CompTIA Security+ is the standard entry-level cybersecurity certification, often the next step after Network+ for anyone heading specifically toward a security-focused role. The current exam is SY0-701, which replaced the older SY0-601 version and consolidated the objectives from 35 down to 28 across five domains, with a further objective refresh in 2026 that added stronger coverage of generative AI security risks and current compliance frameworks — the exam code itself hasn't changed, so make sure any material you're using reflects the current objectives version, not just the current exam code.
Domain breakdown
| Domain | Focus |
|---|---|
| General Security Concepts | Security controls, fundamental security concepts, change management |
| Threats, Vulnerabilities & Mitigations | Threat actors, attack techniques, vulnerability types, mitigation strategies |
| Security Architecture | Architecture models, cloud/hybrid security, data protection strategies |
| Security Operations | Incident response, monitoring, identity and access management — this domain carries heavy scenario-based weighting |
| Security Program Management & Oversight | Governance, risk management, compliance, third-party risk |
What's emphasized in the current version
SY0-701 was built with heavier focus on zero-trust architecture, hybrid and cloud environments specifically (rather than assuming a purely on-premises world), and stronger coverage of communication and reporting skills — reflecting that real security roles involve explaining risk to non-technical stakeholders, not just technical mitigation. The 2026 refresh layered in more explicit AI-related risk content, which tracks with how fast that's become a real concern in the field (see our coverage of AI-powered phishing for a concrete example of why).
Performance-based questions
Security+ mixes standard multiple-choice with performance-based questions — simulated tasks like ordering firewall rules correctly, placing devices correctly within a network topology diagram, or analyzing a log excerpt to identify what happened. These tend to cluster in the Security Operations domain and are exactly why memorization alone isn't a sufficient study strategy for this exam.
A study plan
- Start with the official objectives PDF from CompTIA directly — a lot of third-party material online still describes the retired SY0-601 structure, and there's no way to spot a stale copy at a glance without checking against the source.
- Build scenario-thinking, not just recall. For every concept you study, ask "what would this look like as a performance-based question" rather than just memorizing a definition.
- Weight your study time toward Security Operations given its heavier real-world emphasis and scenario density.
- Use current practice exams only — confirm they're built around SY0-701 with the 2026 objective refresh, not an older version.