Skip to course content

Cybersecurity Essentials CompTIA Security+ SY0-701 Preparation

Technology Changes Fast. Security Fundamentals Do Not.

Strong security decisions begin with fundamentals you can explain, connect, and apply.

Cybersecurity Essentials gives you a cleaner path into CompTIA Security+. Start with guided video instruction, then reinforce what you know with flashcards, practice, labs, PBQs, and live support.

$549 12 months of access Zero-interest payment plans available

Professional learner taking notes beside a tablet during cybersecurity study
Course Access
12 monthsof full access

Preview 5 complete lessons before enrollment.

Cybersecurity Essentials Course Overview

01
Protect

Choose the Right Controls

Connect control purpose, security principles, cryptography, architecture, and data protection to the asset and risk.

02
Recognize

Interpret Threat Activity

Trace actors, vectors, vulnerabilities, indicators, and attack surfaces before selecting a mitigation.

03
Operate

Secure and Monitor the Environment

Apply hardening, identity, vulnerability management, alerting, automation, response, and investigation practices.

04
Govern

Connect Security to the Business

Translate governance, risk, supplier oversight, compliance, assessment, and awareness into defensible action.

Cybersecurity professionals reviewing security-control decisions

Connected Security Decisions

Build the Reasoning Behind Practical Cybersecurity Work

This course goes beyond isolated definitions. You will connect security controls, threats, architecture, operations, governance, and business requirements, then practice choosing responses that match the evidence, authority, and risk.

  • 01
    Explain What a Control Protects

    Distinguish control categories and functions, then connect each safeguard to the asset, threat, and security objective it supports.

  • 02
    Recognize Threat Activity

    Interpret actors, vectors, vulnerabilities, indicators, and attack surfaces before choosing an appropriate mitigation.

  • 03
    Compare Architecture and Recovery Decisions

    Evaluate infrastructure, data protection, resilience, continuity, and recovery choices as one connected security design.

  • 04
    Operate and Govern Security

    Apply secure access, monitoring, vulnerability, incident-response, risk, compliance, assessment, and awareness practices.

Review the Complete Curriculum

Five-Domain CompTIA Security+ Architecture

Five Domains. One Connected Security System.

Threat decisions affect architecture. Architecture shapes operations. Governance, risk, and compliance determine how security work is authorized, measured, and improved across all 28 modules.

Cybersecurity professionals collaborating on foundational security decisions 9 Modules
Domains 1–234% Exam Weight

Security Foundations and Threat Defense

Build the control, cryptography, threat, vulnerability, and mitigation reasoning that supports every later security decision.

  • General Security Concepts · 12%
  • Threats, Vulnerabilities, and Mitigations · 22%
  • Controls, secure change, cryptography, and trust
  • Threat actors, attack surfaces, indicators, and mitigations
Explore Domains 1 and 2 →
Professional learning environment representing Security Architecture 4 Modules
Domain 318% Exam Weight

Security Architecture

Evaluate architecture models, enterprise infrastructure, data protection, resilience, recovery, and the trade-offs connecting them.

  • Architecture model implications
  • Secure enterprise infrastructure
  • Data protection strategies
  • Resilience and recovery
Explore Security Architecture →
Professional learning environment representing Security Operations 15 Modules
Domains 4–548% Exam Weight

Operations and Program Oversight

Connect secure operations with governance, risk, compliance, assessment, third-party oversight, and awareness across the full security program.

  • Security Operations · 28%
  • Security Program Management and Oversight · 20%
  • Monitoring, IAM, automation, response, and investigation
  • Governance, risk, compliance, assurance, and awareness
Explore Operations and Oversight →

The percentages are the CompTIA Security+ SY0-701 domain weights.

The Cybersecurity Decision Workflow

Work Through Five Clear Moves

Each move helps you slow down the scenario, connect the evidence, and choose a security response you can defend.

Applied Cybersecurity Skills

Practice the Work Security Professionals Do

Move from isolated concepts into the connected work that protects systems, explains risk, supports investigations, and keeps security decisions defensible.

SECURITY CAPABILITY

Design Layered Protection

Connect control functions, secure architecture, identity, data protection, resilience, and recovery to the environment.

  • Match controls to threats and assets
  • Compare architecture and data safeguards
  • Plan resilience, continuity, and recovery
OPERATIONAL MASTERY

Investigate and Respond

Use alerts, logs, endpoint evidence, network data, containment, eradication, recovery, and lessons learned.

  • Interpret security signals and context
  • Choose appropriate incident actions
  • Preserve evidence and document outcomes
GOVERNANCE FOCUS

Manage Risk and Assurance

Translate policies, risk decisions, third-party obligations, compliance requirements, assessments, and awareness into accountable work.

  • Connect requirements to control evidence
  • Evaluate supplier and residual risk
  • Improve awareness and oversight

Prevent · Detect · Respond

Apply Security Across the Full Operating Cycle.

Security work changes with the evidence and the environment. The course shows where prevention, monitoring, response, recovery, and governance connect.

01Reduce avoidable exposure.

Prevent and Harden

Use secure configuration, segmentation, least privilege, cryptography, data protection, asset management, and vulnerability remediation.

  • Protect before an event
  • Reduce attack paths and privileges
  • Document approved exceptions
02Turn signals into context.

Detect and Investigate

Use baselines, telemetry, logs, alerts, SIEM correlation, packet data, endpoint artifacts, and threat intelligence to understand what happened.

  • Tune monitoring to the environment
  • Validate indicators before escalation
  • Preserve evidence and decision context
03Contain risk and strengthen the system.

Respond and Improve

Apply incident-response phases, communication, recovery, lessons learned, governance, risk treatment, assessment, and awareness improvement.

  • Match action to authority and urgency
  • Recover without losing evidence
  • Convert lessons into durable change

Built for Active Learning

Everything You Need to Learn.

Move from a clear explanation into retrieval practice, scenario work, practical activities, and targeted review. Keep the distinctions you need and return to the topics that require more attention.

Learners reviewing cybersecurity architecture and infrastructure decisions

Connected Learning System

Build the Skills Every Secure Future Starts With.

Each resource supports a different part of the learning cycle without separating security topics that must work together.

01

28 Guided Modules

Detailed explanations establish the security context, control purpose, technical distinctions, and decision factors behind each domain.

02

112 Scenario Quizzes

Each section closes with a scenario-based quiz that checks integrated understanding and response selection.

03

28 Applied Practice Activities

Use module-specific practice to identify where the reasoning is strong and where targeted review is needed.

04

28 Flashcard Sets

Strengthen recall of definitions, distinctions, protocols, controls, roles, evidence sources, and response patterns.

05

43 Practical Activities and Optional Live Support

Apply concepts through enrolled practical activities and use optional live-online instruction when a cohort is scheduled.

Complete Curriculum Browser

See Exactly What You Will Learn

Search all 28 modules, filter by domain, and open any module to review its four sections, 36 chapter-level activities, lesson, flashcards, and applied practice.

28 Complete Modules112 Structured Sections896 Instructional Chapters112 Scenario Quizzes
28 modules
Domain 1 · General Security Concepts · 12% exam weight

Module 1 · Types of Security Controls

Distinguish managerial, operational, technical, and physical controls and explain the protective function each control performs.

