SlideShare a Scribd company logo
Meet your
speakers
Patrick Lane
Guest speaker
Director, Certification Product Management
CompTIA
Agenda
● What is Security+?
○ Baseline cybersecurity skills
○ Job roles and growth indicators
○ SY0-601 vs. 501 Updates
○ Exam details
● Q&A
What is the CompTIA
Security+ certification?
Security+ assesses baseline cybersecurity skills
Security+ is an entry-level cybersecurity certification exam released
in 2002 and updated every three years. It assesses core technical skills
required to secure networks, systems, software and devices.
● Broad range of baseline cybersecurity skills needed to ensure high
performance on the job
● It appears in nearly 10% of all U.S. cybersecurity job ads because
employers are using it to make their hiring decisions
Large industry influences affecting revised Security+:
● More threats, attacks and vulnerabilities
● Migration to the cloud
● Emphasis on entry-level incident response
● Governance, risk and compliance (GRC)
Security+ helps solve an industry problem
As cybersecurity attacks increase (and accelerate in the COVID-19 environment), more
job roles are tasked with bridging the gap between improving baseline security
readiness and incident response to address today’s threats.
Updates to Security+ reflect current skills relevant to these job roles and prepare
candidates to be more proactive in preventing the next attack.
● Problem: Cybersecurity attacks have increased dramatically (up by 68%)
requiring more job roles, both in cybersecurity and related roles, to take
responsibility for baseline readiness and incident response
● Solution: Training and certifying the workforce/employees with the updated
Security+ 601 exam validates the latest skills relevant to security job roles and
related job roles, preparing employees and organizations to be more proactive in
preventing the next attack
● Benefit: Security+ 601 ensures organizations have talent with the latest skills
and competencies needed to improve baseline security readiness and incident
response by applying today’s current best practices for preventing and
addressing the latest attacks, threats and vulnerabilities.
Job roles covered in Security+ 601
More job roles use Security+ skills than ever before, thanks to the wide applicability
of Security+ skills. Related job roles doubled (4 to 10) because more jobs require
the baseline cybersecurity skills found in Security+.
SY0-601 primary job roles:
● Security administrator
● Systems administrator
SY0-601 related job roles that use baseline
cybersecurity skills for part of the job:
● Helpdesk managers and analysts
● Network and cloud engineers
● IT auditors
● Security officer
● Security manager
● IT project manager
● DevOps team
● Software developer
SY0-501 primary job roles:
● Security administrator
● Systems administrator
SY0-501 related job roles:
● Network administrator
● Security specialist
● Security consultant
● Security engineer
Security+ sets up IT pros for
success in intermediate and
advanced cybersecurity job
roles such as Security Analyst,
Penetration Tester, Security
Engineer, Forensics Analyst and
Security Architect
Job role skills and exam release
These job roles are using Security+ for its baseline cybersecurity skills that include the ability to:
● Identify, analyze and respond to cybersecurity events and incidents
● Monitor and secure hybrid environments, which operate on premises and in the cloud
● Operate with an awareness of applicable laws and policies
● Assess the cybersecurity posture of an enterprise environment using various tools and techniques
● Recommend and implement appropriate cybersecurity solutions
Release scheduled for mid-November 2020
● Available online/onsite at PearsonVUE
● New exam code is SY0-601
● Existing SY0-501 exam retires July 31, 2021
6 changes to the Security+ (601 vs. 501)
● Newer 601 skills include more threats; cloud environments;
entry-level incident response; and governance, risk and
compliance (GRC).
● There are fewer domains in the new version: 5 instead of 6.
● There are fewer objectives: 35 instead of 37.
● There are 25% more bulleted examples listed under each
objective to help contextualize the meaning of the objective.
Although the exam questions are not based on the bulleted
examples, students should be familiar with all of them.
● Several exam domains and exam objectives were re-
ordered and re-named to address instructional design
improvements. For example, the previous Technologies
and Tools domain was broken apart into the domains
where the technologies and tools were applied.
● Bloom’s taxonomy indicates more application of skills
and slightly less analysis overall. Analysis skills are taught
in CySA+, which is higher up the cybersecurity career
pathway. Application of skills, such as administration and
configuration, are covered in Security+.
Security+ 601 Security+ 501
● Attacks, threats and vulnerabilities (24%)
● Architecture and design (21%)
● Implementation (25%)
● Operations and incident response (16%)
● Governance, risk and compliance (14%)
● Threats, attacks and vulnerabilities (21%)
● Technologies and tools (22%)
● Architecture and design (15%)
● Identity and access management (16%)
● Risk management (14%)
● Cryptography and PKI (12%)
Job growth indicators
Network and Computer Systems
Administrators jobs will grow 4% between
2019 and 2029.
According to Cyberseek, of the U.S. employed
workforce, 16% are certified with Security+. It
is the 3rd most requested certification in job
openings.
Globally there are almost 600K who have
certified in Security+ since inception.
The U.S. Bureau of Labor Statistics (BLS)
classifies Security+ under Network and
Computer Systems Administrators, which
includes:
• 2019 Median Pay: $83,510 annual per year
• Number of Jobs Available: +373K
* Latest pay info from U.S. Bureau of Labor Statistics; Job openings and hiring manager info derived from CompTIA international research reports.
What makes Security+ different
What is Security+?
CompTIA Security+ is a global certification that validates the baseline skills necessary
to perform core security functions and pursue an IT security career.
Why it’s different
• More choose Security+: Chosen by more corporations and defense organizations than any other
certification on the market to validate baseline security skills and for fulfilling the DoD 8570
compliance.
• Security+ proves hands-on skills: The only baseline cybersecurity certification emphasizing
hands-on practical skills, ensuring the security professional is better prepared to problem solve a
wider variety of today’s complex issues.
• More job roles turn to Security+: Baseline cybersecurity skills are applicable across more of
today’s job roles to secure systems, software and hardware.
• Security+ is aligned to the latest trends and techniques: Covering the most core technical skills
in risk assessment and management, incident response, forensics, enterprise networks,
hybrid/cloud operations and security controls, ensuring high-performance on the job.
Security+ competitive comparison
CompTIA Security+
(ISC)² Systems
Security Certified
Practitioner (SSCP)
EC-Council Certified
Ethical Hacker
(CEH)
GIAC Security
Essentials (GSEC)
Performance-
based
questions
Yes No No No
Exam focus Core cybersecurity
skills required by
security and network
administrators
Security
administrator job
role or systems
security
Penetration testing
Fundamental
cybersecurity skills
Experience level Entry level Entry level Entry level Entry level
Vendor neutral Yes Yes Yes Yes
Security+ SY0-601 Exam Details
Item Description
Exam code SY0-601
Launch Date Mid-November 2020
Availability Worldwide
Testing Provider Pearson VUE Testing Centers, OnVUE
Question Types Performance based and multiple choice
No. of Questions Maximum of 90 questions
Length of Test 90 minutes
Passing Score 750 (on a scale of 100-900)
Languages English, others to follow
Recommended Experience CompTIA Network+ and two years of experience in IT administration with a security focus
Exam retirement SY0-501 to retire July 31, 2021
Organizations that assisted in development
● Max Life Insurance
● Aussie Home Loans
● WilCo, LLC
● RxSense
● Southeastern Louisiana University
● Spire Inc.
● University of Redlands
● PCM Sales
● Johns Hopkins University Applied Physics
Laboratory
● Australian Information Security Association /
Deakin University
● University of Petroleum and Engineering
Studies
● Archdiocese of Philadelphia
● Fayetteville Technical Community College
● U.S. Navy Center for Information Dominance
● Tanium
● SecureWorks
● Target Corp.
● Splunk
● Ricoh
● Netflix
● General Dynamics IT (GDIT)
● Boulder Community Health
● Washington State Patrol
● aeSolutions
Subject matter experts (SMEs) from the following organizations assisted with the development of
SY0-601. Some of the biggest contributors are listed below.
Questions?
Free year of Infosec Skills
($299)
And the winner is ...
Everyone gets a free week
of Infosec Skills.
Then it’s just $34/month
infosecinstitute.com/skills
About us
At Infosec, we believe knowledge is the most
powerful tool in the fight against cybercrime. We
provide the best certification and skills
development training for IT and security
professionals, as well as employee security
awareness training and phishing simulations.
infosecinstitute.com
708.689.0131
19

