← All Certifications
CompTIA

CompTIA Security+ Certification

SY0-701 · 5 domains

Last updated: March 31, 2026

Exam Syllabus & Domains

The CompTIA Security+ certification exam covers the following domains. Focus your training time proportionally to each domain's weight.

Domain 1 12%

General Security Concepts

  • 1.1 Compare and contrast various types of security controls
  • 1.2 Summarize fundamental security concepts
  • 1.3 Explain the importance of change management processes
  • 1.4 Explain the importance of using appropriate cryptographic solutions
CIA TriadAAAZero TrustGap AnalysisHoneypotsChange ManagementPKISymmetric vs AsymmetricKey ExchangeHashing
Domain 2 22%

Threats, Vulnerabilities, and Mitigations

  • 2.1 Compare and contrast common threat actors and motivations
  • 2.2 Explain common threat vectors and attack surfaces
  • 2.3 Explain various types of vulnerabilities
  • 2.4 Given a scenario, analyze indicators of malicious activity
  • 2.5 Explain the purpose of mitigation techniques
APTSocial EngineeringMalware TypesSupply Chain AttacksZero-DaySQL InjectionXSSCSRFBuffer OverflowPrivilege Escalation
Domain 3 18%

Security Architecture

  • 3.1 Compare and contrast security implications of architecture models
  • 3.2 Apply security principles to secure enterprise infrastructure
  • 3.3 Compare and contrast data protection concepts and strategies
  • 3.4 Explain resilience and recovery in security architecture
Zero Trust ArchitectureMicroservicesSASEIaCContainerizationServerlessData SovereigntyBackup StrategiesHA vs DRLoad Balancing
Domain 4 28%

Security Operations

  • 4.1 Apply common security techniques to computing resources
  • 4.2 Explain security implications of proper hardware/software management
  • 4.3 Explain vulnerability management activities
  • 4.4 Explain security alerting and monitoring concepts
  • 4.5 Modify enterprise capabilities to enhance security
  • 4.6 Implement and maintain identity and access management
SIEMSOAREDR/XDRVulnerability ScanningPenetration TestingMFARBACPAMGroup PolicyLog Analysis
Domain 5 20%

Security Program Management and Oversight

  • 5.1 Summarize effective security governance elements
  • 5.2 Explain elements of the risk management process
  • 5.3 Explain third-party risk assessment and management
  • 5.4 Summarize compliance requirements and security awareness
Risk AssessmentRisk RegisterBIARTO/RPOVendor AssessmentGDPRPCI-DSSSecurity AwarenessAudit TrailsIncident Response

Where to Focus Your Study Time

Domains with higher weight have more exam questions — allocate your study hours accordingly.

D1 General Security Concepts
12%
D2 Threats, Vulnerabilities, and Mitigations
22%
D3 Security Architecture
18%
D4 Security Operations
28%
D5 Security Program Management and Oversight
20%

Study Tips

Free Study Resources

๐Ÿ“‹

Study Roadmap

Week-by-week study plan with free resources

โœ…

Study Tracker

Track objective completion with progress dashboard

๐Ÿ’ฐ

Cost Calculator

Total cost breakdown and ROI analysis

๐Ÿงช

Practice Quiz

Test your knowledge with free practice questions

Practice Quiz

Test your knowledge before the exam with our free practice quiz.

Take the CompTIA Security+ Practice Quiz

Related Comparisons

Not sure if CompTIA Security+ is the right choice? Compare it with similar certifications:

Security+ vs CySA+ Security+ vs PenTest+ Network+ vs Security+ Security+ vs SSCP CISSP vs Security+ Azure AZ-500 vs Security+ CC vs Security+ GSEC vs Security+ SC-900 vs Security+ Cloud+ vs Security+ Data+ vs Security+ SecAI+ vs Security+

Get the CompTIA Security+ Study Planner

Fillable PDF with 12-week schedule, domain trackers, flashcard templates, progress tracking, and quick reference sheets. Available in Standard, ADHD-Friendly, Dark Mode, and 4-Format Bundle.

Get the Study Planner — $5.99

Also available as a 4-Format Bundle for $15.99

CyberFolio

Earned your certs? Show employers.

Build a shareable cybersecurity portfolio that highlights your certifications, projects, and skills — free.

Build Your Portfolio →

Free Training Resources

Use these free tools to support your CompTIA Security+ certification training:

Frequently Asked Questions

What is the CompTIA Security+ certification?

The CompTIA Security+ (SY0-701) is a professional IT certification that validates your knowledge and skills in the exam domains covered. It is recognized globally by employers and is a valuable credential for career advancement in cybersecurity and IT.

What does the CompTIA Security+ certification syllabus cover?

The CompTIA Security+ exam syllabus covers 5 domains. Each domain is weighted differently, so focus your training on higher-weighted domains first. Review the complete domain breakdown above for objectives and key concepts.

How should I study for CompTIA Security+?

Create a structured study plan covering all exam domains, use practice tests to identify weak areas, and review key concepts regularly. A fillable study planner can help you organize your training with weekly schedules and progress tracking.

How long does it take to prepare for CompTIA Security+?

Preparation time varies by experience level. Most candidates spend 8-12 weeks of dedicated training. Using a structured study planner with domain-by-domain breakdown helps ensure you cover all certification objectives efficiently.