Cybersecurity Essentials course logo
Guided LessonApplied PracticeFlashcards4 Scenario Quizzes36 Chapter-Level Activities
01Security Control Foundations
  1. Chapter 1: Purpose of Security Controls
  2. Chapter 2: Security Control Categories
  3. Chapter 3: Technical Controls
  4. Chapter 4: Managerial Controls
  5. Chapter 5: Operational Controls
  6. Chapter 6: Physical Controls
  7. Chapter 7: How Controls Protect Assets
  8. Chapter 8: Layering Controls Across the Environment
  9. Chapter 9: Scenario-Based Quiz
02Managerial and Operational Controls
  1. Chapter 1: Policies and Procedures
  2. Chapter 2: Security Planning and Oversight
  3. Chapter 3: Governance and Accountability
  4. Chapter 4: Personnel-Focused Security Controls
  5. Chapter 5: Day-to-Day Operational Processes
  6. Chapter 6: Monitoring and Account Reviews
  7. Chapter 7: Incident Response Procedures
  8. Chapter 8: Applying Human-Driven Controls
  9. Chapter 9: Scenario-Based Quiz
03Technical and Physical Controls
  1. Chapter 1: Automated Security Enforcement
  2. Chapter 2: Multi-Factor Authentication
  3. Chapter 3: Firewalls and Access Technologies
  4. Chapter 4: Encryption and Secure Data Handling
  5. Chapter 5: System Hardening and Secure Configuration
  6. Chapter 6: Facility and Asset Protection
  7. Chapter 7: Locks, Cameras, Guards, and Barriers
  8. Chapter 8: Matching Technical and Physical Controls to Risk
  9. Chapter 9: Scenario-Based Quiz
04Security Control Types and Response Logic
  1. Chapter 1: Preventive Controls
  2. Chapter 2: Deterrent Controls
  3. Chapter 3: Detective Controls
  4. Chapter 4: Corrective Controls
  5. Chapter 5: Compensating Controls
  6. Chapter 6: Directive Controls
  7. Chapter 7: Selecting Controls by Timing and Purpose
  8. Chapter 8: Applying Controls in Real-World Scenarios
  9. Chapter 9: Scenario-Based Quiz

Complete Curriculum Fallback

JavaScript is not required to review the curriculum. Open any module below to see its four sections and all chapter titles.

Domain 1 — General Security Concepts · 12% Exam Weight

Module 1 — Types of Security Controls
Section 1 — Security Control Foundations
  1. Purpose of Security Controls
  2. Security Control Categories
  3. Technical Controls
  4. Managerial Controls
  5. Operational Controls
  6. Physical Controls
  7. How Controls Protect Assets
  8. Layering Controls Across the Environment
  9. Scenario-Based Quiz
Section 2 — Managerial and Operational Controls
  1. Policies and Procedures
  2. Security Planning and Oversight
  3. Governance and Accountability
  4. Personnel-Focused Security Controls
  5. Day-to-Day Operational Processes
  6. Monitoring and Account Reviews
  7. Incident Response Procedures
  8. Applying Human-Driven Controls
  9. Scenario-Based Quiz
Section 3 — Technical and Physical Controls
  1. Automated Security Enforcement
  2. Multi-Factor Authentication
  3. Firewalls and Access Technologies
  4. Encryption and Secure Data Handling
  5. System Hardening and Secure Configuration
  6. Facility and Asset Protection
  7. Locks, Cameras, Guards, and Barriers
  8. Matching Technical and Physical Controls to Risk
  9. Scenario-Based Quiz
Section 4 — Security Control Types and Response Logic
  1. Preventive Controls
  2. Deterrent Controls
  3. Detective Controls
  4. Corrective Controls
  5. Compensating Controls
  6. Directive Controls
  7. Selecting Controls by Timing and Purpose
  8. Applying Controls in Real-World Scenarios
  9. Scenario-Based Quiz
Module 2 — Fundamental Security Concepts
Section 1 — Core Security Principles and Authentication
  1. Confidentiality, Integrity, and Availability
  2. Confidentiality and Data Protection
  3. Integrity and Data Trust
  4. Availability and Service Continuity
  5. Non-Repudiation
  6. Authenticating People
  7. Authenticating Systems
  8. Authentication Models
  9. Scenario-Based Quiz
Section 2 — Access Control and Gap Analysis
  1. Attribute-Based Access Control
  2. Discretionary Access Control
  3. Access Decisions After Authentication
  4. Gap Analysis Purpose
  5. Establishing the Current Baseline
  6. Defining the Target State
  7. Conducting the Gap Analysis
  8. Prioritizing Security Improvements
  9. Scenario-Based Quiz
Section 3 — Zero Trust and Policy-Driven Security
  1. Zero Trust Fundamentals
  2. Never Trust, Always Verify
  3. Least Privilege Access
  4. Microsegmentation
  5. Adaptive Identity
  6. Threat Scope Reduction
  7. Policy Engine
  8. Subject and System Access Requests
  9. Scenario-Based Quiz
Section 4 — Physical Security and Deception Technologies
  1. Physical Security Foundations
  2. Bollards, Fencing, and Perimeter Barriers
  3. Access Control Vestibules
  4. Video Surveillance and Security Guards
  5. Physical Security Sensors
  6. Deception and Disruption Technology
  7. Honeypots and Honeynets
  8. Honeyfiles and Honeytokens
  9. Scenario-Based Quiz
Module 3 — Change Management Processes
Section 1 — Change Management Foundations
  1. Purpose of Change Management
  2. Business Processes
  3. Ownership and Accountability
  4. Impact Analysis
  5. Security Requirements for Change
  6. Test Results and Validation
  7. Change Approval and Documentation
  8. Change Management Risk Reduction
  9. Scenario-Based Quiz
Section 2 — Change Planning and Implementation Controls
  1. Maintenance Windows
  2. Standard Operating Procedures
  3. Allow Lists
  4. Deny Lists
  5. Restricted Activities
  6. Downtime Planning
  7. Service Restart
  8. Application Restart
  9. Scenario-Based Quiz
Section 3 — Technical Impacts and Environment Dependencies
  1. Legacy Applications
  2. Application and System Dependencies
  3. Network and System Diagrams
  4. Architecture Diagrams
  5. Data Flow Diagrams
  6. Security Control Dependencies
  7. Compatibility and Regression Risk
  8. Backout Planning
  9. Scenario-Based Quiz
Section 4 — Documentation, Policy Updates, and Version Control
  1. Policies and Procedures
  2. Updating Policies and Procedures
  3. Regulatory and Compliance Updates
  4. Lessons Learned After Security Events
  5. Version Control Fundamentals
  6. Major, Minor, and Patch Versions
  7. Change Records and Audit Trails
  8. Continuous Improvement Through Controlled Change
  9. Scenario-Based Quiz
Module 4 — Cryptographic Solutions
Section 1 — Public Key Infrastructure and Encryption Foundations
  1. Public Key Infrastructure
  2. Public and Private Keys
  3. Key Escrow
  4. Encryption Purpose
  5. Full-Disk Encryption
  6. Partition Encryption
  7. Volume Encryption
  8. Database Encryption
  9. Scenario-Based Quiz
Section 2 — Encryption Types, Algorithms, and Key Exchange
  1. Transport and Communication Encryption
  2. Asymmetric Encryption
  3. Asymmetric Encryption Characteristics
  4. Symmetric Encryption
  5. Symmetric Encryption Characteristics
  6. Key Exchange
  7. Diffie-Hellman Key Exchange
  8. Encryption Algorithms and Key Length
  9. Scenario-Based Quiz
Section 3 — Cryptographic Tools and Data Protection Techniques
  1. Cryptographic Tools
  2. Trusted Platform Module
  3. Key Management System
  4. Hardware Security Module
  5. Obfuscation
  6. Steganography
  7. Tokenization
  8. Data Masking
  9. Scenario-Based Quiz
Section 4 — Hashing, Digital Signatures, and Certificate Trust
  1. Hashing
  2. Salting
  3. Key Stretching
  4. Digital Signatures
  5. Open Public Ledger
  6. Certificates
  7. Certificate Authority
  8. Certificate Revocation and Certificate Types
  9. Scenario-Based Quiz

