Network Security with Palo Alto | Ingress Academy
Create account & apply
NETWORK SECURITY & ETHICAL HACKING · EXPERT LEVEL

Network Security with Palo Alto

This comprehensive course is designed for IT professionals, Network and Cybersecurity engineers looking to deepen their expertise in network security and Palo Alto NGFW based on legacy PCNSA/PCNSE certifications. Through hands-on labs, in-depth lessons, and practical exercises, participants will gain a robust understanding of Network Security principles and how to use Palo Alto Next Generation Firewall to protect their network and securely improve its functionality. By the end of the course, participants will be equipped to gain knowledge related to network security, configure and optimize Palo Alto from scratch according to best practices, troubleshoot and resolve network and security problems.

Expert12 weeks48 hoursOn-site
Your selected course will be carried into Ingress Portal.
CONDENSED SYLLABUS

See the structure without reading a textbook.

Modules stay collapsed for quick scanning. Open any module to inspect its topics.

01Introduction and Basic Concepts4 lessons+

Information and Network Security Basics (standards, terminology)

Next-Generation Firewall (NGFW)

Palo Alto Networks Security Platform Overview

NGFW Core Components and Deployment Architecture

02Initial Setup and Interfaces3 lessons+

Management Interfaces (GUI, CLI, API)

Initial Setup Wizard and Licensing

Interface Types and Zone-Based Architecture

03Routing and Network Configuration5 lessons+

Static Routing

Virtual Routers

Dynamic Routing (OSPF, BGP)

Routing Troubleshooting Tools

Lab: Static Route, OSPF, and BGP Configurations

04Security Policies and App-ID4 lessons+

Security Policy Rules

Application Identification (App-ID)

App-ID Use Cases

Lab: App-ID Based Policy Configuration

05User-ID and Access Control4 lessons+

User-ID Concepts

User Mapping Techniques

Policy Enforcement with User-ID

Lab: User-ID Configuration and Testing

06NAT and Policy-Based Forwarding4 lessons+

Source and Destination NAT

Static vs Dynamic NAT

Policy-Based Forwarding (PBF)

Lab: NAT and PBF Scenarios

07Objects and Tags4 lessons+

Address and Service Objects

Dynamic Address Groups

Tags and Usage in Policies

Lab: Using Tags and Dynamic Groups

08Decryption and SSL/TLS Inspection4 lessons+

Importance of Decryption

SSL Forward Proxy & Inbound Inspection

Certificate Management

Lab: SSL Decryption Setup

09Advanced Threat Prevention4 lessons+

Antivirus, Anti-Spyware, Vulnerability Protection

File Blocking

URL Filtering

Lab: Threat Prevention Configuration

10WildFire and Cloud Threat Analysis4 lessons+

WildFire Overview

File Analysis Flow

Security Policy Integration

Lab: WildFire Monitoring

11Logging, Monitoring and Reporting4 lessons+

Log Types and Filtering

Application Command Center (ACC)

Custom Reports

Lab: Logs and ACC Troubleshooting

12High Availability (HA)4 lessons+

HA Modes and Concepts

Configuration and Synchronization

Failover Testing

Lab: HA Setup

13GlobalProtect (Remote Access VPN)4 lessons+

GlobalProtect Overview and Modes

Authentication, Portals, and Gateways

Split Tunneling and HIP Profiles

Lab: GlobalProtect Setup

14Site-to-Site VPN (IPSec)4 lessons+

IPSec Architecture and Crypto Profiles

Tunnel Interfaces and Routing

VPN Troubleshooting

Lab: IPSec Tunnel Configuration

15Best Practices and Real-World Scenarios4 lessons+

Security Best Practices

Zero Trust Architecture

Common Pitfalls and Fixes

Lab: Real-World Scenario Implementation

16Final LAB (Capstone Project)3 lessons+

Core Service Configuration (Routing, NAT, Policies)

User-ID, GlobalProtect, Threat Prevention

End-to-End Traffic Simulation and Monitoring

UPCOMING GROUPS

Choose the cohort you can actually attend.

Only current, open groups are shown.

STARTS

To be announced

On-site
Schedule
To be announced
Format
On-site
Duration
12 weeks · 48 hours
Language
Confirm with advisor
Join the next cohort waitlist
YOUR INSTRUCTOR TEAM

Specialists matched to the modules they teach.

Course delivery is supported by practitioners across engineering, architecture and production backend development.

SS

Sanan Shukurov

Banking Systems SecurityRabitabank
CONTEXTUAL PROOF
“The program helped me connect individual skills into the way real teams design, build and deliver software.”

See real graduate stories from the Ingress community.

Explore graduate results
APPLICATION THROUGH INGRESS PORTAL

Your course stays selected while you create your account.

We use one Portal account for applications, assessments and future learning progress. You will not need to email your details or select the training again.

Questions first? Talk to an advisor
  1. 01

    Create or sign in to your Portal accountYour contact details stay connected to one student profile.

  2. 02

    Confirm your application detailsNetwork Security with Palo Alto is preselected.

  3. 03

    Submit your applicationThe admissions team receives it immediately and can follow up from the Portal.

SELECTED TRAININGNetwork Security with Palo AltoOn-site

Continue in Ingress Portal Already registered? The Portal will let you sign in instead.