CompTIA Security+
Security concepts, architecture, operations, governance, and incident response.
Learn one objective at a time
A suggested starting lesson is highlighted. It becomes your current lesson only when you focus this certification on Today.
Course pace and remaining work
1.1 · Compare and contrast various types of security controls.
1 bite-sized block · next block about 15m
Full course map27 other objectivesOpen when you want to review progress or look ahead
1.2 · Summarize fundamental security concepts.
1 bite-sized block · next block about 15m
1.3 · Explain the importance of change management processes and the impact to security.
1 bite-sized block · next block about 15m
1.4 · Explain the importance of using appropriate cryptographic solutions.
1 bite-sized block · next block about 15m
2.1 · Compare and contrast common threat actors and motivations.
1 bite-sized block · next block about 15m
2.2 · Explain common threat vectors and attack surfaces.
1 bite-sized block · next block about 15m
2.3 · Explain various types of vulnerabilities.
1 bite-sized block · next block about 15m
2.4 · Given a scenario, analyze indicators of malicious activity.
1 bite-sized block · next block about 15m
2.5 · Explain the purpose of mitigation techniques used to secure the enterprise.
1 bite-sized block · next block about 15m
3.1 · Compare and contrast security implications of different architecture models.
1 bite-sized block · next block about 15m
3.2 · Given a scenario, apply security principles to secure enterprise infrastructure.
1 bite-sized block · next block about 15m
3.3 · Compare and contrast concepts and strategies to protect data.
1 bite-sized block · next block about 15m
3.4 · Explain the importance of resilience and recovery in security architecture.
1 bite-sized block · next block about 15m
4.1 · Given a scenario, apply common security techniques to computing resources.
1 bite-sized block · next block about 15m
4.2 · Explain the security implications of proper hardware, software, and data asset management.
1 bite-sized block · next block about 15m
4.3 · Explain various activities associated with vulnerability management.
1 bite-sized block · next block about 15m
4.4 · Explain security alerting and monitoring concepts and tools.
1 bite-sized block · next block about 15m
4.5 · Given a scenario, modify enterprise capabilities to enhance security.
1 bite-sized block · next block about 15m
4.6 · Given a scenario, implement and maintain identity and access management.
1 bite-sized block · next block about 15m
4.7 · Explain the importance of automation and orchestration related to secure operations.
1 bite-sized block · next block about 15m
4.8 · Explain appropriate incident response activities.
1 bite-sized block · next block about 15m
4.9 · Given a scenario, use data sources to support an investigation.
1 bite-sized block · next block about 15m
5.1 · Summarize elements of effective security governance.
1 bite-sized block · next block about 15m
5.2 · Explain elements of the risk management process.
1 bite-sized block · next block about 15m
5.3 · Explain the processes associated with third-party risk assessment and management.
1 bite-sized block · next block about 15m
5.4 · Summarize elements of effective security compliance.
1 bite-sized block · next block about 15m
5.5 · Explain types and purposes of audits and assessments.
1 bite-sized block · next block about 15m
5.6 · Given a scenario, implement security awareness practices.
1 bite-sized block · next block about 15m
Finish with mixed practice across the top-level objective map. This is preparation evidence, not proof of every vendor subobjective or a guarantee of an exam result.