All certifications
CompTIALive

Security+ SY0-701

CompTIA Security+

The only Security+ platform with a built-in AI tutor, true SM-2 spaced repetition, and 9 certifications on one plan. No ads, no data collection.

AI tutor
Ask follow-up questions on any answer. No other Security+ tool offers this.
SM-2 spaced repetition
The algorithm behind Anki. Cards you struggle with come back sooner.
9 certifications
$99/year covers Security+ plus CISSP, CEH, CISM, and 5 more. Boson charges $99 for one exam.

Suggested prep: 4–8 weeks · Difficulty: Associate

Domain breakdown

Official weights from the CompTIA exam outline. We track your mastery on each domain individually so you know where to focus.

01General Security Concepts12%
02Threats, Vulnerabilities, and Mitigations22%
03Security Architecture18%
04Security Operations28%
05Security Program Management and Oversight20%

Try a real Security+ SY0-701 question

Pulled straight from the free tier. Every question in the bank cites a public source you can verify.

A SOC manager publishes a written policy requiring that all production database backups be encrypted with AES-256. Which security control category best describes the published policy itself?

  1. ATechnical
  2. BManagerial
  3. COperational
  4. DPhysical
Show answer and explanation

Correct answer

Managerial

A written policy that directs what must be done, without itself enforcing the action through code or hardware, is a managerial control. The encryption it mandates would be a technical control once implemented; the day-to-day backup execution is operational; physical controls govern access to physical spaces and assets. NIST SP 800-53 classifies controls by the type of mechanism that implements them, not by the protective goal.

Source: NIST SP 800-53 Rev. 5: Security and Privacy Controls for Information Systems and Organizations

Exam transition

SY0-801 is coming: what's changing, and should you wait?

Draft domains, the new AI objectives, and the expected timeline, updated as CompTIA confirms details.

Security+ SY0-701 FAQ

How many questions are on the Security+ SY0-701 exam?

The CompTIA Security+ SY0-701 exam has 90 max questions and runs 90 minutes. A passing score is 750/900.

What domains does Security+ SY0-701 cover?

5 domains, per the official CompTIA outline: General Security Concepts (12%), Threats, Vulnerabilities, and Mitigations (22%), Security Architecture (18%), Security Operations (28%), Security Program Management and Oversight (20%).

How long should I study for Security+ SY0-701?

Typical prep time is 4–8 weeks, depending on your experience. TierOne's spaced-repetition queue is built for short daily sessions, so progress compounds even on a busy schedule.

Can I try Security+ SY0-701 practice questions for free?

Yes. The free tier includes 50 real Security+ SY0-701 practice questions with cited sources, the Question of the Day, and the AI tutor (5 explanations per day). No credit card required.

Is there a pass guarantee?

Yes. If you fail your Security+ SY0-701 exam after 30 or more days on Pro, send us your score report and choose 3 free months or a full refund.

Is SY0-701 the current Security+ exam version?

Yes, SY0-701 is the current CompTIA Security+ exam. When CompTIA releases the next version (expected to be SY0-801), the outgoing version typically remains available for several months, and our question bank tracks the current objectives through every transition.

Ready to start prepping for the Security+ SY0-701?

Sign up free in 30 seconds. Take a Quick Quiz to see where you stand. The platform handles the rest.

Not affiliated with or endorsed by CompTIA. Security+ SY0-701 is a trademark of its owner.