Domain 2 — Threats, Vulnerabilities, and Mitigations · 22% Exam Weight

Module 5 — Common Threat Actors and Motivations
Section 1 — Threat Actor Types and Profiles
  1. Threat Actor Overview
  2. Nation-State Actors
  3. Organized Crime
  4. Hacktivists
  5. Unskilled Attackers
  6. Insider Threats
  7. Internal Actors
  8. External Actors
  9. Scenario-Based Quiz
Section 2 — Actor Access, Resources, and Capability
  1. Shadow IT
  2. Legitimate Access Abuse
  3. Unauthorized External Access
  4. Resources and Funding
  5. Well-Funded Actors
  6. Limited-Funding Actors
  7. Level of Sophistication and Capability
  8. High- and Low-Sophistication Actors
  9. Scenario-Based Quiz
Section 3 — Data, Financial, and Disruption Motivations
  1. Understanding Threat Actor Motivations
  2. Data Exfiltration
  3. Financial Gain
  4. Blackmail
  5. Service Disruption
  6. Disruption and Chaos
  7. Revenge
  8. Motivation-to-Impact Mapping
  9. Scenario-Based Quiz
Section 4 — Ideological, Espionage, and Strategic Motivations
  1. Espionage
  2. Philosophical and Political Beliefs
  3. Ethical Motivations
  4. War
  5. Cyber Sabotage
  6. Critical Infrastructure Targeting
  7. Predicting Actor Behavior
  8. Applying Threat Actor Analysis
  9. Scenario-Based Quiz
Module 6 — Common Threat Vectors and Attack Surfaces
Section 1 — Communication and Content-Based Threat Vectors
  1. Messaging-Based Threat Overview
  2. Email
  3. Short Message Service (SMS)
  4. Instant Messaging
  5. Image-Based Attacks
  6. File-Based Attacks
  7. Voice Calls
  8. Removable Devices
  9. Scenario-Based Quiz
Section 2 — Software and Network Attack Surfaces
  1. Client-Based Vulnerable Software
  2. Agentless Vulnerable Software
  3. Unsupported Systems and Applications
  4. Unsecured Wireless Networks
  5. Unsecured Wired Networks
  6. Unsecured Bluetooth Connections
  7. Open Service Ports
  8. Default Credentials
  9. Scenario-Based Quiz
Section 3 — Third-Party and Supply Chain Attack Surfaces
  1. Managed Service Providers
  2. Vendors
  3. Suppliers
  4. Third-Party Solution Integration
  5. Service Provider Compromise
  6. Supplier Security Failures
  7. Supply Chain Attack Propagation
  8. Reducing Third-Party Attack Surfaces
  9. Scenario-Based Quiz
Section 4 — Human Vectors and Social Engineering Attacks
  1. Human Vectors and Social Engineering
  2. Phishing
  3. Vishing
  4. Smishing
  5. Misinformation and Disinformation
  6. Impersonation and Business Email Compromise
  7. Pretexting and Watering Hole Attacks
  8. Brand Impersonation and Typosquatting
  9. Scenario-Based Quiz
Module 7 — Various Types of Vulnerabilities
Section 1 — Software and Application Vulnerabilities
  1. Software Vulnerability Foundations
  2. Memory Injection
  3. Buffer Overflow
  4. Race Conditions
  5. Time-of-Check and Time-of-Use
  6. Malicious Updates
  7. Structured Query Language Injection
  8. Cross-Site Scripting
  9. Scenario-Based Quiz
Section 2 — Hardware, Firmware, and Legacy Vulnerabilities
  1. Hardware Vulnerability Foundations
  2. Firmware Vulnerabilities
  3. End-of-Life Hardware
  4. Legacy Systems
  5. Unsupported Software
  6. Missing Security Updates
  7. Hardware-Based Persistence
  8. Reducing Legacy System Risk
  9. Scenario-Based Quiz
Section 3 — Virtualization, Cloud, and Supply Chain Vulnerabilities
  1. Virtualization Vulnerability Foundations
  2. Virtual Machine Escape
  3. Resource Reuse
  4. Cloud-Specific Security Weaknesses
  5. Supply Chain Security
  6. Service Provider Risk
  7. Hardware Provider Risk
  8. Software Provider Risk
  9. Scenario-Based Quiz
Section 4 — Cryptographic, Mobile, and Zero-Day Vulnerabilities
  1. Cryptographic Misconfiguration
  2. Encryption and Key Management Weaknesses
  3. Sideloading
  4. Jailbreaking
  5. Mobile Device Security Exposure
  6. Zero-Day Vulnerabilities
  7. Patch Availability and Defensive Timing
  8. Prioritizing High-Risk Vulnerabilities
  9. Scenario-Based Quiz
Module 8 — Indicators of Malicious Activity
Section 1 — Malware and Host-Based Indicators
  1. Indicators of Malicious Activity
  2. Malware
  3. Trojan
  4. Worm
  5. Virus
  6. Logic Bomb
  7. Rootkit
  8. Bloatware
  9. Scenario-Based Quiz
Section 2 — Network and Wireless Attack Indicators
  1. Physical Attacks and Brute Force
  2. RFID Cloning
  3. Distributed Denial-of-Service
  4. Reflected Attacks
  5. Domain Name System Attacks
  6. DNS Spoofing
  7. Evil Twin
  8. Wi-Fi Spoofing
  9. Scenario-Based Quiz
Section 3 — Code, Session, and Protocol Attack Indicators
  1. On-Path Attacks
  2. Malicious Code
  3. Buffer Overflow
  4. Replay Attack
  5. Forgery
  6. Downgrade Attacks
  7. Collision Attacks
  8. Password Spraying
  9. Scenario-Based Quiz
Section 4 — Behavioral, Log, and Threat Intelligence Indicators
  1. Account Lockout
  2. Concurrent Session Usage
  3. Blocked Content
  4. Impossible Travel
  5. Resource Consumption
  6. Resource Inaccessibility
  7. Out-of-Cycle Logging
  8. Published Indicators and Missing Logs
  9. Scenario-Based Quiz
Module 9 — Mitigation Techniques to Secure the Enterprise
Section 1 — Network Segmentation and Access Control
  1. Segmentation
  2. Segmenting Systems by Business Function
  3. Access Control
  4. Access Control Lists
  5. Permissions
  6. Least Privilege
  7. Policy-Based Access Decisions
  8. Reducing Unauthorized Access
  9. Scenario-Based Quiz
Section 2 — Application Control and Enterprise Maintenance
  1. Application Allow List
  2. Isolation
  3. Patching
  4. Patch Prioritization
  5. Configuration Enforcement
  6. Standardized Security Settings
  7. Decommissioning
  8. Reducing Enterprise Attack Surface
  9. Scenario-Based Quiz
Section 3 — Encryption, Monitoring, and Defensive Visibility
  1. Encryption
  2. Data at Rest Protection
  3. Data in Transit Protection
  4. Monitoring
  5. Detecting Unusual Activity
  6. Identifying Security Incidents
  7. Monitoring for Threat Impact
  8. Applying Defensive Visibility Across the Enterprise
  9. Scenario-Based Quiz
Section 4 — Endpoint Protection and System Hardening
  1. System Hardening
  2. Installation of Endpoint Protection
  3. Host-Based Firewall
  4. Host-Based Intrusion Prevention System
  5. Disabling Ports and Protocols
  6. Default Password Changes
  7. Removal of Unnecessary Software
  8. Hardening Hosts Against Attack
  9. Scenario-Based Quiz