More Related Content

What's hot

Intrusion detection system
Intrusion detection systemIntrusion detection system
Intrusion detection system
OECLIB Odisha Electronics Control Library
 
Third Party Risk Management
Third Party Risk ManagementThird Party Risk Management
Third Party Risk Management
EC-Council
 
CISSP - Chapter 1 - Security Concepts
CISSP - Chapter 1 - Security ConceptsCISSP - Chapter 1 - Security Concepts
CISSP - Chapter 1 - Security Concepts
Karthikeyan Dhayalan
 
CCNA Security - Chapter 1
CCNA Security - Chapter 1CCNA Security - Chapter 1
CCNA Security - Chapter 1Irsandi Hasan
 
SOC 2 Compliance and Certification
SOC 2 Compliance and CertificationSOC 2 Compliance and Certification
SOC 2 Compliance and Certification
ControlCase
 
CompTIA Security+ SY0-601 Domain 1
CompTIA Security+ SY0-601 Domain 1CompTIA Security+ SY0-601 Domain 1
CompTIA Security+ SY0-601 Domain 1
ShivamSharma909
 
Introduction to router
Introduction to routerIntroduction to router
Introduction to router
MuhammadUsman1853
 
Presentation on VPN
Presentation on VPNPresentation on VPN
Presentation on VPN
Binod Poudel
 
Intrusion prevention system(ips)
Intrusion prevention system(ips)Intrusion prevention system(ips)
Intrusion prevention system(ips)
Papun Papun
 
Digital forensics Steps
Digital forensics StepsDigital forensics Steps
Digital forensics Steps
gamemaker762
 
Domain 2 - Asset Security
Domain 2 - Asset SecurityDomain 2 - Asset Security
Domain 2 - Asset Security
Maganathin Veeraragaloo
 
Information security management system
Information security management systemInformation security management system
Information security management systemArani Srinivasan
 
CISSP Chapter 7 - Security Operations
CISSP Chapter 7 - Security OperationsCISSP Chapter 7 - Security Operations
CISSP Chapter 7 - Security Operations
Karthikeyan Dhayalan
 
Information Security Risk Management
Information Security Risk Management Information Security Risk Management
Information Security Risk Management
Ersoy AKSOY
 
