CompTIA Security+ Study Guide with over 500 Practice Test Questions, 9th Edition

Book description

Master key exam objectives and crucial cybersecurity concepts for the CompTIA Security+ SY0-701 exam, along with an online test bank with hundreds of practice questions and flashcards

In the newly revised ninth edition of CompTIA Security+ Study Guide: Exam SY0-701, veteran cybersecurity professionals and educators Mike Chapple and David Seidl deliver easy-to-follow coverage of the security fundamentals tested by the challenging CompTIA SY0-701 exam. You’ll explore general security concepts, threats, vulnerabilities, mitigations, security architecture and operations, as well as security program management and oversight.

You’ll get access to the information you need to start a new career—or advance an existing one—in cybersecurity, with efficient and accurate content. You’ll also find:

  • Practice exams that get you ready to succeed on your first try at the real thing and help you conquer test anxiety
  • Hundreds of review questions that gauge your readiness for the certification exam and help you retain and remember key concepts
  • Complimentary access to the online Sybex learning environment, complete with hundreds of additional practice questions and flashcards, and a glossary of key terms, all supported by Wiley's support agents who are available 24x7 via email or live chat to assist with access and login questions

Perfect for everyone planning to take the CompTIA SY0-701 exam, as well as those aiming to secure a higher-level certification like the CASP+, CISSP, or CISA, this study guide will also earn a place on the bookshelves of anyone who’s ever wondered if IT security is right for them. It’s a must-read reference!

