Book description
Learn, prepare, and practice for CompTIA Cybersecurity Analyst (CySA+) CS0-002 exam success with this Cert Guide from Pearson IT certification, a leader in IT certification learning.
This study guide helps you master the CompTIA Cybersecurity Analyst (CySA+) CS0-002 exam topics:
Assess your knowledge with chapter-ending quizzes
Review key concepts with exam preparation tasks
Practice with realistic exam questions
Get practical guidance for next steps and more advanced certifications
CompTIA Cybersecurity Analyst (CySA+) CS0-002 Cert Guide is a best-of-breed exam study guide. Leading IT certification instructor Troy McMillan shares preparation hints and test-taking tips, helping you identify areas of weakness and improve both your conceptual knowledge and hands-on skills. Material is presented in a concise manner, focusing on increasing your understanding and retention of exam topics.
The book presents you with an organized test preparation routine through the use of proven series elements and techniques. Exam topic lists make referencing easy. Chapter-ending Exam Preparation Tasks help you drill on key concepts you must know thoroughly. Review questions help you assess your knowledge, and a final preparation chapter guides you through tools and resources to help you craft your final study plan.
The companion website contains the powerful Pearson Test Prep practice test software, complete with exam-realistic questions. The assessment engine offers you a wealth of customization options and reporting features, laying out a complete assessment of your knowledge to help you focus your study where it is needed most. Digital Key Terms Flashcards are included for every term in the glossary and help you master each concept.
Well regarded for its level of detail, assessment features, and challenging review questions and exercises, this study guide helps you master the concepts and techniques that will allow you to succeed on the exam the first time.
This study guide helps you master all the topics on the CompTIA Cybersecurity Analyst (CySA+) CS0-002 exam, including
Vulnerability management activities
Implementing controls to mitigate attacks and software vulnerabilities
Security solutions for infrastructure management
Software and hardware assurance best practices
Understanding and applying the appropriate incident response
Applying security concepts in support of organizational risk mitigation
Companion Website:
The website provides access to several digital assets as two free, complete practice exams.
Includes Exclusive Offer for up to 80% Off Premium Edition eBook and Practice Test
Pearson Test Prep online system requirements:
Browsers: Chrome version 73 and above; Safari version 12 and above; Microsoft Edge 44 and above. Devices: Desktop and laptop computers, tablets running on Android v8.0 and iOS v13, smartphones with a minimum screen size of 4.7". Internet access required.
Pearson Test Prep offline system requirements:
Windows 10, Windows 8.1; Microsoft .NET Framework 4.5 Client; Pentium-class 1 GHz processor (or equivalent); 512 MB RAM; 650 MB disk space plus 50 MB for each downloaded practice exam; access to the Internet to register and download exam databases
.
Table of contents
- Cover Page
- About This eBook
- Title Page
- Copyright Page
- Contents at a Glance
- Table of Contents
- About the Author
- Dedication
- Acknowledgments
- About the Technical Reviewer
- We Want to Hear from You!
- Reader Services
- Introduction
- Credits
- Chapter 1 The Importance of Threat Data and Intelligence
- Chapter 2 Utilizing Threat Intelligence to Support Organizational Security
- Chapter 3 Vulnerability Management Activities
-
Chapter 4 Analyzing Assessment Output
- “Do I Know This Already?” Quiz
- Foundation Topics
- Web Application Scanner
- Infrastructure Vulnerability Scanner
- Software Assessment Tools and Techniques
- Enumeration
- Wireless Assessment Tools
- Cloud Infrastructure Assessment Tools
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 5 Threats and Vulnerabilities Associated with Specialized Technology
- “Do I Know This Already?” Quiz
- Foundation Topics
- Mobile
- Internet of Things (IoT)
- Embedded Systems
- Real-Time Operating System (RTOS)
- System-on-Chip (SoC)
- Field Programmable Gate Array (FPGA)
- Physical Access Control
- Building Automation Systems
- Vehicles and Drones
- Workflow and Process Automation Systems
- Incident Command System (ICS)
- Supervisory Control and Data Acquisition (SCADA)
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 6 Threats and Vulnerabilities Associated with Operating in the Cloud
- “Do I Know This Already?” Quiz
- Foundation Topics
- Cloud Deployment Models
- Cloud Service Models
- Function as a Service (FaaS)/Serverless Architecture
- Infrastructure as Code (IaC)
- Insecure Application Programming Interface (API)
- Improper Key Management
- Unprotected Storage
- Logging and Monitoring