Computer Security - CCNA Security - Lecture 1
Computer Security - CCNA Security - Lecture 1Computer Security - CCNA Security - Lecture 1
Computer Security - CCNA Security - Lecture 1
Mohamed Loey
 
Information security management
Information security managementInformation security management
Information security managementUMaine
 

What's hot (20)

Intrusion detection system
Intrusion detection systemIntrusion detection system
Intrusion detection system
 
Endpoint Protection Comparison.pdf
Endpoint Protection Comparison.pdfEndpoint Protection Comparison.pdf
Endpoint Protection Comparison.pdf
 
Third Party Risk Management
Third Party Risk ManagementThird Party Risk Management
Third Party Risk Management
 
CISSP - Chapter 1 - Security Concepts
CISSP - Chapter 1 - Security ConceptsCISSP - Chapter 1 - Security Concepts
CISSP - Chapter 1 - Security Concepts
 
CCNA Security - Chapter 1
CCNA Security - Chapter 1CCNA Security - Chapter 1
CCNA Security - Chapter 1
 
SOC 2 Compliance and Certification
SOC 2 Compliance and CertificationSOC 2 Compliance and Certification
SOC 2 Compliance and Certification
 
CompTIA Security+ SY0-601 Domain 1
CompTIA Security+ SY0-601 Domain 1CompTIA Security+ SY0-601 Domain 1
CompTIA Security+ SY0-601 Domain 1
 
Introduction to router
Introduction to routerIntroduction to router
Introduction to router
 
Ppt of routing protocols
Ppt of routing protocolsPpt of routing protocols
Ppt of routing protocols
 
Proxy
ProxyProxy
Proxy
 
Presentation on VPN
Presentation on VPNPresentation on VPN
Presentation on VPN
 
Intrusion prevention system(ips)
Intrusion prevention system(ips)Intrusion prevention system(ips)
Intrusion prevention system(ips)
 
Digital forensics Steps
Digital forensics StepsDigital forensics Steps
Digital forensics Steps
 
Domain 2 - Asset Security
Domain 2 - Asset SecurityDomain 2 - Asset Security
Domain 2 - Asset Security
 
Information security management system
Information security management systemInformation security management system
Information security management system
 
CISSP Chapter 7 - Security Operations
CISSP Chapter 7 - Security OperationsCISSP Chapter 7 - Security Operations
CISSP Chapter 7 - Security Operations
 
Information Security Risk Management
Information Security Risk Management Information Security Risk Management
Information Security Risk Management
 
Link state protocols.ppt
Link state protocols.pptLink state protocols.ppt
Link state protocols.ppt
 
Computer Security - CCNA Security - Lecture 1
Computer Security - CCNA Security - Lecture 1Computer Security - CCNA Security - Lecture 1
Computer Security - CCNA Security - Lecture 1
 
Information security management
Information security managementInformation security management
Information security management
 

Similar to CompTIA Security+: Everything you need to know about the SY0-601 update

CompTIA CySA+ certification (CS0-003) changes: Everything you need to know
CompTIA CySA+ certification (CS0-003) changes: Everything you need to knowCompTIA CySA+ certification (CS0-003) changes: Everything you need to know
CompTIA CySA+ certification (CS0-003) changes: Everything you need to know
Infosec
 
Meeting the Cybersecurity Skills Challenge with CompTIA Security+
Meeting the Cybersecurity Skills Challenge with CompTIA Security+Meeting the Cybersecurity Skills Challenge with CompTIA Security+
Meeting the Cybersecurity Skills Challenge with CompTIA Security+
CompTIA
 
CompTIA cysa+ certification changes: Everything you need to know
CompTIA cysa+ certification changes: Everything you need to knowCompTIA cysa+ certification changes: Everything you need to know
CompTIA cysa+ certification changes: Everything you need to know
Infosec
 
CompTIA Security+ Certification | Sec+
CompTIA Security+ Certification | Sec+ CompTIA Security+ Certification | Sec+
CompTIA Security+ Certification | Sec+
SagarNegi10
 
What’s New in CYSA+ Exam (CSO-002).pdf
What’s New in CYSA+ Exam (CSO-002).pdfWhat’s New in CYSA+ Exam (CSO-002).pdf
What’s New in CYSA+ Exam (CSO-002).pdf
infosec train
 
Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape...
 Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape... Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape...
Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape...
NetCom Learning
 
CompTIA 220-802 Dumps
CompTIA 220-802 DumpsCompTIA 220-802 Dumps
CompTIA 220-802 Dumps
sloulaef
 
Activity1 c1
Activity1 c1Activity1 c1
Activity1 c1
FORMAEMPLEO
 
CISSP Vs. CISA Which is better for you.pdf
CISSP Vs. CISA Which is better for you.pdfCISSP Vs. CISA Which is better for you.pdf
CISSP Vs. CISA Which is better for you.pdf
Infosec Train
 
CompTIA CASP+ | Everything you need to know about the new exam
CompTIA CASP+ | Everything you need to know about the new examCompTIA CASP+ | Everything you need to know about the new exam
CompTIA CASP+ | Everything you need to know about the new exam
Infosec
 
Skillogic Cyber security Course in Pune
Skillogic Cyber security Course in  PuneSkillogic Cyber security Course in  Pune
Skillogic Cyber security Course in Pune
Skillogic Solutions
 
CompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltailsCompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltails
CRAW CYBER SECURITY PVT LTD
 
