- The Plain Answer: What a JNCIS-SEC Actually Is
- Decoding the Name and the Issuer
- The JN0-336 Exam at a Glance
- The Seven Domains You Must Master
- Who This Credential Fits
- Prerequisites and Where It Sits in the Track
- Registration, Delivery and Test-Day Mechanics
- Scoring, Retakes and Validity
- Cost: What Is Verified and What Is Not
- Sequencing Your Preparation by Domain
- Frequently Asked Questions
- JNCIS-SEC is the Juniper Networks Certified Specialist, Security credential, earned by passing the written JN0-336 exam on Junos OS 24.4.
- JN0-336 has 65 multiple-choice questions in 90 minutes, delivered in English through Pearson VUE test centers or OnVUE.
- Seven unweighted domains run from IDP and IPsec VPN to ATP Cloud, HA clustering, JIMS, SSL Proxy and Security Director.
- An active JNCIA-SEC is the prerequisite, and the certification stays active for three years before renewal.
The Plain Answer: What a JNCIS-SEC Actually Is
A JNCIS-SEC is the Juniper Networks Certified Specialist, Security credential. It validates that a network security practitioner understands, at a specialist level, how Juniper's security platform handles advanced threat and traffic-protection features: intrusion prevention, IPsec VPNs, cloud-based advanced threat prevention, chassis clustering, identity-aware policy, SSL decryption and centralized policy management.
It is earned by passing a single written exam, JN0-336, which is built on Junos OS 24.4. It is not a hands-on lab and it is not the expert tier. It sits in the middle of the Juniper security track: above the associate-level JNCIA-SEC, and a deliberate step into configuration, monitoring and troubleshooting knowledge across several security technologies.
If you are looking for broader orientation, our related explainers What Is JNCIS-SEC? and What Does JNCIS-SEC Stand For? cover the naming from different angles. This article focuses on what the credential is, what it tests, and how the exam logistics actually work.
Decoding the Name and the Issuer
Break the acronym into its parts and the meaning is straightforward:
- JNCIS: Juniper Networks Certified Specialist, the specialist tier of the program.
- SEC: the Security track.
The credential is governed by Juniper Networks, now operating under HPE Juniper Networking and the HPE Networking branding. That branding shift is worth understanding because you will see inconsistent names across the issuer's pages, exam portals and third-party sites. The certification itself is unchanged by the rename: it is still the Security, Specialist credential, still tied to JN0-336.
The JN0-336 Exam at a Glance
| Attribute | JN0-336 (JNCIS-SEC) |
|---|---|
| Credential | Juniper Networks Certified Specialist, Security |
| Exam code | JN0-336 |
| Software basis | Junos OS 24.4 |
| Format | 65 multiple-choice questions |
| Duration | 90 minutes |
| Language | English |
| Type | Written specialist exam (not a practical lab) |
| Delivery | Pearson VUE test centers or eligible OnVUE online proctoring |
| Replaced | JN0-335 (retired September 1, 2025) |
| Active since | September 2, 2025 |
Two details trip candidates up. First, the scored versus unscored split of the 65 questions is not established, so you should treat every question as if it counts. Second, older study content often describes a 75-question exam. That description does not match the current JN0-336 format, so be cautious with any resource that cites the older number.
It is also important to keep the scope straight: the course and lab versions Juniper recommends for training are not the same thing as the exam specification. The exam is specified against Junos OS 24.4, and the 90-minute timer is the exam's own, not the course's.
The Seven Domains You Must Master
The issuer's exam objectives table lists seven domain headings. None of them carries a published weight, so you cannot assume that one domain is "worth" more than another. Plan to cover all seven. For a deeper walkthrough, see our JNCIS-SEC exam domains guide.
For Domains 1 through 6, the objectives call for conceptual understanding plus knowledge of configuration, monitoring and troubleshooting. Domain 7 is framed around concepts, features and functionality rather than an added troubleshooting objective.
