Program details
Curriculum and delivery details
Scroll tables horizontally to view all columns.
Network Security / Next-Generation Firewalls
This private bootcamp introduces the security architecture, operational concepts, and practical design considerations behind modern network security and Next-Generation Firewalls. It is intended for companies that need teams to understand how firewalls have evolved beyond port-and-protocol filtering into platforms that combine application visibility, user awareness, intrusion prevention, malware controls, segmentation, logging, and policy governance.
Why this training matters for companies
Organizations rely on network security controls to reduce exposure, enforce access boundaries, support compliance expectations, and respond to increasingly sophisticated threats. A well-trained team can create clearer firewall policies, avoid overly permissive rules, interpret security events more accurately, and align firewall operations with business risk.
- Helps engineering and operations teams understand the role of NGFWs in layered defense.
- Improves consistency in policy design, rule review, segmentation, and change control.
- Builds practical awareness of application control, IPS, URL filtering, identity-based policy, and encrypted traffic considerations.
- Supports better collaboration between network, security, and infrastructure teams.
- Provides a structured path for teams receiving training through Orhan Ergun without tying the course to a single vendor platform.
Who should attend
This bootcamp is suitable for network engineers, security engineers, firewall administrators, infrastructure operations teams, and technical leaders who need a clear understanding of how NGFW capabilities fit into enterprise and service-provider security environments.
Curriculum at a glance
Module | Focus | Practical emphasis |
|---|---|---|
Network security foundations | Threat models, security zones, traffic flows, policy intent, and defense-in-depth | Mapping business access needs to secure network controls |
Firewall evolution | Traditional firewalls, stateful inspection, and NGFW capabilities | Understanding when basic packet filtering is not enough |
NGFW policy design | Application control, user identity, service rules, objects, NAT, and rule ordering | Building readable, least-privilege policies and avoiding rule sprawl |
Advanced security services | IPS, anti-malware concepts, URL filtering, DNS security concepts, and TLS inspection considerations | Selecting controls based on risk, visibility, and operational impact |
Segmentation and architecture | Perimeter, data center, cloud edge, branch, remote access, and internal segmentation use cases | Designing firewall placement and zones for controlled access |
Operations and troubleshooting | Logging, monitoring, policy review, incident support, and common misconfigurations | Analyzing traffic behavior and improving firewall operations over time |
Training outline
Core concepts
Learners review how network security controls protect confidentiality, integrity, and availability across modern environments. The course explains the difference between packet-level controls, stateful inspection, and NGFW decision-making based on applications, users, content, and context.
Design and implementation thinking
The bootcamp focuses on how to translate security requirements into practical firewall architecture. Topics include zones, trust boundaries, rule hierarchy, NAT interactions, segmentation strategy, encrypted traffic visibility, and the operational trade-offs that come with stronger inspection.
Operational readiness
Participants learn how to approach logs, alerts, blocked traffic, false positives, and policy cleanup. The emphasis is on making firewall operations repeatable, auditable, and aligned with organizational risk rather than treating the firewall as a static device.
Effective NGFW training helps teams move from simply allowing or denying traffic to making informed security decisions based on application behavior, identity, content, and business context.
What your team will gain
- Design zone-based network security architectures using Next-Generation Firewall concepts
- Configure and review least-privilege firewall policies for applications, users, services, and traffic flows
- Analyze NGFW logs and security events to support troubleshooting and incident response
- Apply segmentation, NAT, IPS, URL filtering, and TLS inspection concepts in realistic environments
- Evaluate operational risks such as rule sprawl, misconfiguration, false positives, and excessive access
Recommended preparation
- Basic understanding of TCP/IP networking, routing, and common network services
- Familiarity with general firewall concepts or network operations is helpful
- Willingness to work through policy design, traffic analysis, and troubleshooting scenarios
