Security+ exam objectives

CompTIA Security+ objective areas students should practise

Security+ covers broad security knowledge. SecurePlus organises practice around the major areas students need to understand for MCQs and PBQs.

General security concepts

Controls, cryptography basics, identity, authentication, and core security principles.

Threats and vulnerabilities

Threat actors, malware, social engineering, network attacks, application risks, and mitigations.

Security architecture

Secure design, cloud architecture, infrastructure, virtualization, resilience, and data protection.

Security operations

Monitoring, incident response, forensics, vulnerability management, and operational hardening.

Governance and risk

Risk management, compliance, privacy, policy, awareness, and third-party risk.

PBQ application

Use practical scenarios to connect theory with tasks such as log analysis, ordering, and configuration reasoning.