Domain 1: Intrusion Detection and Prevention (IDP)
Covers how IDP is managed and applied on the platform.
- IDP database management
- IDP policies, including how they are built and applied
- Configuration, monitoring and troubleshooting of both
Domain 2: IPsec VPN
The most protocol-heavy area, and it also expressly covers the benefits and operation of VPNs.
- IPsec tunnel establishment
- IPsec traffic processing
- Site-to-site VPNs
- Juniper Secure Connect
Domain 3: Juniper Advanced Threat Prevention (ATP) Cloud
The broadest domain by subtopic count, and the one most affected by recent platform changes.
- Supported files and ATP Cloud components
- Security feeds and traffic remediation
- Workflow
- Encrypted Traffic Insights (ETI)
- DNS and IoT security
- Adaptive threat profiling
Domain 4: High Availability (HA) Clustering
Chassis clustering concepts and operation.
- HA features and characteristics
- Deployment requirements and considerations
- Chassis-cluster characteristics and operation
- Real-time object and state synchronization
Domain 5: Identity-Aware Security Policies
Centers on the Juniper Identity Management Service.
- Juniper Identity Management Service (JIMS)
- Ports and protocols involved
- Data flow between components
Domain 6: SSL Proxy
Decrypting and inspecting TLS traffic safely.
- SSL Proxy certificates
- Client protection and server protection
Domain 7: Security Director
Centralized management through Junos Space Security Director.
- Deployment options
- Device onboarding
- Security-policy management
Who This Credential Fits
JNCIS-SEC is aimed at practitioners who already work with or manage SRX-based security environments and want to demonstrate depth beyond the associate level. In practice, the roles that map naturally to the content include:
- Network security engineers who deploy and tune firewalls, VPNs and threat-prevention policy.
- Security operations and support engineers who monitor and troubleshoot IDP events, tunnels and cluster health.
- Systems integrators and managed-service engineers who onboard devices and manage policy at scale through Security Director.
- Network engineers moving into security who already know Junos and want a structured specialization.
Employers that run Juniper security gear tend to value the credential as evidence of platform-specific knowledge. For a candid look at the market side, see our pieces on JNCIS-SEC jobs and whether the certification is worth it. Be wary of any source that attributes a specific pay raise directly to holding the credential; the certification demonstrates knowledge, but compensation depends on role, region and experience.
Prerequisites and Where It Sits in the Track
The prerequisite is an active JNCIA-SEC. Note that this is specifically the Security associate credential, not JNCIA-Junos. Beyond the credential gate, the exam assumes intermediate Junos and SRX knowledge: you should already be comfortable with security zones, policies, NAT and the Junos CLI before you start on the specialist material.
| Aspect | JNCIA-SEC (associate) | JNCIS-SEC (specialist) |
|---|---|---|
| Role in the track | Entry gate for the security specialist exam | Specialist-level written exam |
| Orientation | Foundational security concepts on Junos | Advanced features: IDP, IPsec, ATP Cloud, HA, JIMS, SSL Proxy, Security Director |
| Assumed knowledge | Basic Junos familiarity | Intermediate Junos/SRX knowledge |
Juniper's Security training course is recommended but not mandatory for admission. For the full eligibility picture, read our JNCIS-SEC requirements guide, and for the associate-versus-specialist distinction, see how hard the JNCIS-SEC exam really is.
Registration, Delivery and Test-Day Mechanics
You take JN0-336 either at a Pearson VUE test center or through eligible OnVUE online delivery. After September 15, 2026, written exams are scheduled, managed and launched through Alpine CertMetrics with an hpe.com login, so check the current registration path when you book.
- Identification: matching government-issued photo and signature identification is required.
- OnVUE environment: you need a compliant private testing space with no books or notes. Confirm delivery and identity requirements for your specific appointment before test day.
- Cancellation: the policy references one business day, with forfeiture inside 24 hours. Do not assume these windows are equivalent across weekends or holidays; follow the applicable provider deadline.
For scheduling windows and deadlines, see JNCIS-SEC exam dates.
