Study Guide 2023+

comptia

Warning: These notes are partial, ongoing, incomplete, and may contain typos/inaccuracies. (They are kept factually accurate, time permitting.)

They are being united from many disparate notes created in the past and the layout/organization will gradually improve with time!

Please view them on a computer as they are not optimized for mobile (although you can still view them on Mobile along with the Flashcards at your own risk)!

Topics and code examples are lazy-loaded and may require two-clicks from the TOC to correctly calculate the updated x,y coordinates (after rendering). Thanks!

COMPTIA SY0-701: Overview

The COMPTIA Security+ SY0-701 exam divides into five general security topics:

  1. General Security Concepts
  2. Threats, Vulnerabilities, and Mitigations
  3. Security Architecture
  4. Security Operations
  5. Security Program Management and Oversight

Summarizing and clarifying certain topics. Most is stuff I already know.

  1. https://www.comptia.org/certifications/security#objectivesform
  2. https://www.comptia.org/faq/security/what-is-on-the-comptia-security-exam

COMPTIA SY0-701: General Security Concepts

Security Controls

Compare and contrast various types of security controls:

Security Concepts

Summarize fundamental security concepts:

Change Management

Explain the importance of change management processes and the impact to security:

Cryptographic Solutions

Explain the importance of using appropriate cryptographic solutions:

  1. https://csrc.nist.gov/glossary/term/security_controls
  2. https://csrc.nist.gov/glossary/term/operational_controls
  3. Committee on National Security Systems (CNSS 4009) Glossary
  4. https://konghq.com/learning-center/cloud-connectivity/control-plane-vs-data-plane

COMPTIA SY0-701: Threats, Vulnerabilities, and Mitigations

Threat Actors

Compare and contrast common threat actors and motivations:

Attack Surfaces

Explain common threat vectors and attack surfaces:

Vulnerabilities

Explain various types of vulnerabilities:

Indicators of Malicious Activity

Given a scenario, analyze indicators of malicious activity:

Mitigation Techniques

Explain the purpose of mitigation techniques used to secure the enterprise:

  1. https://bluecatnetworks.com/blog/four-major-dns-attack-types-and-how-to-mitigate-them/
  2. https://research.nccgroup.com/wp-content/uploads/2021/09/TOCTOU_whitepaper.pdf
  3. https://www.cloudflare.com/learning/ddos/dns-amplification-ddos-attack/

COMPTIA SY0-701: Security Architecture

Architecture Models

Compare and contrast security implications of different architecture models:

Security Principles

Given a scenario, apply security principles to secure enterprise infrastructure:

Data Protection Concepts

Compare and contrast concepts and strategies to protect data:

Resilience and Recovery

Explain the importance of resilience and recovery in security architecture:

COMPTIA SY0-701: Security Operations

Common Security Techniques

Given a scenario, apply common security techniques to computing resources:

Security Implications of Proper Asset Management

Explain the security implications of proper hardware, software, and data asset management:

Vulnerability Management

Explain various activities associated with vulnerability management:

Monitoring Concepts and Tools

Explain security alerting and monitoring concepts and tools:

Modify Security

Given a scenario, modify enterprise capabilities to enhance security:

Identity and Access Management

Given a scenario, implement and maintain identity and access management:

Automation and Orchestration

Explain the importance of automation and orchestration related to secure operations:

Incident Response

Explain appropriate incident response activities:

Use Data Sources

Given a scenario, use data sources to support an investigation:

  1. https://www.udemy.com/course/comptia-security-sy0-701-practice-exams-2nd-edition
  2. https://www.cloudflare.com/learning/email-security/dmarc-dkim-spf/
  3. https://www.courier.com/guides/dmarc-vs-spf-vs-dkim/
  4. https://www.strongdm.com/blog/saml-vs-oauth
  5. https://jwt.io/

COMPTIA SY0-701: Security Program Management and Oversight

Security Governance

Summarize elements of effective security governance:

Risk Management Process

Explain elements of the risk management process:

Third-Parties

Explain the processes associated with third-party risk assessment and management:

Effective Security Compliance

Summarize elements of effective security compliance:

Audits and Assessments

Explain types and purposes of audits and assessments:

Security Awareness Practices

Given a scenario, implement security awareness practices:

  1. https://www.druva.com/blog/understanding-rpo-and-rto
  2. https://corpslakes.erdc.dren.mil/partners/moumoa.cfm
  3. https://www.pandadoc.com/blog/master-services-agreement-vs-statement-of-work/

COMPTIA SY0-701: Miscellaneous Concepts

Windows Security

Security Systems

Kinds of Phishing

Regulatory Designations

Elliptic Curve Cryptography

RAID

RAID Configurations:

Bluetooth

Important Acronyms

Wireless Security Protocols

Key ISO Standards

  1. https://www.cisco.com/c/en/us/support/docs/security-vpn/remote-authentication-dial-user-service-radius/13838-10.html
  2. https://www.udemy.com/course/securityplus/learn/quiz/6090708#overview