Domain 3 — Security Architecture · 18% Exam Weight

Module 10 — Security Implications of Different Architecture Models
Section 1 — Architecture and Cloud Deployment Models
  1. Architecture and Infrastructure Concepts
  2. Cloud Architecture
  3. Shared Responsibility Model
  4. Responsibility Matrix
  5. Hybrid Considerations
  6. Cloud Service Dependencies
  7. Cloud-Based Security Tradeoffs
  8. Architecture Risk Evaluation
  9. Scenario-Based Quiz
Section 2 — Modern Infrastructure and Application Architecture
  1. Infrastructure as Code
  2. IaC Security Risks
  3. Serverless Architecture
  4. Serverless Security Responsibilities
  5. Microservices Architecture
  6. Microservice APIs and Access Control
  7. Modular Service Dependencies
  8. Securing Modern Application Architecture
  9. Scenario-Based Quiz
Section 3 — Network and Enterprise Architecture Models
  1. Network Infrastructure
  2. Logical Segmentation
  3. Segmentation and Lateral Movement Control
  4. Software-Defined Networking
  5. SDN Control Plane Considerations
  6. On-Premises Architecture
  7. Centralized Architecture
  8. Decentralized Architecture
  9. Scenario-Based Quiz
Section 4 — Virtualization, Iot, and Operational Technology Architecture
  1. Virtualization
  2. Virtual Machine Escape Risk
  3. Internet of Things
  4. IoT Processing and Security Limitations
  5. Industrial Control Systems and SCADA
  6. ICS/SCADA Availability and Safety
  7. Real-Time Operating Systems
  8. Security Implications of Time-Sensitive Systems
  9. Scenario-Based Quiz
Module 11 — Security Principles to Secure Enterprise Infrastructure
Section 1 — Infrastructure Placement and Security Architecture
  1. Device Placement
  2. Security Zones
  3. Attack Surface
  4. Connectivity
  5. Failure Modes
  6. Device Attributes
  7. Inline Security Devices
  8. Tap and Monitor Deployments
  9. Scenario-Based Quiz
Section 2 — Access Gateways and Network Security Devices
  1. Jump Server
  2. Proxy Server
  3. Intrusion Prevention System
  4. Intrusion Detection System
  5. Load Balancer
  6. Network-Based Sensors
  7. Host-Based Sensors
  8. Securing Traffic Through Infrastructure Devices
  9. Scenario-Based Quiz
Section 3 — Network Access Control and Firewall Technologies
  1. 802.1X
  2. Extensible Authentication Protocol
  3. Firewall Types
  4. Stateful Firewalls
  5. Web Application Firewall
  6. Next-Generation Firewalls
  7. Layer 4 Firewalls
  8. Layer 7 Firewalls
  9. Scenario-Based Quiz
Section 4 — Secure Communication and Control Selection
  1. Secure Communication and Access
  2. Remote Access
  3. Tunneling
  4. Internet Protocol Security
  5. Software-Defined Wide Area Network
  6. Selecting Effective Controls
  7. Matching Controls to Enterprise Risk
  8. Applying Infrastructure Security Principles
  9. Scenario-Based Quiz
Module 12 — Concepts and Strategies to Protect Data
Section 1 — Data Types and Regulatory Context
  1. Concepts and Strategies to Protect Data
  2. Data Types and Risk
  3. Regulated Data
  4. Personally Identifiable Information
  5. Protected Health Information
  6. Trade Secrets
  7. Intellectual Property
  8. Legal and Financial Information
  9. Scenario-Based Quiz
Section 2 — Data Readability and Classification Foundations
  1. Human-Readable Data
  2. Non-Human-Readable Data
  3. Data Classification Purpose
  4. Classification Levels
  5. Data Sensitivity and Handling Requirements
  6. Access Controls by Classification
  7. Encryption and Monitoring Requirements
  8. Applying Classification to Data Protection
  9. Scenario-Based Quiz
Section 3 — Data Classification Levels
  1. Sensitive Data
  2. Confidential Data
  3. Public Data
  4. Restricted Data
  5. Private Data
  6. Critical Data
  7. Comparing Classification Labels
  8. Prioritizing Critical and Regulated Data
  9. Scenario-Based Quiz
Section 4 — Protection Strategy and Data Handling Controls
  1. Aligning Protection to Data Type
  2. Protecting Regulated Data
  3. Securing Sensitive and Confidential Data
  4. Restricting Private and Restricted Data
  5. Protecting Critical Business Data
  6. Preventing Unauthorized Disclosure
  7. Monitoring Data Access and Sharing
  8. Applying Data Protection Strategies
  9. Scenario-Based Quiz
Module 13 — Resilience and Recovery in Security Architecture
Section 1 — Availability and Redundancy Foundations
  1. Resilience and Recovery Architecture
  2. High Availability
  3. Redundancy
  4. Failover
  5. Load Balancing
  6. Workload Distribution
  7. Clustering
  8. Reducing Single Points of Failure
  9. Scenario-Based Quiz
Section 2 — Recovery Site Strategies
  1. Disaster Recovery Site Planning
  2. Hot Site
  3. Hot Site Replication
  4. Cold Site
  5. Cold Site Activation
  6. Warm Site
  7. Warm Site Tradeoffs
  8. Selecting Recovery Site Options
  9. Scenario-Based Quiz
Section 3 — Geographic and Platform Resilience
  1. Geographic Dispersion
  2. Regional Disaster Risk Reduction
  3. Platform Diversity
  4. Hardware and Software Diversity
  5. Multi-Cloud Systems
  6. Cloud Provider Dependency Reduction
  7. Replication Across Environments
  8. Architecture Diversity for Fault Tolerance
  9. Scenario-Based Quiz
Section 4 — Continuity of Operations and Recovery Planning
  1. Continuity of Operations Planning
  2. Critical Function Identification
  3. Personnel and Process Continuity
  4. Communication During Disruption
  5. Resource and Dependency Planning
  6. Recovery Activation Decisions
  7. Maintaining Operations During a Disaster
  8. Applying Resilience and Recovery Controls
  9. Scenario-Based Quiz

