CompTIA

Free CompTIA Security+ Practice Questions

The CompTIA Security+ (SY0-701) is the world's most recognised entry-level cybersecurity certification, trusted by employers, government agencies, and the US Department of Defense (DoD 8140 approved). It validates the core skills every security professional needs: identifying threats and vulnerabilities, securing hybrid environments, responding to incidents, and applying governance, risk, and compliance principles.The exam covers five domains: General Security Concepts, Threats Vulnerabilities and Mitigations, Security Architecture, Security Operations, and Security Program Management and Oversight. You'll face up to 90 questions (multiple choice plus performance-based) in 90 minutes, with a passing score of 750 out of 900.Security+ is the launchpad for SOC analyst, security engineer, and GRC roles, and it's the foundation for every advanced cert that follows.

10

Sample questions

90 min

Exam time limit

70%

Passing score

$392

Exam voucher

About the CompTIA Security+ Exam

CompTIA Security+ (SY0-701) is the most widely held entry-level cybersecurity certification in the world, and the baseline standard for IT security roles across both the private sector and US federal government. It is approved under DoD 8570/8140, making it a mandatory requirement for many defence and government contractor positions. Security+ validates that you can assess the security posture of an enterprise environment, recommend and implement appropriate security solutions, monitor and secure hybrid environments, and respond to security incidents. The exam covers six domains: General Security Concepts, Threats, Vulnerabilities and Mitigations, Security Architecture, Security Operations, Security Programme Management and Oversight, and Cryptography and PKI. Security+ is vendor-neutral, meaning the skills it certifies apply across all technology platforms and cloud providers. It is the ideal next step after CompTIA Network+ or for IT professionals moving into a dedicated security role.

Exam Domains Covered

Security Program Management and Oversight · 20%Security Operations · 28%Security Architecture · 18%Threats, Vulnerabilities, and Mitigations · 22%General Security Concepts · 12%

Exam Format & Details

The CompTIA Security+ exam (SY0-701) consists of a maximum of 90 questions, including multiple-choice and performance-based questions (PBQs). The time limit is 90 minutes. The passing score is 750 on a scale of 100–900. The exam is available at Pearson VUE test centres worldwide or via online proctoring. The exam voucher costs $392 USD. CompTIA recommends (but does not require) CompTIA Network+ certification and two years of IT experience with a security focus before sitting Security+. Results are available immediately for computer-based testing.

Why Practice Questions Matter

Security+ uses performance-based questions (PBQs) alongside multiple-choice, which means some questions require you to interact with simulated environments — configuring firewalls, analysing logs, or identifying vulnerabilities in a network diagram. You cannot pass Security+ through memorisation alone. Timed practice builds the fluency you need to move through scenario questions quickly and confidently. CertCrush questions are written to match the SY0-701 domain weighting, so your practice time targets the areas that actually appear on the exam.

Back to home
Free Sample

Try CompTIA Security+

Get a taste before you commit — no account needed.

Get full access to CompTIA Security+

All questions, timed exams, flashcards, PDF study guide download & progress tracking.

Sample Practice Questions

The following questions are a preview of the type of syllabus-aligned questions you will practise in CertCrush. They reflect the format and reasoning style of the CompTIA Security+ exam — not actual exam content.

Q1.Which of the following is the BEST example of a physical deterrent control?

  • A.Motion-detecting cameras inside a server room
  • B.A fence with razor wire surrounding a data center
  • C.Antivirus software blocking malware execution
  • D.A badge reader that logs entry and exit times

Domain: General Security Concepts

Q2.A data center restores a corrupted server from its most recent backup following a ransomware attack. Which control type BEST describes the backup restoration process?

  • A.Compensating
  • B.Detective
  • C.Corrective
  • D.Preventive

Domain: General Security Concepts

Q3.A company uses a self-signed certificate for its internal test server. Which statement BEST describes this certificate?

  • A.It is automatically trusted by all major web browsers
  • B.It provides stronger encryption than CA-issued certificates
  • C.It is issued by an intermediate CA in the company PKI
  • D.It is only trusted by clients explicitly configured to trust it

Domain: General Security Concepts

Q4.An IDS sends alerts when anomalous network traffic is detected. Which category and type BEST describes an IDS?

  • A.Technical - Detective
  • B.Managerial - Preventive
  • C.Operational - Corrective
  • D.Physical - Detective

Domain: General Security Concepts

Q5.A SIEM records all user login times, accessed file paths, and logoff events for later investigation. Which AAA component does this logging represent?

  • A.Authorization
  • B.Accounting
  • C.Authentication
  • D.Availability

Domain: General Security Concepts

Frequently Asked Questions

What is included in the free CompTIA Security+ sample?

The free sample includes 10 syllabus-aligned practice questions, sample flashcards, and a preview chapter from the study guide. No account or payment is required to try the sample.

How many questions are in the full CompTIA Security+ course?

The full course includes a comprehensive question bank covering all exam domains. You can see the total question count on the CompTIA Security+ course page.

Are these official CompTIA exam questions?

No. CertCrush questions are independently written and syllabus-aligned — they mirror the format, difficulty, and reasoning style of the official exam. We are not affiliated with or endorsed by CompTIA.

Which domains does the CompTIA Security+ course cover?

The course covers 5 exam domains: Security Program Management and Oversight, Security Operations, Security Architecture, Threats, Vulnerabilities, and Mitigations, General Security Concepts.

Can I study on mobile?

Yes. CertCrush is fully responsive and works on phones, tablets, and desktops. The timed exam, flashcards, and study guide all work on mobile without installing an app.

What happens when I create an account?

Creating a free account lets you access full courses, track your weak areas by domain, and resume practice sessions across devices. No credit card is required to register.