
Discover the Kaspersky security architecture, including Kaspersky Security Center, network agents, and endpoint protection, plus how groups, policies, and tasks enable centralized management and licensing options.
Master prerequisites and hardware and software requirements for installing Kaspersky Security Center on Windows, Linux, or cloud, and choose databases like SQL Server, MariaDB, or Postgres.
Install the Kaspersky Security Center on a management machine, configure prerequisites (net framework 3.5 and 4.0), install sql express, and deploy the full administration and web consoles.
Configure the quick wizard for the MSI and web consoles, set proxy and activation code or key file, install plugins, and prepare updates from Kaspersky Update Servers.
Configure device discovery in Kaspersky Security Center using network polling, Active Directory polling, and IP range polling to detect devices and move them into groups.
Master deploying Kaspersky Endpoint Security for Business on Giant Lab clients using network agent, remote and offline installation packages. Understand prerequisites, ports, and firewall rules.
Create and manage tasks and policies in Kaspersky Security Center to apply operations and enforce restrictions for Kaspersky Endpoint Security for Windows and Kaspersky Network Agent.
Explore the main components of kaspersky endpoint security for business, including protection module, control, encryption, and CSN threat intelligence, and learn how they defend against malware, ransomware, and network threats.
Configure file threat protection in kaspersky endpoint security for business using signature databases, heuristic analysis, and csun checks to classify and block malicious files.
Configure web threat protection and mail threat protection to block phishing and malware across http, https, ftp, and mail traffic, including encrypted traffic via SSL interception and trusted addresses.
Explore how the firewall in Kaspersky Endpoint Security for Windows controls inbound and outbound connections. Understand network packet rules, IPS integration, and default trusted, local, and public classifications.
Explore how network threat protection defends against network attacks, including exploit prevention and network attack prevention, open ports, port scanning, and network flooding, with exclusions and mac spoofing protection.
Explore advanced threat protection with behavior detection, exploit prevention, and host intrusion prevention, powered by Kaspersky Security Network to block, delete, or log malware activity.
Enable and configure application control within security controls to reduce attack surface. Create categories and deny or allow rules using manual, folder-based, or device-based methods to block or permit apps.
Configure device control to apply storage restrictions on storage components (hard drives, removable drives, floppy, CD/DVD) with read/write rules and schedules, and blocking restrictions for peripherals and buses.
Learn to configure web control in Kaspersky Security Center by creating rules based on categories and file types, applying addresses, and setting allow or block actions to regulate web traffic.
Learn how Kaspersky endpoint security enables data at rest encryption, including full disk encryption, file level encryption, and BitLocker management, via the authentication agent and administration server.
Explore how Kaspersky Endpoint Security manages BitLocker drive encryption on Windows, including enabling BitLocker, configuring authentication methods, monitoring encryption, and recovering via the administration server.
Configure file level encryption in Kaspersky by applying predefined or custom folder and extension rules, using user, primary, and file keys with authentication required for decryption.
Explore final administrative activities to configure Kaspersky endpoint security policies, inheritance rules, event logging, threat protection components, data encryption, local task controls, scanning, interface settings, and password protection.
Configure Kaspersky Endpoint Security for business policies, including policy status, inheritance, event levels, and notifications, to securely manage threat protection, encryption, and local tasks across endpoints.
Learn how Kaspersky Security Center for system management discovers client vulnerabilities. It syncs with Microsoft Update servers, automates patch management, and remotely deploys updates and third-party applications across devices.
This overview introduces Kaspersky hybrid cloud security via light agent for virtualization, outlining protection server (SVM), shared cache, and communication with light agents in VMware vSphere environments.
Download CSV components, install management components, and set up the integration server and Lite agents. Deploy SVM on VMware ESXi via VMware vCenter, configure IPs, and push to virtual infrastructure.
Configure tasks in Kaspersky Hybrid Cloud Security, pushing lite and network agents to ESXi VMs and activating licenses. Create protection server tasks for the SVM, update databases, and manage deployments.
Configure the protection server policy for the SVM in a virtualization environment (ESXi/vCenter), enabling connection to the integration server, light agents, updates, and Kaspersky Security Network settings.
