Your CompTIA Security+ (SY0-701) is the UK's most recognised entry point into a cyber security career. It proves you can identify threats, secure systems and networks, respond to incidents and work within governance and compliance frameworks — the exact skills employers hiring their first security team members look for. This guide is your complete, free study companion: what the exam covers, how to prepare, and how to turn the certification into an actual job.
Who this certification is for
Security+ suits IT professionals moving into security, career changers, apprentices, graduates and help-desk or network engineers who want a defensible security foundation. There are no hard prerequisites, but CompTIA Network+ (or roughly two years of hands-on IT experience) makes the material far easier.
Exam at a glance
- Exam code: SY0-701
- Questions: up to 90 (multiple-choice + performance-based)
- Time: 90 minutes
- Pass mark: 750 / 900
- Recommended experience: Network+ and ~2 years of IT administration with a security focus
The exam is organised into five official domains. In this Academy pillar we group them into the seven learning modules below so each is short enough to master in a sitting.
Start here: the goal of all security
Before the exam domains, internalise what security is trying to achieve. Every control in Security+ ultimately protects one of three goals — the CIA triad. Explore it:
The CIA Triad
The three goals every security control ultimately serves.
Tap or hover a part to learn more.
Keep data secret.
Ensures information is only accessible to those authorised to see it. Achieved with encryption, access controls and data classification. A data breach is a loss of confidentiality.
Check your understanding
1. A DDoS attack that knocks a website offline primarily violates which principle?
2. Encrypting a laptop's hard drive primarily protects which principle?
Keep learning
The learning path (study in this order)
- Threats, Attacks & Vulnerabilities — the threat landscape you are defending against.
- Cryptography & PKI — how data is protected in transit and at rest.
- Identity & Access Management — proving who users are and controlling what they can do.
- Secure Architecture & Cloud Security — designing resilient, defensible systems.
- Security Operations & Monitoring — detecting and managing threats day to day.
- Incident Response & Digital Forensics — reacting when something goes wrong.
- Governance, Risk & Compliance — the frameworks and rules that shape security decisions.
Career pathways after Security+
Security+ is the gateway credential for blue-team and generalist security roles. Typical progression:
Help Desk / IT Support → Security+ → SOC Analyst (Tier 1) → SOC Analyst (Tier 2) / Security Engineer → Specialisation (Blue Team, GRC, Cloud Security, Pen Testing)
It also satisfies many UK and NATO/DoD-aligned baseline security requirements, which is why it appears in so many job adverts as "desirable" or "required".
Salary expectations (UK)
Entry security roles that list Security+ typically pay £28,000–£38,000, rising to £40,000–£55,000 for SOC Tier 2 / security engineer roles as you add experience and further certifications. Figures vary by region, sector and clearance.
Skills you gain
Threat and vulnerability assessment, risk management, cryptography and PKI, identity and access management, secure network and cloud architecture, security monitoring and operations, incident response, and governance/compliance literacy — a genuinely broad, job-ready security foundation.
How employers expect you to use it
Employers do not want someone who has only memorised acronyms. They expect you to explain why a control exists, weigh trade-offs (security vs. usability vs. cost), and describe how you would respond to a realistic scenario. Pair each domain below with hands-on practice (a home lab, TryHackMe, Microsoft/AWS free tiers) and be ready to talk through what you actually did.
Common mistakes when preparing
- Memorising definitions without understanding the underlying concept.
- Skipping performance-based questions — practise them; they carry heavy weight.
- Ignoring the "explain the trade-off" style of thinking the exam rewards.
- Studying theory with zero hands-on practice, then freezing in technical interviews.
Interview preparation
Every domain article below ends with technical and behavioural interview questions drawn from real junior-security hiring. Work through them, then rehearse out loud with the AI Interview™ to get scored feedback before the real thing.
Practise with Missiora
Reading builds knowledge; practice builds employability. Turn this domain into interview-ready evidence:
- AI Interview™ — rehearse Security+ style technical and scenario questions and get scored, honest feedback.
- Career Coach™ — build a study-to-job plan and close your skill gaps with role-specific guidance.
- Job Intelligence™ — paste a real security job advert and see exactly which of these skills employers are asking for.
- Cover Letter Generator™ — turn your new certification into an employer-aligned application.
