CompTIA · Official Blueprint
SY0-701 Exam Domains & Blueprint
The official CompTIA SY0-701 exam covers 5 domains. Domain weights tell you exactly how much of the exam each topic represents — and where to invest your study time.
SY0-701 Domain Weight Summary
Detailed Domain Breakdown
Domain 1: General Security Concepts
126 practice questionsSecurity controls (technical, managerial, operational), cryptography fundamentals, PKI, authentication protocols, and core security principles.
Practice General Security Concepts questionsDomain 2: Threats, Vulnerabilities, and Mitigations
235 practice questionsThreat actor types and motivations, common attack techniques (phishing, SQL injection, ransomware), vulnerability scanning, and mitigation strategies.
Practice Threats, Vulnerabilities, and Mitigations questionsDomain 3: Security Architecture
199 practice questionsNetwork segmentation, zero trust architecture, cloud security models, virtualisation security, and resilience/redundancy design.
Practice Security Architecture questionsDomain 4: Security Operations
267 practice questionsIncident response lifecycle, digital forensics, threat hunting, SIEM/SOAR tools, log analysis, and security automation.
Practice Security Operations questionsDomain 5: Security Program Management and Oversight
173 practice questionsRisk management frameworks, data governance, compliance, third-party risk management, and privacy regulations.
Practice Security Program Management and Oversight questionsHow to Use Domain Weights in Your Study Plan
The heaviest domain on the SY0-701 is "General Security Concepts" at 12%. Start here and return to it regularly.
Allocate study time proportional to domain weight — a 25% domain deserves roughly 25% of your prep hours.
Never skip a low-weight domain. A 10% domain still represents 5–7 exam questions — enough to make the difference between pass and fail.
Use JT Exams domain analytics to track your accuracy per domain automatically. The system routes extra questions to your weak areas.
Practice every SY0-701 domain
JT Exams tracks your accuracy per domain automatically and routes you toward your weakest areas — no manual configuration needed.
No credit card · Cancel anytime
SY0-701 Concept Guides
CIA Triad
Three principles sit at the foundation of every security decision ever made: Confidentiality, Integrity, and Availability.
PKI & Certificates
Every time your browser shows a padlock icon, PKI is working in the background.
Zero Trust
The old security model assumed that anything inside the corporate network could be trusted.
Incident Response
When a breach happens, the organizations that limit damage are the ones that have a plan before the attacker arrives.
Risk Management
Security spending without a framework is guesswork.
Cryptography
Cryptography is the engine behind every secure connection, every encrypted file, and every digital signature you rely on without thinking about it.