Table of contents

  1. Cover
  2. Table of Contents
  3. Title Page
  4. Copyright
  5. Dedication
  6. Acknowledgments
  7. About the Authors
  8. About the Technical Editor
  9. About the Technical Proofreader
  10. Introduction
    1. The Security+ Exam
    2. What Does This Book Cover?
    3. Exam SY0-701 Exam Objectives
    4. SY0-701 Certification Exam Objective Map
    5. Assessment Test
    6. Answers to Assessment Test
  11. Chapter 1: Today's Security Professional
    1. Cybersecurity Objectives
    2. Data Breach Risks
    3. Implementing Security Controls
    4. Data Protection
    5. Summary
    6. Exam Essentials
    7. Review Questions
  12. Chapter 2: Cybersecurity Threat Landscape
    1. Exploring Cybersecurity Threats
    2. Threat Data and Intelligence
    3. Summary
    4. Exam Essentials
    5. Review Questions
  13. Chapter 3: Malicious Code
    1. Malware
    2. Summary
    3. Exam Essentials
    4. Review Questions
  14. Chapter 4: Social Engineering and Password Attacks
    1. Social Engineering and Human Vectors
    2. Password Attacks
    3. Summary
    4. Exam Essentials
    5. Review Questions
  15. Chapter 5: Security Assessment and Testing
    1. Vulnerability Management
    2. Vulnerability Classification
    3. Penetration Testing
    4. Audits and Assessments
    5. Vulnerability Life Cycle
    6. Summary
    7. Exam Essentials
    8. Review Questions
  16. Chapter 6: Application Security
    1. Software Assurance Best Practices
    2. Designing and Coding for Security
    3. Software Security Testing
    4. Injection Vulnerabilities
    5. Exploiting Authentication Vulnerabilities
    6. Exploiting Authorization Vulnerabilities
    7. Exploiting Web Application Vulnerabilities
    8. Application Security Controls
    9. Secure Coding Practices
    10. Automation and Orchestration
    11. Summary
    12. Exam Essentials
    13. Review Questions
  17. Chapter 7: Cryptography and the PKI
    1. An Overview of Cryptography
    2. Goals of Cryptography
    3. Cryptographic Concepts
    4. Modern Cryptography
    5. Symmetric Cryptography
    6. Asymmetric Cryptography
    7. Hash Functions
    8. Digital Signatures
    9. Public Key Infrastructure
    10. Asymmetric Key Management
    11. Cryptographic Attacks
    12. Emerging Issues in Cryptography
    13. Summary
    14. Exam Essentials
    15. Review Questions
  18. Chapter 8: Identity and Access Management
    1. Identity
    2. Authentication and Authorization
    3. Authentication Methods
    4. Accounts
    5. Access Control Schemes
    6. Summary
    7. Exam Essentials
    8. Review Questions
  19. Chapter 9: Resilience and Physical Security
    1. Resilience and Recovery in Security Architectures
    2. Response and Recovery Controls
    3. Physical Security Controls
    4. Summary
    5. Exam Essentials
    6. Review Questions
  20. Chapter 10: Cloud and Virtualization Security
    1. Exploring the Cloud
    2. Virtualization
    3. Cloud Infrastructure Components
    4. Cloud Security Issues
    5. Hardening Cloud Infrastructure
    6. Summary
    7. Exam Essentials
    8. Review Questions
  21. Chapter 11: Endpoint Security
    1. Operating System Vulnerabilities
    2. Hardware Vulnerabilities
    3. Protecting Endpoints
    4. Hardening Techniques
    5. Operating System Hardening
    6. Securing Embedded and Specialized Systems
    7. Asset Management
    8. Summary
    9. Exam Essentials
    10. Review Questions
  22. Chapter 12: Network Security
    1. Designing Secure Networks
    2. Secure Protocols
    3. Network Attacks
    4. Summary
    5. Exam Essentials
    6. Review Questions
  23. Chapter 13: Wireless and Mobile Security
    1. Building Secure Wireless Networks
    2. Managing Secure Mobile Devices
    3. Summary
    4. Exam Essentials
    5. Review Questions
  24. Chapter 14: Monitoring and Incident Response
    1. Incident Response
    2. Incident Response Data and Tools
    3. Mitigation and Recovery
    4. Summary
    5. Exam Essentials
    6. Review Questions
  25. Chapter 15: Digital Forensics
    1. Digital Forensic Concepts
    2. Conducting Digital Forensics
    3. Reporting
    4. Digital Forensics and Intelligence
    5. Summary
    6. Exam Essentials
    7. Review Questions
  26. Chapter 16: Security Governance and Compliance
    1. Security Governance
    2. Understanding Policy Documents
    3. Change Management
    4. Personnel Management
    5. Third-Party Risk Management
    6. Complying with Laws and Regulations
    7. Adopting Standard Frameworks
    8. Security Awareness and Training
    9. Summary
    10. Exam Essentials
    11. Review Questions
  27. Chapter 17: Risk Management and Privacy
    1. Analyzing Risk
    2. Managing Risk
    3. Risk Tracking
    4. Disaster Recovery Planning
    5. Privacy
    6. Summary
    7. Exam Essentials
    8. Review Questions
  28. Appendix: Answers to Review Questions
    1. Chapter 1: Today's Security Professional
    2. Chapter 2: Cybersecurity Threat Landscape
    3. Chapter 3: Malicious Code
    4. Chapter 4: Social Engineering and Password Attacks
    5. Chapter 5: Security Assessment and Testing
    6. Chapter 6: Application Security
    7. Chapter 7: Cryptography and the PKI
    8. Chapter 8: Identity and Access Management
    9. Chapter 9: Resilience and Physical Security
    10. Chapter 10: Cloud and Virtualization Security
    11. Chapter 11: Endpoint Security
    12. Chapter 12: Network Security
    13. Chapter 13: Wireless and Mobile Security
    14. Chapter 14: Monitoring and Incident Response
    15. Chapter 15: Digital Forensics
    16. Chapter 16: Security Governance and Compliance
    17. Chapter 17: Risk Management and Privacy
  29. Index
  30. End User License Agreement

Product information

  • Title: CompTIA Security+ Study Guide with over 500 Practice Test Questions, 9th Edition
  • Author(s): Mike Chapple, David Seidl
  • Release date: November 2023
  • Publisher(s): Sybex
  • ISBN: 9781394211418