|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/comptia-security-plus-exam-prep-questions/
课程评论:没有评论
**Coursera 课程:CompTIA Security+ (SY0-701) 考试准备** 本课程旨在帮助您准备 CompTIA Security+ (SY0-701) 认证考试。考试包含多项选择题和基于表现的题目,总共最多 90 道题,考试时长为 90 分钟。我们强烈建议您拥有至少 2 年的 IT 管理经验,其中包含信息安全方面的实践经验以及对安全概念的广泛理解。 **考试内容涵盖以下五大领域:** 1. **通用安全概念 (12%):** 比较和对比不同的安全控制类型,总结基础安全概念,解释变更管理过程及其对安全的影响,并阐述使用适当的加密解决方案的重要性。 2. **威胁、漏洞与缓解措施 (22%):** 比较和对比常见的威胁行为者及其动机,解释常见的威胁向量和攻击面,说明各种漏洞的类型,分析恶意活动指标,并解释用于保护企业网络的缓解技术。 3. **安全架构 (18%):** 比较和对比不同架构模型的安全影响,应用安全原则来保护企业基础设施,比较和对比保护数据所需的策略和策略,并解释韧性和恢复力在安全架构中的重要性。 4. **安全运营 (28%):** 应用常见的安全技术来保护计算资源,解释正确软硬件和数据资产管理的安全性影响,说明漏洞管理相关的各项活动,解释安全警报和监控的概念及工具,增强企业安全能力,实施和维护身份与访问管理,阐述自动化和协同化在安全运营中的重要性,解释适当的事件响应活动,并利用数据源支持调查。 5. **安全项目管理与监督 (20%):** 总结有效的安全治理要素,解释风险管理流程,说明第三方风险评估与管理相关的流程,总结有效的安全合规性要素,解释审计与评估的类型及目的,并实施安全意识实践。
Test DetailsRequired Exam: SY0-701Number of Questions: Up to 90Question Types: Multiple-choice and performance-basedTest Duration: 90 minutesRecommended Experience: At least 2 years of IT administration experience with a focus on security, including hands-on experience with technical information security and a broad understanding of security conceptsExam Objectives (Domains)Domain Percentage of Examination1.0 General Security Concepts 12%2.0 Threats, Vulnerabilities, and Mitigations 22%3.0 Security Architecture 18%4.0 Security Operations 28%5.0 Security Program Management and Oversight20%Total 100%1.0 General Security Concepts1.1 Compare and contrast various types of security controls.1.2 Summarize fundamental security concepts.1.3 Explain the importance of change management processes and the impact to security.1.4 Explain the importance of using appropriate cryptographic solutions.2.0 Threats, Vulnerabilities, and Mitigations2.1 Compare and contrast common threat actors and motivations.2.2 Explain common threat vectors and attack surfaces.2.3 Explain various types of vulnerabilities2.4 Given a scenario, analyze indicators of malicious activity2.5 Explain the purpose of mitigation techniques used to secure the enterprise.3.0 Security Architecture3.1 Compare and contrast security implications of different architecture models3.2 Given a scenario, apply security principles to secure enterprise infrastructure.3.3 Compare and contrast concepts and strategies to protect data.3.4 Explain the importance of resilience and recovery in security architecture.4.0 Security Operations4.1 Given a scenario, apply common security techniques to computing resources.4.2 Explain the security implications of proper hardware, software, and data asset management.4.3 Explain various activities associated with vulnerability management.4.4 Explain security alerting and monitoring concepts and tools.4.5 Given a scenario, modify enterprise capabilities to enhance security.4.6 Given a scenario, implement and maintain identity and access management.4.7 Explain the importance of automation and orchestration related to secure operations4.8 Explain appropriate incident response activities4.9 Given a scenario, use data sources to support an investigation5.0 Security Program Management and Oversight5.1 Summarize elements of effective security governance.5.2 Explain elements of the risk management process.5.3 Explain the processes associated with third-party risk assessment and management.5.4 Summarize elements of effective security compliance5.5 Explain types and purposes of audits and assessments.5.6 Given a scenario, implement security awareness practices