Exam Profile: CCNA Security IINS 640-554

Date: Jun 22, 2012

Return to the article

This article profiles the Cisco CCNA Security IINS 640-554 exam. Pearson IT Certification provides a variety of exam preparation tools to help our customers in their quest for certification. As part of our service to you, we have developed this Exam Profile series. Each profile is developed based on the testing experience of one of our trainers or authors. You won’t get exact questions or answers, but you will get a real feel for the exam. Each profile describes question forms, trouble spots, hints for exam preparation, and recommendations for additional study resources. Find out what you can expect to see on the exam and how you can better prepare for it.

The Cisco 640-554 Implementing Cisco IOS Network Security (IINSv2) exam is required for certification as a Cisco Certified Network Associate Security (CCNA Security). This exam will test your knowledge across a wide range of security products and techniques including the ASA firewall and security features on IOS routers and switches.

Exam Details

Trouble spots

Trouble spots

Time management is likely the biggest challenge for a prepared candidate. This is because within several of the questions, such as simulations, there may be several additional sub-questions that you need to answer before moving on to the next full question. This exam does not allow you to skip a question and review it later, and it is tempting to spend too much time on a single question or simulation.

For those who are not familiar with navigating the graphical user interfaces (GUI) of Cisco configuration professional (CCP) and the ASA security device manager (ASDM), it would be easy to burn a lot of time on any one of these simlets/simulations. Speed, regarding using the GUI is required to:

There are also challenges waiting for the unprepared candidate in these areas:

All of the above content is covered in the new Cisco Press CCNA Security IINSv2 640-554 Official Cert Guide.

Preparation hints

Preparation hints

Probably the most significant first thing you should do is to learn this content with the intention of being able to teach it to someone else (regardless if you need to teach it or not). By studying with the intent of having to teach it to another, you will learn it more effectively, in less time, and be less likely to skim over content. This will assist you in your studies to really understand the content.

You should practice virtually everything that you study, both at the CLI and the GUI. If the topic is port security, you should practice implementing port security. If the topic is Cisco Configuration Professional (CCP), you should practice using and navigating CCP as you study. The same is true for ASDM, ACS, and the other topics covered. Much of the router IOS security can be practiced using live gear or GNS3, and this includes using CCP after you have logically integrated your PC or a virtual PC with the GNS3 environment. There are dozens of videos that explain how to do this integration, including some instructional videos on my YouTube channel Keith6783. A direct link to that channel is here.

For practice with TACACS+ and RADIUS using the Access Control Server software, ACS, Cisco offers an evaluation license that may be used for practice. Even with the evaluation license, you will need some type of virtualized environment, such as VMware’s ESXi (which is free) to run the ACS on.

Regarding the ASA firewall, emulation hasn’t been too successful (in the general public) for the most current version of the ASA (version 8.4x), and as a result it is likely that you will want to either rent rack time, or purchase a low-end ASA (5505 with base license) that runs at least 8.4 version of the software. For layer 2 switch security, live hardware, rented hardware or an emulator program would be needed for practice.

Resources

Resources

The most cost effective approach would be to use the Cisco Press CCNA Security IINSv2 640-554 Official Cert Guide, which is written by Keith Barker and Scott Morris (I admit, I am a little bias towards this book).

The Cisco Press 640-554 Official Cert Guide is streamlined and focuses on preparing a learner by explaining and demonstrating all the topics listed on the blueprint for the 640-554 exam. That blueprint can be seen on Cisco’s site by following this link. A account (free to set up and use) is required for access to the blue print.

Another training option would be to take the full IINSv2 course, offered by a Cisco authorized learning partner, where you would have access to the official course material and labs for your studies.

Regardless of which content you use to study and prepare, an excellent free resource is the Cisco Learning Network, which has discussion groups and lots of people ready to jump in to answer questions regarding technologies and topics centered around Cisco certification and the associated technologies. The link for the Cisco Learning Network (CLN) is here.

Exam topics

Exam topics

Cisco routers and switches

Cisco firewall technologies

Intrusion Prevention System

VPN technologies

Where to go from here

Where to go from here

Once you have both your CCNA in routing/switching (which is the prerequisite for CCNA Security), and then taken and passed the CCNA Security as well, you will have a solid networking foundation to grow from. One possible next step would be to obtain an additional CCNA certification in Voice or Wireless. Other options include building upon current knowledge and continuing on to Cisco certified network professional certification (CCNP) in routing/switching or the CCNP for security. The path you choose may be influenced by your interest in a specific technology, or perhaps based on what your current job responsibilities and or goals are.

Thanks for reading, and may you have the best of success in realizing your goals.

800 East 96th Street, Indianapolis, Indiana 46240

sale-70-410-exam    | Exam-200-125-pdf    | we-sale-70-410-exam    | hot-sale-70-410-exam    | Latest-exam-700-603-Dumps    | Dumps-98-363-exams-date    | Certs-200-125-date    | Dumps-300-075-exams-date    | hot-sale-book-C8010-726-book    | Hot-Sale-200-310-Exam    | Exam-Description-200-310-dumps?    | hot-sale-book-200-125-book    | Latest-Updated-300-209-Exam    | Dumps-210-260-exams-date    | Download-200-125-Exam-PDF    | Exam-Description-300-101-dumps    | Certs-300-101-date    | Hot-Sale-300-075-Exam    | Latest-exam-200-125-Dumps    | Exam-Description-200-125-dumps    | Latest-Updated-300-075-Exam    | hot-sale-book-210-260-book    | Dumps-200-901-exams-date    | Certs-200-901-date    | Latest-exam-1Z0-062-Dumps    | Hot-Sale-1Z0-062-Exam    | Certs-CSSLP-date    | 100%-Pass-70-383-Exams    | Latest-JN0-360-real-exam-questions    | 100%-Pass-4A0-100-Real-Exam-Questions    | Dumps-300-135-exams-date    | Passed-200-105-Tech-Exams    | Latest-Updated-200-310-Exam    | Download-300-070-Exam-PDF    | Hot-Sale-JN0-360-Exam    | 100%-Pass-JN0-360-Exams    | 100%-Pass-JN0-360-Real-Exam-Questions    | Dumps-JN0-360-exams-date    | Exam-Description-1Z0-876-dumps    | Latest-exam-1Z0-876-Dumps    | Dumps-HPE0-Y53-exams-date    | 2017-Latest-HPE0-Y53-Exam    | 100%-Pass-HPE0-Y53-Real-Exam-Questions    | Pass-4A0-100-Exam    | Latest-4A0-100-Questions    | Dumps-98-365-exams-date    | 2017-Latest-98-365-Exam    | 100%-Pass-VCS-254-Exams    | 2017-Latest-VCS-273-Exam    | Dumps-200-355-exams-date    | 2017-Latest-300-320-Exam    | Pass-300-101-Exam    | 100%-Pass-300-115-Exams    |
http://www.portvapes.co.uk/    | http://www.portvapes.co.uk/    |