Scoring, Retakes and Validity
How results work
Results shown at the end of the exam are provisional. Validated results normally appear in CertMetrics within three business days. The live passing threshold is exam-specific and statistically established; it is not a single published universal percentage. A 70% threshold that appears on the official practice and voucher assessment is not necessarily the certification passing score, so do not use it as your target for the real exam. Our passing score guide and pass rate analysis explain how to interpret what is and is not known.
Retake rules
- After a first failed written attempt, there is no mandated waiting interval.
- After a second or later failure, you wait 14 calendar days, counting from the day after the failure.
- After passing, you must wait at least 18 months before retaking the same exam.
Validity and renewal
The certification is active for three years. You can renew before expiry by passing the applicable current exam, earning a higher Security-track certification, or completing an eligible designated course at the same or higher level. The Juniper Security course explicitly lists JNCIS-SEC renewal. If a credential expires, you restart the track under published policy. There is no generic continuing-education credit quota to track.
Cost: What Is Verified and What Is Not
This is where honesty matters. A current retail checkout price for JN0-336 was not verified, because the provider's voucher-store link did not return a usable price at the time of research. A figure of USD 300 appears in a 2021 statement from program staff, but that is historical and should not be treated as current fee evidence.
For the broader budgeting picture, including training versus exam spend, see our certification cost breakdown.
Sequencing Your Preparation by Domain
Because no domain weights are published, a sensible plan front-loads the protocol-dense material and leaves the shorter, concept-driven domains for later reinforcement. One workable ordering:
IPsec VPN and IDP
- Work through tunnel establishment, traffic processing and site-to-site design before anything else; this is the most mechanically detailed area.
- Pair IDP database management with IDP policy construction.
ATP Cloud and HA clustering
- Cover every ATP subtopic: supported files, feeds, remediation, ETI, DNS and IoT security, and adaptive threat profiling.
- Study chassis-cluster operation and state synchronization together.
JIMS, SSL Proxy and Security Director
- Memorize JIMS ports, protocols and data flow.
- Understand SSL Proxy certificate handling for client and server protection.
- Review Security Director onboarding and policy management.
Mixed review
- Take timed mixed-domain sets to practice the 90-minute pace across 65 questions.
Remember that knowledge questions on configuration, monitoring and troubleshooting are supplementary preparation, not a measure of hands-on competence. Pair reading with time on real or virtual Junos devices where possible. Our JNCIS-SEC study guide and cheat sheet expand on this plan, and you can test your recall with the free questions on our practice test site.
Key Takeaway
Verify you are studying JN0-336 and Junos OS 24.4, not retired JN0-335 material or other certifications that share a similar acronym. Check every figure against the issuer before you rely on it.
Our independently written questions are supplementary knowledge preparation. They are not actual exam questions, an official mock exam, or an assessment of practical skill. When you are ready to check your recall across all seven domains, head to the JNCIS-SEC Exam Prep practice questions.
Frequently Asked Questions
It is the Juniper Networks Certified Specialist, Security credential, earned by passing the written JN0-336 exam. It verifies specialist-level knowledge of Juniper security features such as IDP, IPsec VPN, ATP Cloud, HA clustering, JIMS, SSL Proxy and Security Director.
The exam has 65 multiple-choice questions and a 90-minute time limit, delivered in English. Older descriptions citing 75 questions refer to outdated information, and the scored versus unscored split is not established.
An active JNCIA-SEC is the prerequisite, not JNCIA-Junos. You should also have intermediate Junos and SRX knowledge. Juniper's Security training course is recommended but is not a mandatory admission requirement.
It is active for three years. You can renew before expiry by passing the applicable current exam, earning a higher Security-track certification, or completing an eligible designated same-level or higher-level course. If it expires, you restart the track under published policy.
No. JN0-335 retired on September 1, 2025, and JN0-336 began on September 2, 2025, replacing it. Study materials built for JN0-335 may not match the current Junos OS 24.4 objectives.