Skillogic Cyber Security Course in Chennai
Skillogic Cyber Security Course in ChennaiSkillogic Cyber Security Course in Chennai
Skillogic Cyber Security Course in Chennai
Skillogic Solutions
 
Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024
Skillogic Solutions
 
Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024
Skillogic Solutions
 
Cyber Security Course in Pune March 2024
Cyber Security Course in Pune March 2024Cyber Security Course in Pune March 2024
Cyber Security Course in Pune March 2024
Skillogic Solutions
 
Top Cybersecurity Certs
Top Cybersecurity CertsTop Cybersecurity Certs
Top Cybersecurity Certs
Riya Kapoor
 
Cybersecurity Careers: Setting Yourself Apart in a Competitive Field
Cybersecurity Careers: Setting Yourself Apart in a Competitive FieldCybersecurity Careers: Setting Yourself Apart in a Competitive Field
Cybersecurity Careers: Setting Yourself Apart in a Competitive Field
Infosec
 
Cyber Security Course in Bangalore January
Cyber Security Course in Bangalore JanuaryCyber Security Course in Bangalore January
Cyber Security Course in Bangalore January
Skillogic Solutions
 
Cyber Security Course in Bangalore February
Cyber Security Course in Bangalore FebruaryCyber Security Course in Bangalore February
Cyber Security Course in Bangalore February
Skillogic Solutions
 

Similar to CompTIA Security+: Everything you need to know about the SY0-601 update (20)

CompTIA CySA+ certification (CS0-003) changes: Everything you need to know
CompTIA CySA+ certification (CS0-003) changes: Everything you need to knowCompTIA CySA+ certification (CS0-003) changes: Everything you need to know
CompTIA CySA+ certification (CS0-003) changes: Everything you need to know
 
Meeting the Cybersecurity Skills Challenge with CompTIA Security+
Meeting the Cybersecurity Skills Challenge with CompTIA Security+Meeting the Cybersecurity Skills Challenge with CompTIA Security+
Meeting the Cybersecurity Skills Challenge with CompTIA Security+
 
CompTIA cysa+ certification changes: Everything you need to know
CompTIA cysa+ certification changes: Everything you need to knowCompTIA cysa+ certification changes: Everything you need to know
CompTIA cysa+ certification changes: Everything you need to know
 
CompTIA Security+ Certification | Sec+
CompTIA Security+ Certification | Sec+ CompTIA Security+ Certification | Sec+
CompTIA Security+ Certification | Sec+
 
What’s New in CYSA+ Exam (CSO-002).pdf
What’s New in CYSA+ Exam (CSO-002).pdfWhat’s New in CYSA+ Exam (CSO-002).pdf
What’s New in CYSA+ Exam (CSO-002).pdf
 
Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape...
 Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape... Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape...
Beyond Keystroke Logging and Trojans: How to Navigate the Changing Landscape...
 
CompTIA 220-802 Dumps
CompTIA 220-802 DumpsCompTIA 220-802 Dumps
CompTIA 220-802 Dumps
 
Activity1 c1
Activity1 c1Activity1 c1
Activity1 c1
 
CISSP Vs. CISA Which is better for you.pdf
CISSP Vs. CISA Which is better for you.pdfCISSP Vs. CISA Which is better for you.pdf
CISSP Vs. CISA Which is better for you.pdf
 
CompTIA CASP+ | Everything you need to know about the new exam
CompTIA CASP+ | Everything you need to know about the new examCompTIA CASP+ | Everything you need to know about the new exam
CompTIA CASP+ | Everything you need to know about the new exam
 
Skillogic Cyber security Course in Pune
Skillogic Cyber security Course in  PuneSkillogic Cyber security Course in  Pune
Skillogic Cyber security Course in Pune
 
CompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltailsCompTIA Security+ Training and Certification in deltails
CompTIA Security+ Training and Certification in deltails
 
Skillogic Cyber Security Course in Chennai
Skillogic Cyber Security Course in ChennaiSkillogic Cyber Security Course in Chennai
Skillogic Cyber Security Course in Chennai
 
Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024
 
Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024Cyber Security Course in Pune February 2024
Cyber Security Course in Pune February 2024
 
Cyber Security Course in Pune March 2024
Cyber Security Course in Pune March 2024Cyber Security Course in Pune March 2024
Cyber Security Course in Pune March 2024
 
Top Cybersecurity Certs
Top Cybersecurity CertsTop Cybersecurity Certs
Top Cybersecurity Certs
 
Cybersecurity Careers: Setting Yourself Apart in a Competitive Field
Cybersecurity Careers: Setting Yourself Apart in a Competitive FieldCybersecurity Careers: Setting Yourself Apart in a Competitive Field
Cybersecurity Careers: Setting Yourself Apart in a Competitive Field
 
Cyber Security Course in Bangalore January
Cyber Security Course in Bangalore JanuaryCyber Security Course in Bangalore January
Cyber Security Course in Bangalore January
 
Cyber Security Course in Bangalore February
Cyber Security Course in Bangalore FebruaryCyber Security Course in Bangalore February
Cyber Security Course in Bangalore February
 

More from Infosec

AWS Certified DevOps Engineer: What it is and how to get certified
AWS Certified DevOps Engineer: What it is and how to get certifiedAWS Certified DevOps Engineer: What it is and how to get certified
AWS Certified DevOps Engineer: What it is and how to get certified
Infosec
 
