Level 3 Network Engineer Programme
Course Overview
The Level 3 Network Engineer Programme is designed for networking professionals who have completed Levels 1 and 2 or possess equivalent networking experience. This advanced programme focuses on enterprise IP addressing design, advanced subnetting techniques, network security implementation, and Internet connectivity technologies used in modern enterprise environments.
Participants will develop the skills required to design scalable network infrastructures, implement advanced security controls, secure network devices, and enable secure Internet access using industry-standard technologies. Through extensive hands-on labs, enterprise-level project case studies, and real-world troubleshooting exercises, learners will gain the practical expertise required of professional Network Engineers.
Module 1: Enterprise IP Addressing Design
The programme begins with advanced IP addressing design methodologies used by Network Engineers when planning and deploying enterprise networks for customers.
Key Topics
- Network Design Fundamentals
- Enterprise Addressing Strategies
- IP Address Planning and Documentation
- Designing Scalable Network Architectures
- Address Allocation Best Practices
- Customer Network Requirements Analysis
Practical Activities
- Designing IP addressing schemes for enterprise customers
- Building multi-site network topologies
- Implementing structured addressing plans
- Validating end-to-end network communication
Real-World Case Studies
Learners will work through advanced customer scenarios to design and implement professional IP addressing solutions for enterprise environments.
Module 2: Advanced Subnetting Technologies
This module develops mastery of one of the most important skills required by every Network Engineer.
Key Topics
- Advanced IPv4 Subnetting
- Network Address Planning
- Subnet Mask Calculations
- Efficient Address Utilisation
- Network Segmentation Strategies
Fixed Length Subnet Masking (FLSM)
Participants will learn:
- FLSM concepts and implementation
- Equal-sized subnet design
- Address allocation planning
- Practical FLSM network deployment
Variable Length Subnet Masking (VLSM)
Participants will learn:
- VLSM concepts and advantages
- Efficient IP address utilisation
- Designing networks with varying host requirements
- Enterprise-level addressing optimisation
- Real-world VLSM deployment strategies
Practical Labs
Learners will:
- Design their own IP addressing schemes
- Build enterprise network topologies
- Implement FLSM and VLSM solutions
- Verify end-to-end reachability using routing protocols
- Troubleshoot addressing and connectivity issues
Module 3: Network Security Fundamentals
This module introduces the essential security principles required to protect enterprise network infrastructures.
Key Topics
- Introduction to Network Security
- Security Threats and Vulnerabilities
- Network Hardening Techniques
- Secure Network Design Principles
- Defence-in-Depth Concepts
- Infrastructure Protection Strategies
Learning Outcomes
Participants will understand how security technologies are integrated into network infrastructures to protect organisational resources and services.
Module 4: Access Control Lists (ACLs)
This module focuses on one of the most important security technologies available on enterprise routers.
Key Topics
- Understanding Access Control Lists (ACLs)
- Traffic Filtering Concepts
- Packet Inspection and Decision Making
- ACL Design Best Practices
- Security Policy Implementation
ACL Types
Standard ACLs
- Configuration and implementation
- Source-based filtering
- Traffic control and security
Extended ACLs
- Advanced traffic filtering
- Protocol and port-based filtering
- Enhanced security control
Practical Configuration
Learners will:
- Configure Standard ACLs
- Configure Extended ACLs
- Apply ACLs to network interfaces
- Verify ACL operation
- Troubleshoot ACL deployments
- Analyse packet filtering behaviour
Challenge Project Case Studies
Participants will complete multiple practical projects ranging from basic to advanced enterprise security scenarios.
Module 5: Router Hardening and Infrastructure Security
This module teaches learners how to transform routers into secure networking devices capable of protecting enterprise infrastructures.
Key Topics
- Router Security Fundamentals
- Device Hardening Techniques
- Secure Administrative Access
- Password and Authentication Security
- Management Plane Protection
- Network Infrastructure Protection
Practical Labs
- Securing Cisco routers
- Restricting unauthorised access
- Implementing security controls
- Verifying security configurations
- Troubleshooting security-related issues
Module 6: Network Address Translation (NAT)
This module introduces one of the most widely used technologies in modern networking.
Key Topics
- Understanding Network Address Translation (NAT)
- Why NAT is Required
- Private and Public Addressing
- Address Conservation Techniques
- Internet Connectivity Fundamentals
NAT Types
Static NAT
- One-to-one address translation
- Publishing internal resources
Dynamic NAT
- Address pool configuration
- Dynamic address assignment
NAT Overload (PAT)
- Port Address Translation (PAT)
- Many-to-one address translation
- Enterprise Internet access solutions
Practical Configuration
Participants will learn how to:
- Configure Static NAT
- Configure Dynamic NAT
- Configure PAT (NAT Overload)
- Verify translation tables
- Troubleshoot NAT deployments
- Monitor translation processes
Module 7: Internet Connectivity and Enterprise Access
This module explains how organisations and users access resources across the Internet.
Key Topics
- How the Internet Works
- Public and Private IP Addressing
- Internet Service Providers (ISPs)
- Enterprise Internet Connectivity
- NAT and Internet Access
- Traffic Flow Analysis
- End-to-End Communication Processes
Practical Labs
- Building Internet-enabled enterprise networks
- Configuring NAT for Internet access
- Verifying external connectivity
- Troubleshooting Internet communication issues
Module 8: Integrated Security and Connectivity Projects
This advanced module combines all technologies covered throughout the programme.
Practical Activities
Participants will:
- Design enterprise IP addressing schemes
- Implement FLSM and VLSM subnetting
- Configure routing protocols
- Secure network infrastructures using ACLs
- Harden Cisco routers
- Implement NAT and PAT solutions
- Enable secure Internet access
- Troubleshoot enterprise networking scenarios
Final Enterprise Super Lab
The programme concludes with a comprehensive Enterprise Super Lab designed to test and validate all skills acquired throughout the course.
Capstone Project Objectives
Participants will:
- Design a complete enterprise network infrastructure
- Create advanced IP addressing schemes
- Implement FLSM and VLSM subnetting strategies
- Configure enterprise routing solutions
- Deploy Standard and Extended ACLs
- Secure and harden network devices
- Configure Static NAT, Dynamic NAT, and PAT
- Enable secure Internet connectivity
- Verify end-to-end communication across multiple sites
- Troubleshoot complex enterprise networking and security issues
Learning Outcomes
Upon successful completion of this programme, learners will be able to:
- Design enterprise-grade IP addressing schemes
- Master FLSM and VLSM subnetting techniques
- Build scalable and efficient network infrastructures
- Implement and troubleshoot Access Control Lists (ACLs)
- Harden routers and improve infrastructure security
- Configure and troubleshoot NAT and PAT solutions
- Enable secure Internet connectivity
- Troubleshoot advanced network and security issues
- Design, implement, and secure enterprise networks using Cisco IOS CLI
Ideal For
- Network Engineers
- Network Administrators
- Infrastructure Engineers
- Systems and Network Support Professionals
- Security-Focused Network Professionals
- Individuals preparing for advanced networking certifications
- IT Professionals seeking enterprise networking expertise
Delivery Method
- Instructor-Led Training
- Advanced Hands-On Labs
- Cisco IOS CLI Configuration
- Real-World Enterprise Case Studies
- Security Implementation Workshops
- Challenge-Based Learning
- Enterprise Super Lab Assessment