Implementing and Configuring Cisco Identity Services Engine (SISE)

Is your network access policy protecting your data—or blocking your users? Up to 70% of organizations say they lack full visibility into who’s accessing their systems—opening the door to both security risks and productivity gaps. The Implementing and Configuring Cisco Identity Services Engine (SISE) Training Course gives you the skills to fix that. You’ll learn to deploy Cisco ISE v3.x and enforce identity-based policies across wired, wireless, and VPN networks. Through expert instruction and hands-on labs, you’ll configure guest portals, BYOD onboarding, device profiling, posture checks, and TrustSec controls. This course also prepares you for the SISE v4.0 certification exam, helping you validate your expertise in Cisco ISE deployment, configuration, and troubleshooting as part of a Zero Trust strategy.

Description

Cisco ISE Architecture Overview

  • Understand the role of Cisco ISE in enterprise security
  • Review core components and capabilities of the ISE platform
  • Explore identity-based access control models and policy logic

Deploying Cisco ISE

  • Plan and configure initial Cisco ISE deployment
  • Navigate licensing options and scalability considerations
  • Integrate ISE with existing network infrastructure

Policy Enforcement Components in Cisco ISE

  • Identify key elements involved in access policy enforcement
  • Map out authentication, authorization, and accounting flows
  • Understand the role of RADIUS, profiling, and posture in policy logic

Configuring Access Policies in Cisco ISE

  • Create authentication and authorization policy sets
  • Define rule conditions using identity, posture, and device data
  • Streamline policy design using reusable objects and templates

Troubleshooting Policies and Third-Party NADs

  • Use system logs and diagnostics to troubleshoot policy issues
  • Resolve authentication failures and access denials
  • Support and integrate non-Cisco network access devices

Web Authentication and Guest Services

  • Design guest access flows using self-registration and sponsorship
  • Configure web authentication portals and captive portals
  • Customize branding, login options, and user notifications

Configuring Hotspots and Guest Portals

  • Implement hotspot access with limited credentials
  • Set up guest user onboarding workflows
  • Monitor guest activity and configure expiration policies

Understanding Cisco ISE Profiling Services

  • Identify devices using profiling probes and attributes
  • Classify endpoints dynamically based on network behavior
  • Use profiling policies to automate access decisions

Profiling Best Practices and Reporting

  • Optimize profiling configurations for accuracy
  • Generate endpoint and profiling reports
  • Monitor endpoint behavior trends and anomalies

Configuring Cisco ISE for BYOD

  • Enable onboarding for personal and unmanaged devices
  • Define BYOD workflows including certificate provisioning
  • Ensure secure access and policy enforcement for BYOD users

Endpoint Compliance Services in Cisco ISE

  • Evaluate endpoint posture using predefined checks
  • Integrate compliance posture with access decisions
  • Remediate non-compliant devices automatically

Client Posture Services and Compliance Enforcement

  • Set up posture agents and condition checks
  • Enforce antivirus, firewall, and OS version compliance
  • Apply policies based on client health status

Working with Network Access Devices

  • Connect and manage switches, wireless controllers, and VPNs
  • Use ISE to control access at the network edge
  • Validate NAD configurations and manage updates

Exploring Cisco TrustSec

  • Understand TrustSec components and security group tags (SGTs)
  • Configure scalable group access policies
  • Segment network access using TrustSec for secure zones

Prerequisites

It is recommended, but not required, to have the following skills and knowledge before attending this course: Familiarity with the Cisco IOS® Software command-line interface (CLI) Familiarity with Cisco AnyConnect® Secure Mobility Client Familiarity with Microsoft Windows operating systems Familiarity with 802.1X

Target Audience

This course is ideal for network security engineers, Cisco ISE administrators, SOC personnel, and IT teams responsible for managing secure network access. It’s especially beneficial for professionals working on Zero Trust initiatives, BYOD policies, and identity-driven access—along with those preparing for the official Cisco SISE v4.0 exam.

Objectives

Describe the Cisco Identity Services Engine (ISE) Explain Cisco ISE deployment Describe Cisco ISE policy enforcement components Describe Cisco ISE policy configuration Troubleshoot Cisco ISE policy and third-party Network Access Device (NAD) support Configure guest access Configure hotspots and guest portals Describe the Cisco ISE profiler services Describe profiling best practices and reporting Configure a Cisco ISE BYOD solution Configure endpoint compliance Configure client posture services Configure Cisco ISE device administration Describe Cisco ISE TrustSec configurations

Similar events

The Engineering Cisco Meraki Solutions training helps you gain the core knowledge and skills needed to deploy, plan, design, implement, and operate complex Cisco Meraki solutions. This training combines Engineering Cisco Meraki Solutions Part 1 and 2 trainings. This training helps prepare you for roles focused on implementing, securing, and managing Cisco Meraki™ based networks from a centralized dashboard. Topics covered include Cisco Meraki’s cloud-based solutions, understanding of network security protocols, design of scalable architectures, and application of troubleshooting strategies. This training prepares you for the Cisco Meraki Solutions Specialist (ECMS 500-220) exam. If passed, you earn the Cisco Meraki Solutions Specialist certification. This training also earns you 24 Continuing Education (CE) credits towards recertification.