AWS Cloud Operations Administrator: What it is and how to get certified
AWS Cloud Operations Administrator: What it is and how to get certifiedAWS Cloud Operations Administrator: What it is and how to get certified
AWS Cloud Operations Administrator: What it is and how to get certified
Infosec
 
AWS Certified Security - Specialty: What it is and how to get certified
AWS Certified Security - Specialty: What it is and how to get certifiedAWS Certified Security - Specialty: What it is and how to get certified
AWS Certified Security - Specialty: What it is and how to get certified
Infosec
 
AWS Certified Solutions Architect Webinar.pptx
AWS Certified Solutions Architect Webinar.pptxAWS Certified Solutions Architect Webinar.pptx
AWS Certified Solutions Architect Webinar.pptx
Infosec
 
Infosec and AWS - A new way to train for your AWS certification (1).pptx
Infosec and AWS - A new way to train for your AWS certification (1).pptxInfosec and AWS - A new way to train for your AWS certification (1).pptx
Infosec and AWS - A new way to train for your AWS certification (1).pptx
Infosec
 
How AI and ChatGPT are changing cybersecurity forever.pptx
How AI and ChatGPT are changing cybersecurity forever.pptxHow AI and ChatGPT are changing cybersecurity forever.pptx
How AI and ChatGPT are changing cybersecurity forever.pptx
Infosec
 
NCSAM 2023 Webinar.pptx
NCSAM 2023 Webinar.pptxNCSAM 2023 Webinar.pptx
NCSAM 2023 Webinar.pptx
Infosec
 
Skills training value: How to differentiate your staff and your organization ...
Skills training value: How to differentiate your staff and your organization ...Skills training value: How to differentiate your staff and your organization ...
Skills training value: How to differentiate your staff and your organization ...
Infosec
 
Learning ≠ Education: How people really learn and what it means for security ...
Learning ≠ Education: How people really learn and what it means for security ...Learning ≠ Education: How people really learn and what it means for security ...
Learning ≠ Education: How people really learn and what it means for security ...
Infosec
 
Security awareness training - 4 topics that matter most
Security awareness training - 4 topics that matter mostSecurity awareness training - 4 topics that matter most
Security awareness training - 4 topics that matter most
Infosec
 
Join the hunt: Threat hunting for proactive cyber defense.pptx
Join the hunt: Threat hunting for proactive cyber defense.pptxJoin the hunt: Threat hunting for proactive cyber defense.pptx
Join the hunt: Threat hunting for proactive cyber defense.pptx
Infosec
 
Threat hunting foundations: People, process and technology.pptx
Threat hunting foundations: People, process and technology.pptxThreat hunting foundations: People, process and technology.pptx
Threat hunting foundations: People, process and technology.pptx
Infosec
 
How to do application security right
How to do application security rightHow to do application security right
How to do application security right
Infosec
 
A public discussion about privacy careers: Training, certification and experi...
A public discussion about privacy careers: Training, certification and experi...A public discussion about privacy careers: Training, certification and experi...
A public discussion about privacy careers: Training, certification and experi...
Infosec
 
Learn intrusion detection: Using Zeek and Elastic for incident response
Learn intrusion detection: Using Zeek and Elastic for incident responseLearn intrusion detection: Using Zeek and Elastic for incident response
Learn intrusion detection: Using Zeek and Elastic for incident response
Infosec
 
Get started in cybersecurity in 2022
Get started in cybersecurity in 2022Get started in cybersecurity in 2022
Get started in cybersecurity in 2022
Infosec
 
CompTIA PenTest+: Everything you need to know about the exam
CompTIA PenTest+: Everything you need to know about the examCompTIA PenTest+: Everything you need to know about the exam
CompTIA PenTest+: Everything you need to know about the exam
Infosec
 
CompTIA network+ | Everything you need to know about the new exam
CompTIA network+ | Everything you need to know about the new examCompTIA network+ | Everything you need to know about the new exam
CompTIA network+ | Everything you need to know about the new exam
Infosec
 
Isaca career paths - the highest paying certifications in the industry
Isaca career paths - the highest paying certifications in the industryIsaca career paths - the highest paying certifications in the industry
Isaca career paths - the highest paying certifications in the industry
Infosec
 
CMMC case study: Inside a CMMC assessment
CMMC case study: Inside a CMMC assessmentCMMC case study: Inside a CMMC assessment
CMMC case study: Inside a CMMC assessment
Infosec
 

More from Infosec (20)

AWS Certified DevOps Engineer: What it is and how to get certified
AWS Certified DevOps Engineer: What it is and how to get certifiedAWS Certified DevOps Engineer: What it is and how to get certified
AWS Certified DevOps Engineer: What it is and how to get certified
 
AWS Cloud Operations Administrator: What it is and how to get certified
AWS Cloud Operations Administrator: What it is and how to get certifiedAWS Cloud Operations Administrator: What it is and how to get certified
AWS Cloud Operations Administrator: What it is and how to get certified
 
AWS Certified Security - Specialty: What it is and how to get certified
AWS Certified Security - Specialty: What it is and how to get certifiedAWS Certified Security - Specialty: What it is and how to get certified
AWS Certified Security - Specialty: What it is and how to get certified
 
AWS Certified Solutions Architect Webinar.pptx
AWS Certified Solutions Architect Webinar.pptxAWS Certified Solutions Architect Webinar.pptx
AWS Certified Solutions Architect Webinar.pptx
 