Domain 4 — Security Operations · 28% Exam Weight

Module 14 — Common Security Techniques to Computing Resources
Section 1 — Secure Baselines
  1. Purpose of Secure Baselines
  2. Standard Configuration Requirements
  3. Establishing Baselines
  4. Minimum Security Controls
  5. Deploying Baselines
  6. Automated Baseline Deployment
  7. Maintaining Baselines
  8. Detecting Configuration Drift
  9. Scenario-Based Quiz
Section 2 — Device Hardening Foundations
  1. Device Hardening Purpose
  2. Reducing the Attack Surface
  3. Disabling Unnecessary Services and Ports
  4. Removing Unnecessary Software
  5. Least Privilege for User Accounts
  6. Strong Authentication Requirements
  7. Endpoint Security Tools
  8. Patching and Security Updates
  9. Scenario-Based Quiz
Section 3 — Endpoint and Mobile Resource Security
  1. Mobile Device Security
  2. Encryption for Data at Rest and Transit
  3. Strong Mobile Authentication
  4. Trusted Application Sources
  5. Mobile Operating System and App Updates
  6. Workstation Security
  7. Antivirus and Anti-Malware Software
  8. Full-Disk Encryption for Workstations
  9. Scenario-Based Quiz
Section 4 — Network Device Hardening
  1. Switch Security
  2. Changing Default Passwords
  3. VLAN Segmentation
  4. Port Security
  5. Router Security
  6. Firmware Updates
  7. Disabling Unused Interfaces
  8. Secure Administrative Access and Firewall Rules
  9. Scenario-Based Quiz
Module 15 — Security Implications of Proper Hardware, Software, and Data Asset Management
Section 1 — Asset Acquisition and Accountability
  1. Asset Management Foundations
  2. Acquisition and Procurement Process
  3. Vendor and Product Evaluation
  4. Hardware, Software, and Data Intake
  5. Assignment of Assets
  6. Accounting for Asset Details
  7. Purchase Dates, Costs, and Documentation
  8. Security Implications of Asset Accountability
  9. Scenario-Based Quiz
Section 2 — Ownership and Classification
  1. Asset Ownership
  2. Owner Responsibilities
  3. Lifecycle Accountability
  4. Classification Purpose
  5. Classifying Hardware Assets
  6. Classifying Software Assets
  7. Classifying Data Assets
  8. Applying Protection Based on Sensitivity
  9. Scenario-Based Quiz
Section 3 — Monitoring, Tracking, and Inventory
  1. Monitoring and Asset Tracking
  2. Continuous Asset Visibility
  3. Detecting Unauthorized Access
  4. Identifying Abnormal Asset Behavior
  5. Inventory Management
  6. Hardware Inventory
  7. Software Inventory
  8. Tracking Assets Connected to the Network
  9. Scenario-Based Quiz
Section 4 — Enumeration, Disposal, and Decommissioning
  1. Enumeration
  2. Identifying Assets by Category
  3. Quantifying Assets Across the Network
  4. Vulnerability and Risk Assessment Support
  5. Disposal Planning
  6. Secure Data Removal
  7. Decommissioning Hardware and Software
  8. Reducing Data Leakage After Retirement
  9. Scenario-Based Quiz
Module 16 — Vulnerability Management Activities
Section 1 — Vulnerability Scanning and Discovery
  1. Vulnerability Management Activity Foundations
  2. Vulnerability Scan Purpose
  3. Systematic Security Weakness Review
  4. Known Vulnerability Identification
  5. Potential Vulnerability Discovery
  6. Insecure Software Configurations
  7. Outdated Software Versions
  8. Security Patch Assessment
  9. Scenario-Based Quiz
Section 2 — Static and Dynamic Analysis
  1. Code Analysis Foundations
  2. Static Analysis
  3. Static Application Security Testing
  4. Source Code Vulnerability Review
  5. Secure Coding Standard Validation
  6. Dynamic Analysis
  7. Dynamic Application Security Testing
  8. Runtime Behavior and Exploitation Testing
  9. Scenario-Based Quiz
Section 3 — Package Monitoring and Software Component Risk
  1. Package Monitoring Purpose
  2. Software Library Tracking
  3. Application Package Inventory
  4. Outdated Package Identification
  5. Known Component Vulnerabilities
  6. Software Dependency Risk
  7. Package Maintenance Status
  8. Reducing Third-Party Component Exposure
  9. Scenario-Based Quiz
Section 4 — Threat Feeds and Remediation Prioritization
  1. Threat Feed Purpose
  2. Real-Time Threat Information
  3. Cyber Threat Source Monitoring
  4. Emerging Vulnerability Awareness
  5. Linking Threat Feeds to Vulnerability Scanners
  6. Prioritizing Active Threats
  7. Remediation Decision Support
  8. Applying Intelligence to Vulnerability Management
  9. Scenario-Based Quiz
Module 17 — Security Alerting and Monitoring Concepts
Section 1 — Monitoring Computing Resources
  1. Security Alerting and Monitoring Foundations
  2. Monitoring Computing Resources
  3. Detecting Threats Before Harm Occurs
  4. Monitoring System Behavior
  5. Monitoring Applications and Programs
  6. Monitoring Networks and Infrastructure
  7. Identifying Performance and Security Issues
  8. Reducing Attack Impact Through Monitoring
  9. Scenario-Based Quiz
Section 2 — System Monitoring
  1. System Monitoring Purpose
  2. Servers and Workstations
  3. Network Devices
  4. Suspicious Activity Detection
  5. Unauthorized Change Detection
  6. Firewall and Antivirus Status
  7. Resource Usage and Service Uptime
  8. Authentication Failures and Unauthorized Access
  9. Scenario-Based Quiz
Section 3 — Application Monitoring
  1. Application Monitoring Purpose
  2. Software Behavior Monitoring
  3. Unexpected Data Access
  4. Unusual Transaction Activity
  5. Login Attempts and API Calls
  6. Database Query Monitoring
  7. Sensitive Data and Customer-Facing Services
  8. Runtime Errors and Application Anomalies
  9. Scenario-Based Quiz
Section 4 — Infrastructure Monitoring
  1. Infrastructure Monitoring Purpose
  2. Routers and Switches
  3. Virtual Machines and Storage
  4. Network Traffic Monitoring
  5. Bandwidth and Latency Issues
  6. Hardware Failure Detection
  7. Unusual Routing and Access Paths
  8. Infrastructure Anomalies and Attack Detection
  9. Scenario-Based Quiz
Module 18 — Enterprise Capabilities to Enhance Security
Section 1 — Firewall Foundations and Traffic Filtering
  1. Enterprise Security Capability Foundations
  2. Firewall Purpose
  3. Traffic Monitoring
  4. Incoming and Outgoing Traffic Filtering
  5. Security Policy Enforcement
  6. Firewall Placement Between Private Networks and the Internet
  7. Packet Inspection Basics
  8. Allow and Block Decisions
  9. Scenario-Based Quiz
Section 2 — Firewall Rules and Policy Enforcement
  1. Firewall Rule Purpose