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 7 Implementing Controls to Mitigate Attacks and Software Vulnerabilities
-
Chapter 8 Security Solutions for Infrastructure Management
- “Do I Know This Already?” Quiz
- Foundation Topics
- Cloud vs. On-premises
- Asset Management
- Segmentation
- Network Architecture
- Change Management
- Virtualization
- Containerization
- Identity and Access Management
- Cloud Access Security Broker (CASB)
- Honeypot
- Monitoring and Logging
- Encryption
- Certificate Management
- Active Defense
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 9 Software Assurance Best Practices
- “Do I Know This Already?” Quiz
- Foundation Topics
- Platforms
- Software Development Life Cycle (SDLC) Integration
- DevSecOps
- Software Assessment Methods
- Secure Coding Best Practices
- Static Analysis Tools
- Dynamic Analysis Tools
- Formal Methods for Verification of Critical Software
- Service-Oriented Architecture
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 10 Hardware Assurance Best Practices
- “Do I Know This Already?” Quiz
- Foundation Topics
- Hardware Root of Trust
- eFuse
- Unified Extensible Firmware Interface (UEFI)
- Trusted Foundry
- Secure Processing
- Anti-Tamper
- Self-Encrypting Drives
- Trusted Firmware Updates
- Measured Boot and Attestation
- Bus Encryption
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 11 Analyzing Data as Part of Security Monitoring Activities
-
Chapter 12 Implementing Configuration Changes to Existing Controls to Improve Security
- “Do I Know This Already?” Quiz
- Foundation Topics
- Permissions
- Whitelisting and Blacklisting
- Firewall
- Intrusion Prevention System (IPS) Rules
- Data Loss Prevention (DLP)
- Endpoint Detection and Response (EDR)
- Network Access Control (NAC)
- Sinkholing
- Malware Signatures
- Sandboxing
- Port Security
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 13 The Importance of Proactive Threat Hunting
- “Do I Know This Already?” Quiz
- Foundation Topics
- Establishing a Hypothesis
- Profiling Threat Actors and Activities
- Threat Hunting Tactics
- Reducing the Attack Surface Area
- Bundling Critical Assets
- Attack Vectors
- Integrated Intelligence
- Improving Detection Capabilities
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
-
Chapter 14 Automation Concepts and Technologies
- “Do I Know This Already?” Quiz
- Foundation Topics
- Workflow Orchestration
- Scripting
- Application Programming Interface (API) Integration
- Automated Malware Signature Creation
- Data Enrichment
- Threat Feed Combination
- Machine Learning
- Use of Automation Protocols and Standards
- Continuous Integration
- Continuous Deployment/Delivery
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 15 The Incident Response Process
- Chapter 16 Applying the Appropriate Incident Response Procedure
- Chapter 17 Analyzing Potential Indicators of Compromise
- Chapter 18 Utilizing Basic Digital Forensics Techniques
- Chapter 19 The Importance of Data Privacy and Protection
-
Chapter 20 Applying Security Concepts in Support of Organizational Risk Mitigation
- “Do I Know This Already?” Quiz
- Foundation Topics
- Business Impact Analysis
- Risk Identification Process
- Risk Calculation
- Communication of Risk Factors
- Risk Prioritization
- Systems Assessment
- Documented Compensating Controls
- Training and Exercises
- Supply Chain Assessment
- Exam Preparation Tasks
- Review All Key Topics
- Define Key Terms
- Review Questions
- Chapter 21 The Importance of Frameworks, Policies, Procedures, and Controls
- Chapter 22 Final Preparation
- Appendix A Answers to the “Do I Know This Already?” Quizzes and Review Questions
- Appendix B CompTIA Cybersecurity Analyst (CySA+) CS0-002 Cert Guide Exam Updates
- Glossary of Key Terms
- Index
- Appendix C Memory Tables
- Appendix D Memory Tables Answer Key
- Appendix E Study Planner
- Where are the companion content files? - Register
- Inside Front Cover
- Inside Back Cover
- Code Snippets
Product information
- Title: CompTIA Cybersecurity Analyst (CySA+) CS0-002 Cert Guide, 2nd Edition
- Author(s):
- Release date: October 2020
- Publisher(s): Pearson IT Certification
- ISBN: 9780136747000
You might also like
book
CompTIA CySA+ Cybersecurity Analyst Certification All-in-One Exam Guide, Second Edition (Exam CS0-002), 2nd Edition
Prepare for the CompTIA CySA+ certification exam with this fully updated self-study resource This highly effective …
book
CCNP and CCIE Security Core SCOR 350-701 Official Cert Guide
Trust the best-selling Official Cert Guide series from Cisco Press to help you learn, prepare, and …
book
CCNP and CCIE Enterprise Core ENCOR 350-401 Official Cert Guide
Trust the best-selling Official Cert Guide series from Cisco Press to help you learn, prepare, and …
video
CompTIA Cybersecurity Analyst (CySA+) CS0-002
20 Hours of Video Instruction 20 hours of deep-dive training covering every objective in the CompTIA …