Infosec and AWS - A new way to train for your AWS certification (1).pptx
Infosec and AWS - A new way to train for your AWS certification (1).pptxInfosec and AWS - A new way to train for your AWS certification (1).pptx
Infosec and AWS - A new way to train for your AWS certification (1).pptx
 
How AI and ChatGPT are changing cybersecurity forever.pptx
How AI and ChatGPT are changing cybersecurity forever.pptxHow AI and ChatGPT are changing cybersecurity forever.pptx
How AI and ChatGPT are changing cybersecurity forever.pptx
 
NCSAM 2023 Webinar.pptx
NCSAM 2023 Webinar.pptxNCSAM 2023 Webinar.pptx
NCSAM 2023 Webinar.pptx
 
Skills training value: How to differentiate your staff and your organization ...
Skills training value: How to differentiate your staff and your organization ...Skills training value: How to differentiate your staff and your organization ...
Skills training value: How to differentiate your staff and your organization ...
 
Learning ≠ Education: How people really learn and what it means for security ...
Learning ≠ Education: How people really learn and what it means for security ...Learning ≠ Education: How people really learn and what it means for security ...
Learning ≠ Education: How people really learn and what it means for security ...
 
Security awareness training - 4 topics that matter most
Security awareness training - 4 topics that matter mostSecurity awareness training - 4 topics that matter most
Security awareness training - 4 topics that matter most
 
Join the hunt: Threat hunting for proactive cyber defense.pptx
Join the hunt: Threat hunting for proactive cyber defense.pptxJoin the hunt: Threat hunting for proactive cyber defense.pptx
Join the hunt: Threat hunting for proactive cyber defense.pptx
 
Threat hunting foundations: People, process and technology.pptx
Threat hunting foundations: People, process and technology.pptxThreat hunting foundations: People, process and technology.pptx
Threat hunting foundations: People, process and technology.pptx
 
How to do application security right
How to do application security rightHow to do application security right
How to do application security right
 
A public discussion about privacy careers: Training, certification and experi...
A public discussion about privacy careers: Training, certification and experi...A public discussion about privacy careers: Training, certification and experi...
A public discussion about privacy careers: Training, certification and experi...
 
Learn intrusion detection: Using Zeek and Elastic for incident response
Learn intrusion detection: Using Zeek and Elastic for incident responseLearn intrusion detection: Using Zeek and Elastic for incident response
Learn intrusion detection: Using Zeek and Elastic for incident response
 
Get started in cybersecurity in 2022
Get started in cybersecurity in 2022Get started in cybersecurity in 2022
Get started in cybersecurity in 2022
 
CompTIA PenTest+: Everything you need to know about the exam
CompTIA PenTest+: Everything you need to know about the examCompTIA PenTest+: Everything you need to know about the exam
CompTIA PenTest+: Everything you need to know about the exam
 
CompTIA network+ | Everything you need to know about the new exam
CompTIA network+ | Everything you need to know about the new examCompTIA network+ | Everything you need to know about the new exam
CompTIA network+ | Everything you need to know about the new exam
 
Isaca career paths - the highest paying certifications in the industry
Isaca career paths - the highest paying certifications in the industryIsaca career paths - the highest paying certifications in the industry
Isaca career paths - the highest paying certifications in the industry
 
CMMC case study: Inside a CMMC assessment
CMMC case study: Inside a CMMC assessmentCMMC case study: Inside a CMMC assessment
CMMC case study: Inside a CMMC assessment
 

Recently uploaded

How to Use Contact Form 7 Like a Pro.pptx
How to Use Contact Form 7 Like a Pro.pptxHow to Use Contact Form 7 Like a Pro.pptx
How to Use Contact Form 7 Like a Pro.pptx
Gal Baras
 
ER(Entity Relationship) Diagram for online shopping - TAE
ER(Entity Relationship) Diagram for online shopping - TAEER(Entity Relationship) Diagram for online shopping - TAE
ER(Entity Relationship) Diagram for online shopping - TAE
Himani415946
 
Latest trends in computer networking.pptx
Latest trends in computer networking.pptxLatest trends in computer networking.pptx
Latest trends in computer networking.pptx
JungkooksNonexistent
 
test test test test testtest test testtest test testtest test testtest test ...
test test  test test testtest test testtest test testtest test testtest test ...test test  test test testtest test testtest test testtest test testtest test ...
test test test test testtest test testtest test testtest test testtest test ...
Arif0071
 
The+Prospects+of+E-Commerce+in+China.pptx
The+Prospects+of+E-Commerce+in+China.pptxThe+Prospects+of+E-Commerce+in+China.pptx
The+Prospects+of+E-Commerce+in+China.pptx
laozhuseo02
 
BASIC C++ lecture NOTE C++ lecture 3.pptx
BASIC C++ lecture NOTE C++ lecture 3.pptxBASIC C++ lecture NOTE C++ lecture 3.pptx
BASIC C++ lecture NOTE C++ lecture 3.pptx
natyesu
 
急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样
急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样
急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样
3ipehhoa
 
原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样
原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样
原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样
3ipehhoa
 
