CompTIA Security+ (SY0-701) — Exam Guide & Objectives
CertStudio's Security+ practice is in active development. Below is a complete, up-to-date SY0-701 exam guide — and you can get notified the moment prep launches.
What is CompTIA Security+?
CompTIA Security+ is the industry-baseline, vendor-neutral security certification. It covers threats, security architecture, day-to-day operations, and program governance — the core knowledge expected of anyone working in a security role.
Security+ is approved under DoD 8140/8570 and is frequently listed as a job requirement for security analyst and administrator roles in both government and private industry. Most candidates take it after CompTIA A+ and Network+, or as a direct entry point into security work if they already have a networking background.
Security+ SY0-701 exam overview
| Exam code | SY0-701 |
|---|---|
| Questions | Up to 90 (multiple-choice + performance-based) |
| Time | 90 minutes |
| Passing score | 750 (scale 100–900) |
| Format | Proctored (test center or online) |
| Cost | Paid to CompTIA — see official pricing |
Exam facts last verified: Aug 2026
CompTIA uses scaled scoring, so 750/900 is not the same as 75% correct — questions are weighted and PBQs can count for more.
The 5 Security+ domains (SY0-701)
General Security Concepts
Core security terminology, control types, and the fundamental concepts that underpin every other domain.
Threats, Vulnerabilities & Mitigations
Threat actors, attack types, vulnerabilities, and the mitigation techniques used to defend against them.
Security Architecture
Designing secure network and system architectures, including cloud, virtualization, and resilience.
Security Operations
Day-to-day operational security: hardening, incident response, monitoring, and vulnerability management. The largest domain.
Security Program Management & Oversight
Governance, risk management, compliance, and third-party risk — the policy and management side of security.
Who should take Security+ / is it worth it?
Security+ is a common target for security analysts, SOC tier-1 analysts, and junior system/network administrators moving toward security-focused roles. It's broad rather than deep, so it's best thought of as a credential that opens doors and satisfies job-posting requirements, not a substitute for hands-on lab experience.
If you're weighing whether it's worth it: for most people targeting a government or defense-adjacent security role, it's effectively required (DoD 8140/8570). For others, it's a strong, widely recognized signal that pairs well with practical experience.
CertStudio Security+ prep is coming — get notified
We're building Security+ practice content now. Join the waitlist and we'll email you at launch — no spam, just the one announcement.
Security+ FAQ
How many questions are on the Security+ SY0-701 exam?
Up to 90 questions in a 90-minute session. You'll see a mix of standard multiple-choice questions and performance-based questions (PBQs) that simulate real security tasks.
What's the passing score for Security+?
750 on a scale from 100 to 900. Because CompTIA uses scaled scoring, that isn't the same as answering 75% correctly — questions carry different weights and PBQs often count for more.
What are the five Security+ domains?
General Security Concepts (12%), Threats, Vulnerabilities & Mitigations (22%), Security Architecture (18%), Security Operations (28%), and Security Program Management & Oversight (20%).
Do I need Network+ or A+ before taking Security+?
No — they aren't required prerequisites. CompTIA recommends Network+ and around two years of IT experience with a security focus first, because Security+ assumes you're comfortable with networking basics. Many people take A+ → Network+ → Security+ as a ladder.
When will CertStudio's Security+ practice be available?
It's in active development. We don't have a public launch date yet — join the waitlist and we'll email you the moment it's live.
Don't wait to start studying
Join the Security+ waitlist and we'll let you know the moment CertStudio prep is live.
New to security certs? Start with ISC2 Certified in Cybersecurity (CC) — our live entry point. Or see the CompTIA Network+ guide.