
Deploy a checkpoint cloud firewall as a network virtual appliance to secure cloud workloads. Enable outbound internet security, micro-segmentation, and dynamic security policies for web applications.
Discover why organizations move to cloud by lifting and shifting workloads, moving fast, reducing costs, scaling on demand, and avoiding overprovisioning, all while prioritizing cloud security.
Cloud enables rapid, self-service automation, but you must build your own defense line in the cloud—firewalls, IPS, proxies, load balancers, and SSL termination—to protect your applications and data.
Define the cloud shared security model, showing how cloud provider handles the security of the cloud—physical, host, network—while customers own applications, data, and identity and access management.
Integrate cloud-native security that adapts to dynamic workloads and automation, using cloud provider tools for scalable, policy-driven protection that observes security groups and tags for visibility.
Discover how CloudGuard for Azure secures cloud connectivity with stateful inspection and application awareness. Manage policies from a central smart center and controller, using tags to adapt to dynamic workloads.
Understand azure virtual network basics, including subnets, private ip addressing, and default connectivity; learn routing, network security groups, and connectivity options like ipsec vpn, expressroute, and vnet peering.
Explore how Azure virtual network routing manages pathways between subnets and the internet. Learn how system routes, custom user defined routes, and route tables set priorities to control traffic.
Explore Azure virtual network peering to connect isolated vnets over a private backbone, enabling private IP connectivity and testing cross-vnet access, with non-overlapping IP ranges and no transitive routing.
Explore cloud gateway architecture with a single gateway template, external and internal interfaces, UDR-based routing, traffic inspection, policy enforcement, and app publication via cloud firewall IP.
Analyze how CloudGuard single gateway manages inbound from the internet through an external load balancer, outbound via user-defined routes and firewall policies, and east-west traffic between subnets in Azure.
Propel cloud guard gateway to high availability with active and standby cluster members, using health probes and load balancers to ensure seamless vpn failover and east-west security.
Explore how traffic flows through Cloud Guard gateway in Azure, covering inbound/outbound paths via external and internal load balancers, virtual IPs, UDL routes, and east-west subnet policy.
Learn how to deploy and scale Check Point CloudGuard VMSS gateways in Azure, connecting external and internal interfaces, using load balancers, and managing dynamic workload in the cloud.
Understand how traffic flows through CloudGuard VMSS gateway in Azure, from internet users to internal web servers via external load balancer and source net.
Create a virtual network with web and database subnets, a jump server, and network security groups, then publish the web app to internet via a public IP and DNS record.
Demonstrates a SQL injection attack to bypass authentication and gain access with fake credentials. Shows how an attacker creates an admin user and exposes login credentials in the shopping database.
deploy the Check Point Cloud Guard firewall in Azure, setting up a management server and gateway across subnets with a public IP, and enable threat prevention and application control.
Explain how Check Point CloudGuard Firewall is deployed in Azure, configures external and internal zones, and enforces security and threat prevention policies to protect a web application.
Learn how to publish multiple web applications behind a Check Point CloudGuard firewall using an Azure native load balancer, inbound NAT rules, and unique public IPs for each app.
Configure outbound internet security for Azure workloads using checkpoint cloud gateway, enabling automatic address translation and application control with URL filtering to allow only approved apps while blocking others.
Learn to secure east-west traffic in Azure by routing inter-subnet traffic through a Check Point firewall, configuring custom route tables, and enforcing SQL traffic rules between web and database subnets.
Explore how checkpoint cloud controller enables dynamic security policy by automatically updating firewall policies from azure object attributes and tags for cloud workloads.
Every organization is moving to cloud. There is a significant increase in cloud migration during the COVID pandemic situation because every organization wants their work force to work remotely. Public cloud providers are helping organization at every shape to continue their business in this pandemic situation.
While moving to public cloud, security is still one of the main concern for organization because they are moving from a full controlled environment to Shared responsibility model.
In on premise network, security was the responsibility of corporate security team, but in cloud due to the overlapping roles, now security is not just the responsibility of corporate security team.
Infrastructure team who create and maintain the cloud infra and Application team or DevOps team who deploy application to cloud infra is equally responsible for cloud security.
Which means understanding security in cloud is not just important for security team, It is also important for cloud admins and DevOps team.
In cloud, security controls are primarily comes from cloud native tools.
These native controls are good to start with but they provide limited visibility and control. For example - Azure Network security group is very good at access control level but it can't do deep packet inspection and understand the network communication at application layer.
This is where you need a dedicated security solution. Now, Azure Market place offers multiple dedicated network solutions and Check Point is one of them.
Check Point is an Israel based security company and it is one of the oldest security company exists from last 25 years. They are the one who invented the stateful firewall technology.
Check Point has evolved very quickly to adopted cloud and it integrates well with almost all major public cloud vendors like - Azure, AWS, GCP, Oracle, Alibaba etc.
In this course we will learn how to design, implement and operate Check Point Cloud Firewall in Azure Cloud. This is a hands on course and it assumes that students has basic knowledge of Azure and Network Firewall.