1.Wireless Communication System_Wireless communication is a broad term that i...
1.Wireless Communication System_Wireless communication is a broad term that i...1.Wireless Communication System_Wireless communication is a broad term that i...
1.Wireless Communication System_Wireless communication is a broad term that i...
JeyaPerumal1
 
guildmasters guide to ravnica Dungeons & Dragons 5...
guildmasters guide to ravnica Dungeons & Dragons 5...guildmasters guide to ravnica Dungeons & Dragons 5...
guildmasters guide to ravnica Dungeons & Dragons 5...
Rogerio Filho
 
1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样
1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样
1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样
3ipehhoa
 
Multi-cluster Kubernetes Networking- Patterns, Projects and Guidelines
Multi-cluster Kubernetes Networking- Patterns, Projects and GuidelinesMulti-cluster Kubernetes Networking- Patterns, Projects and Guidelines
Multi-cluster Kubernetes Networking- Patterns, Projects and Guidelines
Sanjeev Rampal
 
Output determination SAP S4 HANA SAP SD CC
Output determination SAP S4 HANA SAP SD CCOutput determination SAP S4 HANA SAP SD CC
Output determination SAP S4 HANA SAP SD CC
ShahulHameed54211
 
This 7-second Brain Wave Ritual Attracts Money To You.!
This 7-second Brain Wave Ritual Attracts Money To You.!This 7-second Brain Wave Ritual Attracts Money To You.!
This 7-second Brain Wave Ritual Attracts Money To You.!
nirahealhty
 
History+of+E-commerce+Development+in+China-www.cfye-commerce.shop
History+of+E-commerce+Development+in+China-www.cfye-commerce.shopHistory+of+E-commerce+Development+in+China-www.cfye-commerce.shop
History+of+E-commerce+Development+in+China-www.cfye-commerce.shop
laozhuseo02
 
Living-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptx
Living-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptxLiving-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptx
Living-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptx
TristanJasperRamos
 

Recently uploaded (16)

How to Use Contact Form 7 Like a Pro.pptx
How to Use Contact Form 7 Like a Pro.pptxHow to Use Contact Form 7 Like a Pro.pptx
How to Use Contact Form 7 Like a Pro.pptx
 
ER(Entity Relationship) Diagram for online shopping - TAE
ER(Entity Relationship) Diagram for online shopping - TAEER(Entity Relationship) Diagram for online shopping - TAE
ER(Entity Relationship) Diagram for online shopping - TAE
 
Latest trends in computer networking.pptx
Latest trends in computer networking.pptxLatest trends in computer networking.pptx
Latest trends in computer networking.pptx
 
test test test test testtest test testtest test testtest test testtest test ...
test test  test test testtest test testtest test testtest test testtest test ...test test  test test testtest test testtest test testtest test testtest test ...
test test test test testtest test testtest test testtest test testtest test ...
 
The+Prospects+of+E-Commerce+in+China.pptx
The+Prospects+of+E-Commerce+in+China.pptxThe+Prospects+of+E-Commerce+in+China.pptx
The+Prospects+of+E-Commerce+in+China.pptx
 
BASIC C++ lecture NOTE C++ lecture 3.pptx
BASIC C++ lecture NOTE C++ lecture 3.pptxBASIC C++ lecture NOTE C++ lecture 3.pptx
BASIC C++ lecture NOTE C++ lecture 3.pptx
 
急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样
急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样
急速办(bedfordhire毕业证书)英国贝德福特大学毕业证成绩单原版一模一样
 
原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样
原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样
原版仿制(uob毕业证书)英国伯明翰大学毕业证本科学历证书原版一模一样
 
1.Wireless Communication System_Wireless communication is a broad term that i...
1.Wireless Communication System_Wireless communication is a broad term that i...1.Wireless Communication System_Wireless communication is a broad term that i...
1.Wireless Communication System_Wireless communication is a broad term that i...
 
guildmasters guide to ravnica Dungeons & Dragons 5...
guildmasters guide to ravnica Dungeons & Dragons 5...guildmasters guide to ravnica Dungeons & Dragons 5...
guildmasters guide to ravnica Dungeons & Dragons 5...
 
1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样
1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样
1比1复刻(bath毕业证书)英国巴斯大学毕业证学位证原版一模一样
 
Multi-cluster Kubernetes Networking- Patterns, Projects and Guidelines
Multi-cluster Kubernetes Networking- Patterns, Projects and GuidelinesMulti-cluster Kubernetes Networking- Patterns, Projects and Guidelines
Multi-cluster Kubernetes Networking- Patterns, Projects and Guidelines
 
Output determination SAP S4 HANA SAP SD CC
Output determination SAP S4 HANA SAP SD CCOutput determination SAP S4 HANA SAP SD CC
Output determination SAP S4 HANA SAP SD CC
 
This 7-second Brain Wave Ritual Attracts Money To You.!
This 7-second Brain Wave Ritual Attracts Money To You.!This 7-second Brain Wave Ritual Attracts Money To You.!
This 7-second Brain Wave Ritual Attracts Money To You.!
 
