Course Overview
Overview
CompTIA Security+ is a global certification that validates the baseline skills necessary to perform core security functions and pursue an IT security career.
Security+ is the most widely adopted ISO/ANSI-accredited early career cybersecurity certification on the market with hands-on, performance-based questions on the certification exam. These practical questions assess your ability to effectively problem solve in real-life situations and demonstrate your expertise to potential employers immediately.
The new CompTIA Security+ (SY0-701) represents the latest and greatest in cybersecurity, covering the most in-demand skills related to current threats, automation, zero trust, IoT, risk ñ and more. Once certified, youíll understand the core skills needed to succeed on the job ñ and employers will notice too. The Security+ exam verifies you have the knowledge and skills required to:
Assess the security posture of an enterprise environment and recommend and implement appropriate security solutions.
Monitor and secure hybrid environments, including cloud, mobile, Internet of Things (IoT), and operational technology.
Operate with an awareness of applicable regulations and policies, including principles of governance, risk, and compliance.
Identify, analyze, and respond to security events and incidents.
CompTIA Security+ is compliant with ISO 17024 standards and approved by the U.S. DoD to meet Directive 8140.03M requirements. Regulators and government rely on ANSI accreditation because it provides confidence and trust in the outputs of an accredited program. Over 3 million CompTIA ISO/ANSI-accredited exams have been delivered since January 1, 2011.
Exam Details:
Maximum of 90 questions
Multiple choice and performance-based
90 minutes
750 (on a scale of 100-900)
Objectives
During this course you will learn the following skills:
General Security Concepts: Includes key cybersecurity terminology and concepts up front to provide a foundation for security controls discussed throughout the exam.
Security Operations: Includes applying and enhancing security and vulnerability management techniques, as well as security implications of proper hardware, software, and data management.
Threats, Vulnerabilities & Mitigations: Focuses on responding to common threats, cyberattacks, vulnerabilities, and security incidents and appropriate mitigation techniques to monitor and secure hybrid environments.
Security Program Management & Oversight: Updated to better reflect the reporting and communication skills required for Security+ job roles relating to governance, risk management, compliance, assessment, and security awareness.
Security Architecture: Includes security implications of different architecture models, principles of securing enterprise infrastructure, and strategies to protect data.
Audience
Cybersecurity Explained, Cloud Penetration Tester, Network Security Operations, Penetration Tester, Network Security Analyst, Web App Penetration Tester
Prerequisites
Recommended Experience:
CompTIA Network+ and two years of experience in IT administration with a security focus
CompTIA Network+ and two years of experience working in a security/ systems administrator job role
Topics
Topics Covered
Lesson 1: Summarize Fundamental Security Concepts
Lesson 2: Compare Threat Types
Lesson 3: Explain Cryptographic Solutions
Lesson 4: Implement Identity and Access Management
Lesson 5: Secure Enterprise Network Architecture
Lesson 6: Secure Cloud Network Architecture
Lesson 7: Explain Resiliency and Site Security Concepts
Lesson 8: Explain Vulnerability Management
Lesson 9: Evaluate Network Security Capabilities
Lesson 10: Assess Endpoint Security Capabilities
Lesson 11: Enhance Application Security Capabilities
Lesson 12: Explain Incident Response and Monitoring Concepts
Lesson 13: Analyze Indicators of Malicious Activity
Lesson 14: Summarize Security Governance Concepts
Lesson 15: Explain Risk Management Processes
Lesson 16: Summarize Data Protection and Compliance Concepts
Labs Available:
Assisted Lab: Exploring the Lab Environment
Assisted Lab: Perform System Configuration Gap Analysis
Assisted Lab: Configuring Examples of Security Control Types
Assisted Lab: Finding Open Service Ports
Assisted Lab: Using SET to Perform Social Engineering
Applied Lab: Using Storage Encryption
Assisted Lab: Using Hashing and Salting
Assisted Lab: Managing Password Security
Assisted Lab: Managing Permissions
Assisted Lab: Setting up Remote Access
Assisted Lab: Using TLS Tunneling
Assisted Lab: Using Containers
Assisted Lab: Using Virtualization
Assisted Lab: Implement Backups
Assisted Lab: Performing Drive Sanitization
Assisted Lab: Exploiting and Detecting SQLi
Assisted Lab: Working with Threat Feeds
Assisted Lab: Performing Vulnerability Scans
Assisted Lab: Understanding Security Baselines
Applied Lab: Implementing a Firewall
Assisted Lab: Using Group Policy
Applied Lab: Hardening
Assisted Lab: Performing DNS Filtering
Assisted Lab: Configuring System Monitoring
Applied Lab: Incident Response: Detection
Applied Lab: Performing Digital Forensics
Assisted Lab: Performing Root Cause Analysis
Assisted Lab: Detecting and Responding to Malware
Assisted Lab: Understanding On-Path Attacks
Adaptive Lab: Using a Playbook
Assisted Lab: Implementing Allow Lists and Deny Lists
Assisted Lab: Performing Reconnaissance
Assisted Lab: Performing Penetration Testing
Assisted Lab: Training and Awareness through Simulation
Capstone Lab: Discovering Anomalous Behavior
Assisted Lab: Use Cases of Automation and Scripting
Applied Lab: Using Network Sniffers
License Information
One license provides access to CertMaster Learn for Security+ (SY0-701) with CertMaster Labs integrated throughout the course
Once activated, the license is valid for 12 months