  2. Allow Rules
  3. Deny Rules
  4. Source IP Criteria
  5. Destination IP Criteria
  6. Port-Based Rules
  7. Rule Processing Order
  8. Default Deny Logic
  9. Scenario-Based Quiz
Section 3 — Access Lists and Network Access Control
  1. Access Control List Purpose
  2. Router and Firewall ACL Use
  3. Network and Subnetwork Access Control
  4. Allowed and Denied Access Entries
  5. IP Address Filtering
  6. Port Number Filtering
  7. Protocol-Based Filtering
  8. Using ACLs to Limit Access
  9. Scenario-Based Quiz
Section 4 — Ports, Protocols, and Service Control
  1. Ports and Protocols
  2. Ports as Data Connection Points
  3. Protocols as Communication Rules
  4. HTTP on Port 80
  5. HTTPS on Port 443
  6. Common Service Port Mapping
  7. Enabling Only Necessary Ports and Services
  8. Controlling Traffic Flow Across the Enterprise
  9. Scenario-Based Quiz
Module 19 — Identity and Access Management
Section 1 — Identity and Access Management Foundations
  1. Identity and Access Management Purpose
  2. User Identity in Enterprise Systems
  3. Access Management Responsibilities
  4. Authentication and Access Decisions
  5. People, Systems, and Resource Access
  6. Security Risks from Poor IAM
  7. Access Control Across Business Roles
  8. Applying IAM to Enterprise Security
  9. Scenario-Based Quiz
Section 2 — Provisioning and De-Provisioning User Accounts
  1. User Account Provisioning
  2. Creating Access for New Users
  3. Assigning Initial Resource Access
  4. Role Changes and Access Updates
  5. User Account De-Provisioning
  6. Removing Access After Departure
  7. Preventing Orphaned Accounts
  8. Maintaining Security Through Account Lifecycle Control
  9. Scenario-Based Quiz
Section 3 — Permission Assignments and Access Implications
  1. Permission Assignment Purpose
  2. Read, Write, and Delete Permissions
  3. Resource-Level Access Control
  4. Permission Alignment to Job Roles
  5. Least Privilege Access
  6. Excessive Permissions and Privilege Creep
  7. Permission Review and Auditing
  8. Security Implications of Incorrect Permissions
  9. Scenario-Based Quiz
Section 4 — IAM Governance and Continuous Access Control
  1. Identity Lifecycle Governance
  2. Access Request Review
  3. Approval Workflows
  4. Access Recertification
  5. Monitoring Account Activity
  6. Detecting Unauthorized Access
  7. Correcting Access Misconfigurations
  8. Applying IAM Controls in Real-World Scenarios
  9. Scenario-Based Quiz
Module 20 — Automation and Orchestration Related to Secure Operations
Section 1 — Automation and Scripting Foundations
  1. Automation and Orchestration in Secure Operations
  2. Use Cases of Automation and Scripting
  3. Repetitive Security Task Automation
  4. Reducing Human Error
  5. Workflow Consistency
  6. Automated Threat Detection Support
  7. Automated Response Support
  8. Applying Automation to Security Operations
  9. Scenario-Based Quiz
Section 2 — Provisioning, Access, and Workflow Automation
  1. User Provisioning
  2. Resource Provisioning
  3. Security Group Management
  4. Ticket Creation
  5. Escalation
  6. Enabling and Disabling Services
  7. Enabling and Disabling Access
  8. Automating Policy-Based Operational Workflows
  9. Scenario-Based Quiz
Section 3 — Integration, Baselines, and Infrastructure Automation
  1. Continuous Integration and Testing
  2. Security Testing in CI/CD Pipelines
  3. Integrations and APIs
  4. Security Tool Interoperability
  5. Enforcing Baselines
  6. Standard Infrastructure Configurations
  7. Configuration Drift Reduction
  8. Automating Secure Deployment Practices
  9. Scenario-Based Quiz
Section 4 — Automation Benefits, Risks, and Supportability
  1. Employee Retention
  2. Reaction Time
  3. Complexity
  4. Documentation and Change Control
  5. Single Point of Failure
  6. Technical Debt
  7. Ongoing Supportability
  8. Balancing Automation Value and Risk
  9. Scenario-Based Quiz
Module 21 — Appropriate Incident Response Activities
Section 1 — Incident Response Lifecycle
  1. Incident Response Process
  2. Preparation
  3. Detection
  4. Analysis
  5. Containment
  6. Eradication
  7. Recovery
  8. Lessons Learned
  9. Scenario-Based Quiz
Section 2 — Readiness, Training, and Response Exercises
  1. Incident Response Training
  2. Response Roles and Responsibilities
  3. Communication Plans
  4. Tabletop Exercises
  5. Simulation Exercises
  6. Response Plan Validation
  7. Root Cause Analysis
  8. Continuous Incident Response Improvement
  9. Scenario-Based Quiz
Section 3 — Threat Hunting and Digital Forensics
  1. Threat Hunting
  2. Proactive Threat Identification
  3. Digital Forensics
  4. Evidence Identification
  5. Evidence Collection
  6. Evidence Processing
  7. Evidence Analysis
  8. Investigation Support
  9. Scenario-Based Quiz
Section 4 — Legal, Evidence, and Reporting Activities
  1. Legal Hold
  2. Chain of Custody
  3. Acquisition
  4. Preservation
  5. Reporting
  6. Internal Review
  7. Regulatory and Legal Evidence
  8. E-Discovery
  9. Scenario-Based Quiz
Module 22 — Data Sources to Support an Investigation
Section 1 — Log Sources and Investigation Foundations
  1. Data Sources for Investigations
  2. Log Purpose
  3. Event Reconstruction
  4. Firewall Logs
  5. Allowed and Denied Traffic
  6. Source and Destination Details
  7. Ports, IP Addresses, and Timestamps
  8. Suspicious Firewall Activity
  9. Scenario-Based Quiz
Section 2 — Host and Application Investigation Sources
  1. Application Logs
  2. User Logins and Transactions
  3. Application Configuration Changes
  4. Abnormal Application Behavior
  5. Endpoint Logs
  6. Device-Level Security Events
  7. System Changes and User Activity
  8. Malware and Intrusion Indicators on Endpoints
  9. Scenario-Based Quiz
Section 3 — Operating System, IDS, and Network Evidence
  1. OS-Specific Security Logs
  2. User Account Activity
  3. System Errors and Policy Changes
  4. Service and Resource Access Events
  5. IPS and IDS Logs
  6. Signature and Anomaly Alerts
  7. Network Logs
  8. Traffic Direction and Flow Analysis
  9. Scenario-Based Quiz
Section 4 — Supporting Evidence and Investigation Analysis Tools
  1. Metadata
  2. Email Metadata and Communication Context
  3. Vulnerability Scan Results
  4. Known Weaknesses and Entry Points
  5. Automated Reports
  6. Security Dashboards
  7. Packet Captures
  8. Confirming Malicious Traffic and Data Exfiltration
  9. Scenario-Based Quiz