Create and apply a light agent policy to enable application startup and privilege controls, device and web control, antivirus protection, and system integrity monitoring, plus VM discovery and interface settings.
Configure the light agent policy in the Kaspersky Security Center for Windows 10 VMs, covering endpoint control, startup and privilege rules, web control, and system integrity monitoring.
Install and configure the Kaspersky network agent and light agent on Ubuntu Linux, transfer packages locally, and apply a Linux policy in Kaspersky Security Center.
Explore Kaspersky Endpoint Detection and Response Optimum, extending endpoint protection with threat visibility, root-cause analysis, isolation, and automated response, plus installation and web console enablement.
Learn to configure the web console in Kaspersky for business by creating an alerts widget, enabling show EDR alerts, and using reports on threats to surface open incidents for analysts.
Explore how enriched detection events use endpoint detection and response (EDR) optimum to link alerts into an investigation, contrasting enrichment with basic events and guiding actions like isolation and prevention.
Learn to analyze EDR detections to identify starting points, file behavior, and network connections, then apply containment actions—isolation, execution prevention, and quarantine—while using IOC and EOC techniques.
In This Course Student Will Learn The Main Features Of KSC & KES By Working On Giant Lab Which simulates a real world organization integrated with multiple vendors security solutions .
First course will be about kaspersky endpoint security for windows -> First section will be an introduction to KSC and KES via a mini-book describing all the things will be explained in the labs sections , Second section will be the installation process of both KSC and KES via local method and remote method , Third section will be about the needed tasks after the installation finsihed , Fourth section will be about configuring the policy and discovering it's main features , Fifth section will be a quick example of penetration testing using kali linux on our machines have KES installed on them , Lastly some reports and monitoring techniques . With this course , student will be able to install KES via KSC ( MMC Console ) and configure the proper security rules on firewalls on it's path which happens in each real world environment .
Second course will about kaspersky hybrid cloud security for virtualization . During This Course Student Will Able To Define The Main Features Of Kaspersky Hybrid Cloud Security For Virtualization , See The Main Components Of Solution ( Integration Server , Protection Server "SVM" , Light Agent , Network Agent ) , Differentiate Between Light Agent & Agentless . Why We Choose Light Agent ! , Install Kaspersky Hybrid Cloud Security For Virtual Environments ( KSC , vCenter , Protection Sever , Pushing Light Agent To Windows Machines ) , Configuring The Main Policies Of SVM And Light Agents And See The Main Components And Feature Of Each Policy , Configuring The Main Needed Tasks For Each Application , Comparing Kaspersky Light Agent With Kaspersky Endpoint Security For Windows , What's The Difference Between Both , Launching A Quick Pen Testing On Our Device Has Kaspersky Light Agent On it And See It Will Defend Against Some Attacks And Malwares and See How To Monitor What Happened From Kaspersky Security Center .
Third course will about configuring EDR optimum with KES for windows . During This Course Student will be able to install Kaspersky Endpoint Detection & Response Optimum and dicover it's main features . Endpoint Protection Platform will be compared to endpoint detection and response and the main advantages of the last will be discovered .Endpoint detection and response optimum is a solution consisting of two main applications ( endpoint agent & kaspersky endpoint security "below version 11.6" or kaspersky hybrid cloud or kaspersky for windows server ) .In new versions of kaspersky endpoint security form version 11.7 and above , endpoint agent became part of the platform and user doesn't have to install both applications seperately and intergrate between them .During this course we will use kaspersky security center "Web console" since we are using EDR and results will not be shown except in web console .We will also see how to install the solution via the two methods ( Change application components OR Edit the application settings directly ) .Then we will discover all the features of EDR optimum like discovering all the files , network connections , registery that threat can create on the machine .Responses also will be discussed like ( Host isolation ; to completely isolate the pc from the network .. Execution prevention ;to prevent the execution of the threat form begining .. IOC Scan ; To search for specific md5 hash on other pcs in the network ..
Finally , there is a whole section about kaspersky for windows server , made specially to target needs for windows server services without affecting it's needed services .