Prepare for the CompTIA Security+ (Security+) certification by CompTIA with free exam-style practice questions on CyberCertPrep. The Security+ exam has 90 questions, a time limit of Security+ hours 30 minutes, and a passing score of 75%.
Choose from Practice mode, Exam Simulation, Weak Areas review, and Daily Challenge. Track your progress with detailed analytics and study with flashcards.
CompTIA Security+ (Security+) Exam Domain
Focus your study on this domain with targeted practice questions. This domain accounts for 22% of your Security+ exam score.
The Threats, Vulnerabilities & Mitigations domain is one of 5 exam domains on the CompTIA Security+ (Security+) certification exam by CompTIA. At 22% of the total exam, this is one of the most heavily weighted domains — mastering it is critical for passing.
The Security+ exam consists of 90 questions with a time limit of 1 hours 30 minutes and a passing score of 75%. That means approximately 20 questions on your exam will come from the Threats, Vulnerabilities & Mitigations domain.
Privilege Escalation
An attack where a user gains elevated access to resources that are normally protected, beyond what their assigned permis...
IDS (Intrusion Detection System)
A device or software application that monitors a network or systems for malicious activity or policy violations and gene...
IPS (Intrusion Prevention System)
A network security tool that monitors network traffic flows to detect and actively prevent identified threats in real ti...
SIEM (Security Information and Event Management)
A software solution that aggregates and analyzes security data from across the organization — including logs from firewa...
SOC (Security Operations Center)
A centralized unit staffed by security analysts who monitor an organization's IT infrastructure for cybersecurity threat...
Port Scanning
A technique used to identify open ports and services available on a networked host by sending connection requests to a r...
Malware
Malicious software designed to damage, disrupt, or gain unauthorized access to computer systems, encompassing a broad ca...
Ransomware
A type of malware that encrypts a victim's files or locks system access and demands a ransom payment (typically in crypt...
These certifications also cover topics related to Threats, Vulnerabilities & Mitigations: