CompTIASY0-701

Security+

Threats, architecture, vulnerabilities & incident response.

Questions

90

Time limit

90 min

Passing score

750 / 900

Format

MCQ + PBQs

About this exam

What is Security+?

CompTIA Security+ is the most widely recognised entry-level cybersecurity certification. SY0-701 covers general security concepts, threats & vulnerabilities, security architecture, security operations, and governance/risk/compliance. It's DoD 8570 / 8140 approved, making it valuable for US federal work.

Prerequisites

CompTIA recommends Network+ and 2 years of IT administration experience with a security focus. Strong networking fundamentals are essential.

Career outcomes

Security AnalystSOC Analyst (Tier 1)Junior Penetration TesterSystems Administrator (security-focused)
Exam blueprint

What the exam covers

Five focus areas with the weight each domain carries on the real exam. We have practice questions and PBQs for every domain.

General Security Concepts

Security controls, fundamental principles, change management, cryptography basics.

12%

Threats, Vulnerabilities & Mitigations

Threat actors, attack vectors, vulnerability classes, mitigation strategies.

22%

Security Architecture

Enterprise infrastructure, data protection, resilience, cloud security.

18%

Security Operations

Hardening, monitoring, IAM, incident response, digital forensics, automation.

28%

Security Program Management & Oversight

Governance, risk, compliance, third-party risk, awareness.

20%
On cert2hire

How we'll get you to pass

Curated MCQs

Hundreds of Security+ MCQs aligned to every objective. Filter by domain, difficulty, or take a full timed exam.

6 PBQ simulation types

Firewall configs, log analysis, terminal investigations, network configs, drag-drops, troubleshoot wizards — exam-realistic.

Video lessons by domain

Walkthroughs for each Security+ domain. Watch, then quiz yourself.

AI tutor on every question

Stuck? Ask the AI tutor. It's grounded in this cert's objectives, not generic web answers.

Flashcards with spaced repetition

AI-generated decks for each domain. Review the cards you keep getting wrong.

Per-domain analytics

See exactly which Security+ domains need more work. Stop guessing what to study.

Suggested plan

A study path that works

Based on what we've seen work for Security+ candidates. Adjust to your pace — most people land between 4 and 10 weeks.

1

Week 1–2

General security concepts + threats and vulnerabilities (the biggest domain).

2

Week 3–4

Security architecture and operations — heavy on real-world scenarios.

3

Week 5

Governance, risk, compliance.

4

Week 6

PBQ-heavy practice. Firewall config, log analysis, incident response.

FAQ

Security+ — questions we hear a lot

How is SY0-701 different from SY0-601?

SY0-701 (2023) reorganised content into 5 broader domains, added more Zero Trust, AI-related risks, and automation/orchestration. Older study materials may not match the current blueprint.

Is Security+ enough for a SOC analyst role?

Combined with hands-on practice (which our SIEM log-analysis PBQs simulate), yes — many SOC Tier 1 roles list Security+ as a requirement or preferred.

Is it valid for US government roles?

Yes — Security+ is DoD 8570 / 8140 baseline approved for IAT Level II, IAM Level I, and IASAE Level I positions.

Ready to start your Security+ prep?

50 free credits on signup. No credit card. Cancel anytime.

50 free creditsNo credit cardCancel anytime