Security+ SY0-701
The Security+ SY0-701 exam is organized into five domains, each weighted differently toward your score. Knowing where the points are tells you where to spend your study time — Security Operations alone is 28% of the exam.
3 practice exams free — no signup needed
Security controls, the CIA triad, zero trust, physical security, and change-management and cryptographic fundamentals (PKI, hashing, encryption).
Threat actors and vectors, common vulnerabilities, indicators of malicious activity, and the techniques used to mitigate them.
Securing cloud, on-prem, and hybrid architectures; data protection; resilience and recovery in enterprise design.
The largest domain: hardening, monitoring, identity and access management, automation, incident response, and digital forensics.
Governance, risk management, third-party/vendor risk, compliance, audits, and security-awareness practices.
Five: General Security Concepts (12%), Threats, Vulnerabilities & Mitigations (22%), Security Architecture (18%), Security Operations (28%), and Security Program Management & Oversight (20%).
Security Operations at 28%. Threats, Vulnerabilities & Mitigations (22%) and Security Program Management & Oversight (20%) are the next largest, so those three domains together are 70% of the exam.
1,808 questions across 75 exams, weighted to match the SY0-701 domains above. 3 free — no signup.
Start Free Practice Test