• [Day 114] Cisco ISE Mastery Training: AMP for Endpoints Threat Mitigation

    [Day 114] Cisco ISE Mastery Training: AMP for Endpoints Threat Mitigation

    Introduction Welcome to Day 114 of the Cisco ISE Mastery Training Series, where we take a hard, uncompromising look at one of the most critical integrations in modern enterprise security:Cisco ISE + Cisco AMP (Secure Endpoint) for advanced threat mitigation. Why does this matter? Because […]

  • [Day 113] Cisco ISE Mastery Training: Integration with Cisco Umbrella

    [Day 113] Cisco ISE Mastery Training: Integration with Cisco Umbrella

    Introduction In modern enterprise networks, visibility and control stop at the perimeter if identity and DNS security are not tightly integrated. Cisco Identity Services Engine (ISE) provides context-rich, identity-based access control inside your network, but what happens once the user leaves the enterprise perimeter or […]

  • [Day 112] Cisco ISE Mastery Training: FMC Automation via pxGrid

    [Day 112] Cisco ISE Mastery Training: FMC Automation via pxGrid

    Introduction Welcome to Day 112 of the Cisco ISE Mastery Training, where we step into one of the most advanced integrations in the modern Zero-Trust ecosystem — FMC (Firepower Management Center) Automation via pxGrid. In today’s cyber battlefield, time is your greatest enemy. A malware-infected […]

  • [Day 111] Cisco ISE Mastery Training: Cisco FTD Advanced Enforcement

    [Day 111] Cisco ISE Mastery Training: Cisco FTD Advanced Enforcement

    Introduction In modern enterprise security, the days of static firewalls and isolated NAC enforcement are long gone. Today’s threats are adaptive, user devices are mobile, and applications live everywhere — from on-premises data centers to SaaS platforms. This demands dynamic, context-aware enforcement, where security decisions […]

  • [Day 89] Cisco ISE Mastery Training: Integrating with Splunk

    [Day 89] Cisco ISE Mastery Training: Integrating with Splunk

    Introduction Splunk turns your ISE telemetry into searchable, actionable security context. With integration done right, your SOC can pivot from “What just authenticated?” to “Who, from where, with what posture, and what did we do about it?”—in seconds. In this masterclass you’ll build a production-style […]

  • [Day 88] Cisco ISE Mastery Training: Automating Endpoint Management via API

    [Day 88] Cisco ISE Mastery Training: Automating Endpoint Management via API

    Introduction “Today we’ll turn endpoint management in ISE into code. We’ll automate the full lifecycle of endpoints (MAC identities): create, search, update, move between Endpoint Identity Groups, tag with custom attributes, trigger ANC quarantine, force reauth/CoA, and bulk-import MACs from CSV. We’ll verify every API […]

  • [Day 87] Cisco ISE Mastery Training: Automating User Creation via API

    [Day 87] Cisco ISE Mastery Training: Automating User Creation via API

    Introduction “Today we’ll automate Internal User lifecycle in Cisco ISE using ERS (External RESTful Services) API and validate authentications with MnT and NAD CLI. You’ll build single-user and bulk (CSV) workflows, enforce identity groups, password policy, and prove end-to-end RADIUS success in logs and on […]

  • [Day 50] Cisco ISE Mastery Training: Wireless Profiling & Endpoint Classification

    [Day 50] Cisco ISE Mastery Training: Wireless Profiling & Endpoint Classification

    Introduction Wireless profiling in Cisco ISE fingerprints devices (OS, vendor, type) and classifies them so your authorization rules can apply the right VLAN/dACL/SGT automatically. Today you’ll enable profiler probes, wire them to a 9800-CL WLC, build custom profiling policies, and finally enforce access based on […]

  • [Day 48] Cisco ISE Mastery Training: BYOD Wireless Onboarding Overview

    [Day 48] Cisco ISE Mastery Training: BYOD Wireless Onboarding Overview

    Introduction BYOD wireless onboarding in Cisco ISE delivers a secure, automated way to move unmanaged personal devices onto enterprise Wi-Fi using identity + certificates. Instead of static PSKs or manual Mac-whitelists, ISE provisions per-device EAP-TLS certificates, installs OS-native Wi-Fi profiles, enforces device limits & expiries, […]

  • [Day 49] Cisco ISE Mastery Training: Configuring BYOD Portal in ISE

    [Day 49] Cisco ISE Mastery Training: Configuring BYOD Portal in ISE

    Introduction The BYOD Portal in Cisco ISE converts unmanaged personal devices into identity-bound, certificate-based endpoints that can safely use enterprise Wi-Fi. The portal handles user authentication, device registration, supplicant/profile install, and certificate issuance (via SCEP/NDES), then flips the session to EAP-TLS with correct VLAN/dACL—hands-off for […]