Objective map
See the whole exam. Work the covered edge.
Mastery is derived from your actual attempts, not a checkbox. An objective inherits the lowest rung among its authored concepts.
Domain 1.012%
General Security Concepts
4 exam objectives
- 1.1Compare and contrast various types of security controls.Not Started
- 1.2Summarize fundamental security concepts.Not Started
- 1.3Explain the importance of change management processes and the impact to security.Coming soon
- 1.4Explain the importance of using appropriate cryptographic solutions.Not Started
Domain 2.022%
Threats, Vulnerabilities, and Mitigations
5 exam objectives
- 2.1Compare and contrast common threat actors and motivations.Coming soon
- 2.2Explain common threat vectors and attack surfaces.Coming soon
- 2.3Explain various types of vulnerabilities.Coming soon
- 2.4Given a scenario, analyze indicators of malicious activity.Coming soon
- 2.5Explain the purpose of mitigation techniques used to secure the enterprise.Coming soon
Domain 3.018%
Security Architecture
4 exam objectives
- 3.1Compare and contrast security implications of different architecture models.Coming soon
- 3.2Given a scenario, apply security principles to secure enterprise infrastructure.Coming soon
- 3.3Compare and contrast concepts and strategies to protect data.Coming soon
- 3.4Explain the importance of resilience and recovery in security architecture.Coming soon
Domain 4.028%
Security Operations
9 exam objectives
- 4.1Given a scenario, apply common security techniques to computing resources.Coming soon
- 4.2Explain the security implications of proper hardware, software, and data asset management.Coming soon
- 4.3Explain various activities associated with vulnerability management.Coming soon
- 4.4Explain security alerting and monitoring concepts and tools.Coming soon
- 4.5Given a scenario, modify enterprise capabilities to enhance security.Coming soon
- 4.6Given a scenario, implement and maintain identity and access management.Coming soon
- 4.7Explain the importance of automation and orchestration related to secure operations.Coming soon
- 4.8Explain appropriate incident response activities.Coming soon
- 4.9Given a scenario, use data sources to support an investigation.Coming soon
Domain 5.020%
Security Program Management and Oversight
6 exam objectives
- 5.1Summarize elements of effective security governance.Coming soon
- 5.2Explain elements of the risk management process.Coming soon
- 5.3Explain the processes associated with third-party risk assessment and management.Coming soon
- 5.4Summarize elements of effective security compliance.Coming soon
- 5.5Explain types and purposes of audits and assessments.Coming soon
- 5.6Given a scenario, implement security awareness practices.Coming soon
The registry already understands every domain. Expanding coverage is a content-only change—no new routes or engine logic required.
Study covered objectives