Domain 5 — Security Program Management and Oversight · 20% Exam Weight

Module 23 — Elements of Effective Security Governance
Section 1 — Governance Foundations, Guidelines, and Policies
  1. Security Governance Purpose
  2. Guidelines in Security Governance
  3. Flexible Guidance and Decision Support
  4. Policies in Security Governance
  5. Policy Expectations and Requirements
  6. Aligning Policies with Business Goals
  7. Policy Enforcement and Review
  8. Applying Governance Documents
  9. Scenario-Based Quiz
Section 2 — Acceptable Use and Information Security Policies
  1. Acceptable Use Policy Purpose
  2. Approved Use of IT Resources
  3. Email, Internet, and Software Use
  4. User Behavior and Safe Computing
  5. Information Security Policy Purpose
  6. Data Protection Requirements
  7. Network Security and User Access
  8. Keeping Security Policies Current
  9. Scenario-Based Quiz
Section 3 — Continuity, Disaster Recovery, and Incident Response
  1. Business Continuity Purpose
  2. Maintaining Essential Functions
  3. Risk Assessments and Critical System Identification
  4. Disaster Recovery Purpose
  5. Recovery Objectives, Backups, and Testing
  6. Incident Response Policy Purpose
  7. Detection, Containment, Eradication, and Recovery
  8. Lessons Learned and Response Improvement
  9. Scenario-Based Quiz
Section 4 — Secure Development and Change Management Governance
  1. Software Development Lifecycle Governance
  2. Secure Application Requirements
  3. Secure Development Process Controls
  4. Security Testing Before Release
  5. Change Management Purpose
  6. Requesting, Approving, and Testing Changes
  7. Documentation and Version Control
  8. Preventing Outages, Security Gaps, and Conflicts
  9. Scenario-Based Quiz
Module 24 — Elements of the Risk Management Process
Section 1 — Risk Identification Foundations
  1. Elements of the Risk Management Process
  2. Risk Identification Purpose
  3. Valuable Asset Identification
  4. Data, Hardware, Software, and Infrastructure
  5. Vulnerability Identification
  6. Threat Identification
  7. Employee Training and Human Factors
  8. Building the Risk Identification Baseline
  9. Scenario-Based Quiz
Section 2 — Risk Assessment Approaches
  1. Risk Assessment Purpose
  2. Impact and Likelihood Evaluation
  3. Prioritizing Risks by Impact
  4. Ad Hoc Assessments
  5. Recurring Assessments
  6. One-Time Assessments
  7. Continuous Monitoring and Assessment
  8. Selecting the Appropriate Assessment Type
  9. Scenario-Based Quiz
Section 3 — Risk Analysis Methods
  1. Risk Analysis Purpose
  2. Turning Risk Data Into Actionable Insight
  3. Qualitative Analysis
  4. Qualitative Ratings and Risk Matrices
  5. Quantitative Analysis
  6. Numerical Risk Values
  7. Comparing Qualitative and Quantitative Methods
  8. Applying Analysis to Risk Prioritization
  9. Scenario-Based Quiz
Section 4 — Quantitative Risk Calculations and Decision Support
  1. Single Loss Expectancy
  2. Asset Value
  3. Exposure Factor
  4. Calculating Single Loss Expectancy
  5. Estimating Monetary Loss From Events
  6. Cost, Probability, and Financial Risk
  7. Using Calculations to Support Security Investment
  8. Applying Risk Data to Management Decisions
  9. Scenario-Based Quiz
Module 25 — Third-Party Risk Assessment and Management
Section 1 — Third-Party Risk Identification Foundations
  1. Third-Party Risk Assessment and Management
  2. Third-Party Risk Identification Purpose
  3. Vendor and Supplier Asset Identification
  4. Data, Hardware, Software, and Dependencies
  5. Third-Party Vulnerability Identification
  6. Third-Party Threat Identification
  7. Human Factors and Vendor Training Gaps
  8. Building the Third-Party Risk Baseline
  9. Scenario-Based Quiz
Section 2 — Third-Party Risk Assessment Approaches
  1. Third-Party Risk Assessment Purpose
  2. Impact and Likelihood Evaluation
  3. Prioritizing Vendor Risks by Impact
  4. Ad Hoc Third-Party Assessments
  5. Recurring Third-Party Assessments
  6. One-Time Third-Party Assessments
  7. Continuous Vendor Monitoring
  8. Selecting the Appropriate Assessment Type
  9. Scenario-Based Quiz
Section 3 — Third-Party Risk Analysis Methods
  1. Third-Party Risk Analysis Purpose
  2. Turning Vendor Risk Data Into Actionable Insight
  3. Qualitative Analysis
  4. Qualitative Ratings and Risk Matrices
  5. Quantitative Analysis
  6. Numerical Risk Values
  7. Comparing Qualitative and Quantitative Vendor Risk Methods
  8. Applying Analysis to Third-Party Risk Prioritization
  9. Scenario-Based Quiz
Section 4 — Third-Party Risk Management and Decision Support
  1. Third-Party Risk Management Decisions
  2. Vendor Risk Acceptance
  3. Vendor Risk Mitigation
  4. Vendor Risk Transfer
  5. Vendor Risk Avoidance
  6. Using Risk Results to Guide Security Requirements
  7. Supporting Vendor Oversight With Risk Data
  8. Applying Third-Party Risk Decisions
  9. Scenario-Based Quiz
Module 26 — Elements of Effective Security Compliance
Section 1 — Compliance Reporting Foundations
  1. Elements of Effective Security Compliance
  2. Compliance Reporting Purpose
  3. Evidence and Documentation
  4. Laws, Regulations, Standards, and Policies
  5. Governance, Risk, and Compliance Alignment
  6. Compliance Status Visibility
  7. Audit and Stakeholder Readiness
  8. Building a Compliance Reporting Process
  9. Scenario-Based Quiz
Section 2 — Internal and External Reporting
  1. Internal Reporting
  2. Reporting to Organizational Leadership
  3. CISO and Compliance Officer Reporting
  4. Internal Policy and Procedure Evidence
  5. External Reporting
  6. Regulator, Partner, and Customer Reporting
  7. Security Certifications and Audit Results
  8. Demonstrating Transparency and Accountability
  9. Scenario-Based Quiz
Section 3 — Consequences of Non-Compliance
  1. Non-Compliance Outcomes
  2. Fines
  3. Regulatory Penalties
  4. Sanctions
  5. Business Operation Restrictions
  6. Reputational Damage
  7. Loss of License
  8. Contractual Impacts
  9. Scenario-Based Quiz
Section 4 — Due Diligence, Due Care, and Compliance Assurance
  1. Due Diligence
  2. Due Care
  3. Responsible Compliance Review
  4. Reasonable Safeguards and Preventive Action
  5. Checking Compliance Against Requirements
  6. Documentation for Accountability
  7. Using Compliance Results to Improve Controls
  8. Applying Compliance Decisions in Real-World Scenarios
  9. Scenario-Based Quiz
Module 27 — Types and Purposes of Audits and Assessments
Section 1 — Security Audits and Attestation Foundations
  1. Types and Purposes of Audits and Assessments
  2. Security Audit Purpose
  3. Systematic Security Evaluation
  4. Control Effectiveness Review
  5. Technical, Physical, and Compliance Scope
  6. Attestation Purpose
  7. Formal Confirmation of Security Practices
  8. Building Trust Through Attestation
  9. Scenario-Based Quiz
Section 2 — Compliance Audits and Audit Governance
  1. Compliance Audit Purpose
  2. Laws, Regulations, Standards, and Contracts
  3. Compliance Documentation Review
  4. Internal Compliance Audits
  5. External Compliance Audits
  6. Audit Committee Purpose
  7. Board and Senior Leadership Oversight
  8. Audit Findings, Transparency, and Accountability
  9. Scenario-Based Quiz
Section 3 — Self-Assessments and Regulatory Audits
  1. Self-Assessment Purpose
  2. Internal Control Review
  3. Proactive Risk Identification
  4. Questionnaires and Control Checklists
  5. Accountability Across Large Organizations
  6. Regulatory Audit Purpose
  7. Mandatory Reporting Requirements
  8. Consequences of Regulatory Audit Failure
  9. Scenario-Based Quiz
Section 4 — Examinations and Comprehensive Assessments
  1. Examination Purpose
  2. Industry-Specific Review
  3. Standard and Guideline Compliance
  4. Financial and Operational Examination Context
  5. Security Assessment Purpose
  6. External Assessment Parties
  7. Policies, Procedures, and Control Review
  8. Implementation Findings and Improvement Actions
  9. Scenario-Based Quiz
Module 28 — Implement Security Awareness Practices
Section 1 — Security Awareness and Phishing Defense
  1. Security Awareness Practice Foundations
  2. Phishing
  3. Phishing Campaigns
  4. Recognizing a Phishing Attempt
  5. Suspicious Domains, Urgency, and Information Requests
  6. Responding to Reported Suspicious Messages
  7. Reporting to IT or the Security Team
  8. Reducing Message-Based Social Engineering Risk
  9. Scenario-Based Quiz
Section 2 — User Behavior, Policies, and Insider Risk
  1. Risky Behavior Recognition
  2. Unusual Network Traffic and Failed Login Attempts
  3. Unexpected Behavior Recognition
  4. Configuration Changes and Unauthorized Software
  5. Unintentional Behavior Recognition
  6. Policies and Handbooks
  7. Insider Threat Awareness
  8. Encouraging Reporting of Suspicious Activity
  9. Scenario-Based Quiz
Section 3 — Everyday Security Hygiene and Work Environment Practices
  1. Password Management
  2. Strong Password Creation
  3. Password Sharing Risks
  4. Removable Media and Cables
  5. USB Device Risk
  6. Operational Security
  7. Protecting Company Operations and Sensitive Information
  8. Hybrid and Remote Work Environments
  9. Scenario-Based Quiz
Section 4 — Awareness Program Design, Monitoring, and Execution
  1. Social Engineering Awareness
  2. Social Engineering Examples and Response
  3. Initial Reporting and Monitoring
  4. Recurring Reporting and Monitoring
  5. Security Awareness Program Development
  6. Training Alignment to Risk Profile
  7. Security Awareness Execution
  8. Continuous Improvement Through Feedback and Metrics
  9. Scenario-Based Quiz

