The CompTIA Security Certification Exam

 < Day Day Up > 



The CompTIA Security+ Certification Exam

Why did CompTIA create this certification and exam? The answer to this question is quite simple: the technologies industry as well as government agencies are screaming for qualified security specialists to implement and maintain security technologies and policies.

CompTIA has responded to the industry’s high demand for skilled security specialists by creating this entry-level Security+ certification, which is also known as “The Foot Soldiers Certification.” Its primary purpose is to verify that examinees possess the skills necessary to implement and support security policies and procedures. It should be noted that the Security+ exam is not vendor specific. In other words, CompTIA states that the exam does not focus on one operating system by any one vendor. All terms, concepts, principles, and theories can be applied to operating systems such as Windows and Linux. Keeping this in mind, one can most likely assume that the exam will simply focus on concepts.

Why Should You Get CompTIA Security+ Certified?

Passing the Security+ exam proves that you have the basic knowledge and skills necessary to implement and support security processes and procedures in general. If you are looking for a position in the technologies industry currently, obtaining this certification might just give you the edge you need to secure a position. If you are already employed, acquiring this certification might help you advance within your current position or increase your chances for future career growth within your company. The simple fact of the matter is this: anyone who has this certification title is going to be more valuable to the industry and have a better chance of securing employment than those who don’t.

What Information Is Covered in the Security+ Exam?

CompTIA organizes the security information that will be covered in its certification exams into what are called domains. CompTIA has chosen the following five domains and sub-domain topics from which questions on the Security+ Exam will be drawn:

  • General security concepts

  • Communications security

  • Infrastructure security

  • Basics of cryptography

  • Operational/organizational security

Each of these domains is comprised of various security-related topics that range from firewalls to digital certificates. Please refer to the Table of Contents of this book for more information regarding the specific topics covered for each of CompTIA’s specific domains. This book covers all of the CompTIA Security+ domains. It is important to note that security is a huge subject. There are thousands of books on the market that are based completely on a single security related subject such as cryptography. This book will cover a bit more security-related information than those specified in the CompTIA Security+ domain objectives. However, it will not overburden you with useless non-security related material. This information is in place to give you a strong overview of security subject matter in general with a very fine microscope on the subject matter CompTIA is most likely to target with specific questions.

In order to prepare yourself for the exam as well as possible, you need to isolate the areas that will be targeted on the exam and focus your time and energy fine tuning your skills with these subjects.

General Security Concepts

This domain encompasses the following components:

  • Access control

  • Authentication

  • Non-essential services and protocols

  • Attacks

  • Malicious code

  • Social engineering

  • Auditing

Communications Security

This domain encompasses the following components:

  • Remote access

  • E-mail

  • Web

  • Directory

  • File transfer

  • Wireless

Infrastructure Security

This domain encompasses the following components:

  • Devices

  • Media

  • Security topologies

  • Intrusion detection

  • Security baselines

Basics of Cryptography

This domain encompasses the following components:

  • Algorithms

  • Concepts of using cryptography

  • PKI

  • Standards and protocols

  • Key management/certificate lifecycle

Operational/Organizational Security

This domain encompasses the following components:

  • Physical security

  • Disaster recovery

  • Business continuity

  • Policy and procedures

  • Privilege management

  • Forensics

  • Risk identification

  • Education

  • Documentation

What Are the Prerequisites for the Exam?

CompTIA states that individuals wishing to take the Security+ exam should have A+/Network+ certification, or equivalent, and at least two years of hands-on networking and TCP/IP experience. It is also suggested that you have this experience before using this book as a study tool for the Security+ exam. The author of this book suggests specific hands-on experience with authentication mechanisms, backup and recovery tools, digital certificates, and business recovery and response implementation procedures.



 < Day Day Up > 



The Security+ Exam Guide (TestTaker's Guide Series)
Security + Exam Guide (Charles River Media Networking/Security)
ISBN: 1584502517
EAN: 2147483647
Year: 2003
Pages: 136

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net