More Information

This looks like just another CCNA course. But hidden inside is a complete transformation system that teaches you to think like a network architect, not just a configuration technician. You’ll learn to integrate AI, automation, and cloud technologies into network operations. Plus, you’ll master security fundamentals across IP addressing, routing, wireless LANs, and switching, all using Cisco’s industry-leading best practices. Which means instead of just passing an exam, you’ll develop the strategic thinking across network fundamentals that makes you indispensable. This 5-day intensive program doesn’t just prepare you for the globally recognized certification that consistently tops IT lists; it prepares you for career advancement by teaching you to install, configure, and troubleshoot modern networks like a true professional.

More Information

Over half of IT decision-makers say their current enterprise networks can’t support long-term innovation. As business demands outpace legacy infrastructure, engineers must master both traditional internetwork operations and next-gen solutions like SD-WAN, automation, and virtualization. The Implementing and Operating Cisco Enterprise Network Core Technologies (ENCOR) v1.4 course gives you the knowledge and skills needed to install, configure, operate, and troubleshoot Cisco enterprise networks—from core routing and switching to wireless, security, automation, and overlay network design using Cisco SD-Access and SD-WAN solutions. This course prepares you for the 350-401 ENCOR exam, the core exam required for the Cisco Certified Network Professional (CCNP) Enterprise certification and Cisco Certified Specialist – Enterprise Core credential. It also supports certification prep for CCIE Enterprise Wireless, Cisco Certified Network Associate (CCNA), and ENARSI.

More Information

The Implementing and Operating Cisco Security Core Technologies (SCOR) training helps you gain the skills and technologies needed to implement core Cisco security solutions. This training will ready you to provide advanced threat protection against cybersecurity attacks and prepare you for senior-level security roles. This training prepares you for the 350-701 SCOR v1.0 exam. If passed, you earn the Cisco Certified Specialist - Security Core certification and satisfy the core exam requirement for the Cisco Certified Network Professional (CCNP) Security and Cisco Certified Internetwork Expert (CCIE) Security certifications. This training also earns you 64 Continuing Education (CE) credits towards recertification.

More Information

Your network will fail. The only question is whether you'll see it coming. 70% of enterprise outages stem from preventable misconfigurations, yet most IT teams rely on reactive troubleshooting methods designed for simpler networks. As enterprise networks become more complex, IT professionals need more than basic routing knowledge. They need advanced troubleshooting skills to identify, resolve, and optimize routing issues across hybrid environments before they become business-critical failures. The Implementing Cisco Enterprise Advanced Routing and Services (ENARSI) v1.0 course gives you the skills to implement and troubleshoot advanced routing technologies used in real-world enterprise networks. From EIGRP and OSPF to BGP, MPLS, and DMVPN, this course prepares you to configure and secure enterprise infrastructure, and helps you prepare for the Cisco ENARSI 300-410 exam, a required step on the CCNP Enterprise path.

More Information

The Implementing Cisco Enterprise Wireless Networks (ENWLSI) training helps you implement network settings to provide a secure wireless network infrastructure and troubleshoot any related issues. The goal of this 5-day instructor-led training is to prepare you to secure and implement the wireless infrastructure, and use Cisco Identity Service Engine (ISE), Cisco Prime Infrastructure (PI), Cisco DNA Center, Cisco Spaces, and Cisco Connect Mobile Experience to monitor and troubleshoot network issues. This training provides you with hands-on labs to reinforce concepts including deploying Cisco Catalyst 9800 Wireless Controller Release IOS XE Bengaluru 17.6.3, Cisco Digital Network Architecture (DNA) Center Release 2.3.3, Cisco Prime Infrastructure Release 3.5, Cisco Spaces, Cisco CMX Release 10.5, features, and Cisco Identity Services Engine (ISE) Release 3.0. This training prepares you for the 300-430 ENWLSI: Implementing Cisco Enterprise Wireless Networks exam. If passed, you earn the Cisco Certified Specialist – Enterprise Wireless Implementation certification and satisfy the concentration exam requirement for the CCNP Enterprise certification. This training also earns you 40 Continuing Education (CE) credits toward recertification.

More Information