Flexible Eight-Week Study Map

Build the Security System in Focused Stages

Use four two-week stages to move from foundational controls and threats into architecture, operations, incident response, and program oversight.

Weeks 1–2

Foundations and Threat Actors

Modules 1–5: controls, fundamental concepts, secure change, cryptography, and the actors who create risk.

Weeks 3–4

Attack Paths and Architecture

Modules 6–12: vectors, vulnerabilities, malicious activity, mitigations, architecture models, infrastructure, and data protection.

Weeks 5–6

Recovery and Security Operations

Modules 13–18: resilience, computing-resource security, asset management, vulnerability work, monitoring, and enterprise defenses.

Weeks 7–8

Identity, Response, and Oversight

Modules 19–28: IAM, automation, incident response, investigations, governance, risk, third parties, compliance, audits, and awareness.

Designed for Real Security Responsibility

Choose the Path That Sounds Most Like You

The course supports learners at different stages without promising a credential, job outcome, or examination result.

Three-Minute Readiness Check

Find the Best Place to Start

Answer four quick questions. Your result will suggest whether to begin with the five-lesson preview or move into the complete course with a focused study rhythm.

A working professional studying cybersecurity content on a laptop
How much cybersecurity responsibility do you have?
How comfortable are you comparing security responses?
How much study time can you protect each week?
What is your immediate goal?

Flexible Learning and Support

Choose the Support Path That Fits the Way You Learn.

The complete on-demand course stands on its own. Optional live-online cohorts and organizational enrollment provide additional ways to use the same curriculum.

Professional studying cybersecurity independently
On-Demand Study

Self-Paced Cybersecurity Learning

Move through guided modules, scenario quizzes, applied practice, flashcards, practical activities, and targeted review.

Preview the first five lessons
Instructor leading a live-online cybersecurity discussion
Optional Live Instruction

Optional Live-Online Instruction

Join scheduled live-online instruction for guided review, applied discussion, and support alongside the on-demand course. Availability and meeting details are provided through the live-class route.

View live class options
Colleagues discussing team cybersecurity training options
Group Enrollment

Teams, Employers, and Institutions

Discuss enrollment for employers, universities, workforce-development programs, technical teams, and public-sector organizations.

Request program guidance

Tuition and Access

Invest in a Complete Security Decision System

$699 $549

Choose one-time tuition or finance the course in three payments. Both options include 12 months of online access.

  • 28 complete guided modules
  • 28 applied practice activities
  • 28 flashcard sets
  • 112 section scenario quizzes
  • 43 practical activities
  • Labs and PBQs in the Student Center
  • Optional live-online instruction
  • 12 months of full course access

Course completion does not award CompTIA Security+ certification or guarantee an examination result.

What Is Included

  • 01
    Full Course Access
    All 28 modules and five domains for 12 months.
  • 02
    Retrieval and Scenario Practice
    Applied practice, flashcards, and 112 section quizzes.
  • 03
    Complete Curriculum Transparency
    Review every module, section, and chapter before enrollment.
  • 04
    Practical Activities
    Labs, PBQs, and 43 applied activities.
  • 05
    Optional Live Instruction
    Live-online options when scheduled.
CompTIA Security+ certification badge

CompTIA Security+ Preparation

Prepare across all five SY0-701 domains through the complete course.

Employer or Cohort Enrollment

Build a Shared Security Language

Discuss enrollment for employers, universities, workforce programs, technical teams, and public-sector organizations.

Request Program Guidance

Questions Before Enrollment

Know What You Are Getting

Review course scope, preview lessons, CompTIA Security+ alignment, live instruction, payment choices, and enrollment options before you decide.

01 How much content is included?

Cybersecurity Essentials contains 28 modules, 112 sections, 896 instructional chapters, and 112 section scenario quizzes. Together, the instructional and quiz chapters create 1,008 chapter-level activities.

02 How does the course map to CompTIA Security+ SY0-701?

The course follows all five CompTIA Security+ SY0-701 domains: General Security Concepts, Threats, Vulnerabilities, and Mitigations, Security Architecture, Security Operations, and Security Program Management and Oversight.

03 What is included in the five-lesson preview?

The free preview opens the first five lessons: Types of Security Controls, Fundamental Security Concepts, Change Management Processes, Cryptographic Solutions, and Common Threat Actors and Motivations.

04 How do the learning resources work together?

Guided lessons establish the concepts, flashcards strengthen recall, applied practice develops decision-making, and practical activities support applied review. Labs and performance-based questions remain available through the enrolled Student Center rather than direct public links.

05 Are live online classes required?

No. The on-demand course can be used independently. Optional live-online instruction is available for published cohorts.

06 What enrollment options are available?

Choose one-time tuition of $549 or three zero-interest payments of $183. Both options provide one year of course access.

07 How do enrolled learners continue training?

Enrolled learners sign in through Cyber Brain Academy and continue through the Student Center.

08 Is prior cybersecurity experience required?

The course begins with foundational security concepts and progresses into architecture, operations, governance, risk, and compliance. Learners should be prepared to work through technical terminology and scenario-based decisions.

09 Can organizations enroll a team or cohort?

Cyber Brain Academy supports employer, university, workforce-development, and institutional enrollment discussions through its partnerships route.

10 Does the course guarantee an examination result?

No. The course provides structured instruction, retrieval practice, scenario work, and practical activities, but it does not guarantee a specific examination result.

Your Next Security Decision Starts Here

Build the Reasoning Behind the Response.

Preview five complete modules. Review all 28 module names, 112 section names, and 1,008 chapter-level activities. Begin the 12-month path when you are ready.

CompTIA Authorized Partner recognition for Cyber Brain Academy
$549 · 12 MonthsStart FreeEnroll Now