CutScore · study guide
Security+ SY0-701 objectives, explained
All 28 exam objectives with what they actually cover, what trips candidates up, and free sample questions. Weights are CompTIA's official domain percentages.
Domain 1: General Security Concepts12% of the exam
Domain 2: Threats, Vulnerabilities, and Mitigations22% of the exam
Domain 3: Security Architecture18% of the exam
- 3.1 Compare and contrast security implications of different architecture models
- 3.2 Given a scenario, apply security principles to secure enterprise infrastructure
- 3.3 Compare and contrast concepts and strategies to protect data
- 3.4 Explain the importance of resilience and recovery in security architecture
Domain 4: Security Operations28% of the exam
- 4.1 Given a scenario, apply common security techniques to computing resources
- 4.2 Explain the security implications of proper hardware, software, and data asset management
- 4.3 Explain various activities associated with vulnerability management
- 4.4 Explain security alerting and monitoring concepts and tools
- 4.5 Given a scenario, modify enterprise capabilities to enhance security
- 4.6 Given a scenario, implement and maintain identity and access management
- 4.7 Explain the importance of automation and orchestration related to secure operations
- 4.8 Explain appropriate incident response activities
- 4.9 Given a scenario, use data sources to support an investigation
Domain 5: Security Program Management and Oversight20% of the exam
- 5.1 Summarize elements of effective security governance
- 5.2 Explain elements of the risk management process
- 5.3 Explain the processes associated with third-party risk assessment and management
- 5.4 Summarize elements of effective security compliance
- 5.5 Explain types and purposes of audits and assessments
- 5.6 Given a scenario, implement security awareness practices