Exam v5.0
The Cisco CCIE Security Lab Exam v5.0 is a hands-on exam which requires the candidate to plan, design, implement, operate and troubleshoot complex security solutions. The candidate is required to diagnose and solve issues as a part of the CCIE Lab Exam.
Lab Exam Format
The Lab Exam consists of 3 Modules as follows:
Module 1: Troubleshooting Module – Troubleshooting Module involves modules which are independent of each other. The resolution of one incident does not depend upon the resolution of the other incident.
Module 2: Diagnostic Module – Diagnostic Module focuses on diagnosis network issues. The skills analyzed in this module are Analysing and Correlating.
The candidate needs to make choices between pre-defined options to either indicate:
What information is missing that allows you to determine the root cause?
What key information allows you to find out the root cause?
What is the problem in the picture?
What is the root cause of the problem?
Module 3: Configuration Module – The Configuration module consists of a production network which has various security components providing layers of security at different points. The candidates might have to work with various physical devices as well.
Exam Pattern – CCIE Security v6.0
Step 1: Implementing and Operating Cisco Security Core Technologies (SCOR 300-701)
Implementing and Operating Cisco Security Core Technologies (SCOR 300-701) is an exam associated with CCNP and CCIE Security Certifications. This exam tests the candidate’s knowledge to test and operate core security technologies like cloud security, network security, content security, endpoint protection, and detection, secure network access, visibility, and enforcement.
This exam focuses on the candidate’s knowledge about Data Center Infrastructure. It helps u gain the Specialist Certification which helps you gain recognition.
Step 2: CCIE Security v6.0 Lab Exam
It is an 8-hour exam which tests the candidates to design, deploy, operate and optimize complex network scenarios. It consists of 2 modules, viz,
Module 1: Design (3 hours)
A candidate is tested to create, analyze, validate and optimize network designs. Tasks are given below:
Understand technologies, solutions, and services
Convert customer requirements to solutions
Assess readiness to support proposed solutions
Module 2: Deploy Operate and Optimize (5 hours)
Deploy: All steps included in the Network Lifecycle from Configuring to Integrating to Troubleshooting the Technologies and Solutions
Operate and Optimize: This includes
Monitoring Network Health
Network Performance
Configure the network to improve service quality
Reduce Disruptions and Mitigate Outages
Reduce Operating Costs and Maintain High Availability
Reliability and Security
Diagnose Potential Issues and Adjust Configurations
CCIE Security v6.0 Equipment and Software List
Virtual Machines
Cisco Identity Services Engine (ISE): 2.2
Cisco Web Security Appliance (WSA): 9.2
Cisco Email Security Appliance (ESA): 11.1
Cisco Firepower Management Center Virtual Appliance: 6.2
Cisco Firepower NGIPSv: 6.2
Cisco Firepower Threat Defense: 6.2
Cisco Adaptive Security Virtual Appliance (ASAv): 9.4(3)
Cisco CSR 1000V Series Cloud Services Router: 16.6.3
Cisco StealthWatch SMC-FC: 6.10
Cisco FireAMP Cloud: 5.8
Cisco DNA Center: 1.2
Cisco Wireless Controller (WLC): 8.3
L2IOSv: 15.2
Physical Equipment
Cisco Adaptive Security Appliance: ASA5512: 9.2
Cisco Adaptive Security Appliance: ASA5516: 9.8
Cisco Catalyst Switch: C3650: 16.6
Cisco Catalyst Switch: C3850: 3.7
Cisco Wireless Access Point: AP1852: 8.3
Other
Test PC: Microsoft Windows 7 Professional
AD/DNS: Windows Windows Server 2008 R2
Linux Kali: 4.17
Cisco Anyconnect: 4.2
How to re-certify CCIE Security?
Recertification is now valid for 3 years.
The Recertification Updates include the following:
All certifications will have a 3 years deadline
The Continuing Education Program is now applicable to CCNA, Specialist CCNP and CCIE.
Migration from CCIE Security v5.0 to CCIE Security v6.0
On February 24, 2020, the new CCIE Security Certification v5.0 will be replaced by v6.0
If the candidate has started studying for the CCIE Security Certification then they may continue for the same, as they will receive credits for the work they have completed in the current certification.
If candidates pass the current CCIE Security v5.0 Written Exam before February 24, 2020, then they will be eligible to take the CCIE Security Lab Exam v6.0 post-February 24, 2020.
SCOR 300-701 will replace CCIE Security v5.0 post-February 24, 2020. SCOR 300-701 will give the candidate the Cisco Certified Specialist – Security Core Certification.
If the candidate completes both CCIE Written Exam and CCIE Lab Exam before February 24, 2020, then he/she can maintain the CCIE Security Certification Status and he will also receive the Cisco Certified Specialist – Security Core Certification.
All the above changes will be applicable from February 24, 2020. Candidates who have begun with the older version can continue with the same and complete the ongoing certification by 23 February 2020. The candidates who haven’t yet started studying for the exam may directly prepare for the new version. if you have any questions, and you can click here: