Sdsi
Sdsi
0 (300-745)
Exam Description: Designing Cisco Security Infrastructure v1.0 (SDSI 300- 745) is a 90-minute exam
associated with the CCNP Security Certification. This exam tests a candidate's knowledge of security
architecture design, including secure infrastructure, applications, risk, events, requirements, artificial
intelligence, automation, and DevSecOps. The course, Designing Cisco Security Infrastructure, helps
candidates to prepare for this exam.
The following topics are general guidelines for the content likely to be included on the exam. However,
other related topics may also appear on any specific delivery of the exam. To better reflect the contents
of the exam and for clarity purposes, the guidelines below may change at any time without notice.
1.3 Select a VPN and tunneling solution such as SD-WAN, IPsec, MPLS, GRE, DMVPN, and
public cloud tunnel options based on business and technical requirements
1.4 Select the approach to secure the infrastructure management and control planes
1.5 Select the firewall feature or architecture such as traditional firewall, Nextgen firewall,
Web Application Firewall, IPS/IDS, distributed firewall, eBPF, and host-based firewall
given business and technical requirements
Cisco Confidential
3.3 Modify a security design following an incident
3.4 Describe the use of frameworks such as MITRE CAPEC, NIST SP 800-37, and SAFE in the
lifecycle of a security design
3.5 Match the regulatory and industry compliance document to a given business or
technical scenario
Cisco Confidential