History+of+E-commerce+Development+in+China-www.cfye-commerce.shop
History+of+E-commerce+Development+in+China-www.cfye-commerce.shopHistory+of+E-commerce+Development+in+China-www.cfye-commerce.shop
History+of+E-commerce+Development+in+China-www.cfye-commerce.shop
 
Living-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptx
Living-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptxLiving-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptx
Living-in-IT-era-Module-7-Imaging-and-Design-for-Social-Impact.pptx
 

CompTIA Security+: Everything you need to know about the SY0-601 update

  • 1.
  • 2. Meet your speakers Patrick Lane Guest speaker Director, Certification Product Management CompTIA
  • 3. Agenda ● What is Security+? ○ Baseline cybersecurity skills ○ Job roles and growth indicators ○ SY0-601 vs. 501 Updates ○ Exam details ● Q&A
  • 4. What is the CompTIA Security+ certification?
  • 5. Security+ assesses baseline cybersecurity skills Security+ is an entry-level cybersecurity certification exam released in 2002 and updated every three years. It assesses core technical skills required to secure networks, systems, software and devices. ● Broad range of baseline cybersecurity skills needed to ensure high performance on the job ● It appears in nearly 10% of all U.S. cybersecurity job ads because employers are using it to make their hiring decisions Large industry influences affecting revised Security+: ● More threats, attacks and vulnerabilities ● Migration to the cloud ● Emphasis on entry-level incident response ● Governance, risk and compliance (GRC)
  • 6. Security+ helps solve an industry problem As cybersecurity attacks increase (and accelerate in the COVID-19 environment), more job roles are tasked with bridging the gap between improving baseline security readiness and incident response to address today’s threats. Updates to Security+ reflect current skills relevant to these job roles and prepare candidates to be more proactive in preventing the next attack. ● Problem: Cybersecurity attacks have increased dramatically (up by 68%) requiring more job roles, both in cybersecurity and related roles, to take responsibility for baseline readiness and incident response ● Solution: Training and certifying the workforce/employees with the updated Security+ 601 exam validates the latest skills relevant to security job roles and related job roles, preparing employees and organizations to be more proactive in preventing the next attack ● Benefit: Security+ 601 ensures organizations have talent with the latest skills and competencies needed to improve baseline security readiness and incident response by applying today’s current best practices for preventing and addressing the latest attacks, threats and vulnerabilities.
  • 7. Job roles covered in Security+ 601 More job roles use Security+ skills than ever before, thanks to the wide applicability of Security+ skills. Related job roles doubled (4 to 10) because more jobs require the baseline cybersecurity skills found in Security+. SY0-601 primary job roles: ● Security administrator ● Systems administrator SY0-601 related job roles that use baseline cybersecurity skills for part of the job: ● Helpdesk managers and analysts ● Network and cloud engineers ● IT auditors ● Security officer ● Security manager ● IT project manager ● DevOps team ● Software developer SY0-501 primary job roles: ● Security administrator ● Systems administrator SY0-501 related job roles: ● Network administrator ● Security specialist ● Security consultant ● Security engineer Security+ sets up IT pros for success in intermediate and advanced cybersecurity job roles such as Security Analyst, Penetration Tester, Security Engineer, Forensics Analyst and Security Architect
  • 8. Job role skills and exam release These job roles are using Security+ for its baseline cybersecurity skills that include the ability to: ● Identify, analyze and respond to cybersecurity events and incidents ● Monitor and secure hybrid environments, which operate on premises and in the cloud ● Operate with an awareness of applicable laws and policies ● Assess the cybersecurity posture of an enterprise environment using various tools and techniques ● Recommend and implement appropriate cybersecurity solutions Release scheduled for mid-November 2020 ● Available online/onsite at PearsonVUE ● New exam code is SY0-601 ● Existing SY0-501 exam retires July 31, 2021
  • 9.
  • 10. 6 changes to the Security+ (601 vs. 501) ● Newer 601 skills include more threats; cloud environments; entry-level incident response; and governance, risk and compliance (GRC). ● There are fewer domains in the new version: 5 instead of 6. ● There are fewer objectives: 35 instead of 37. ● There are 25% more bulleted examples listed under each objective to help contextualize the meaning of the objective. Although the exam questions are not based on the bulleted examples, students should be familiar with all of them. ● Several exam domains and exam objectives were re- ordered and re-named to address instructional design improvements. For example, the previous Technologies and Tools domain was broken apart into the domains where the technologies and tools were applied. ● Bloom’s taxonomy indicates more application of skills and slightly less analysis overall. Analysis skills are taught in CySA+, which is higher up the cybersecurity career pathway. Application of skills, such as administration and configuration, are covered in Security+. Security+ 601 Security+ 501 ● Attacks, threats and vulnerabilities (24%) ● Architecture and design (21%) ● Implementation (25%) ● Operations and incident response (16%) ● Governance, risk and compliance (14%) ● Threats, attacks and vulnerabilities (21%) ● Technologies and tools (22%) ● Architecture and design (15%) ● Identity and access management (16%) ● Risk management (14%) ● Cryptography and PKI (12%)
  • 11. Job growth indicators Network and Computer Systems Administrators jobs will grow 4% between 2019 and 2029. According to Cyberseek, of the U.S. employed workforce, 16% are certified with Security+. It is the 3rd most requested certification in job openings. Globally there are almost 600K who have certified in Security+ since inception. The U.S. Bureau of Labor Statistics (BLS) classifies Security+ under Network and Computer Systems Administrators, which includes: • 2019 Median Pay: $83,510 annual per year • Number of Jobs Available: +373K * Latest pay info from U.S. Bureau of Labor Statistics; Job openings and hiring manager info derived from CompTIA international research reports.
  • 12. What makes Security+ different What is Security+? CompTIA Security+ is a global certification that validates the baseline skills necessary to perform core security functions and pursue an IT security career. Why it’s different • More choose Security+: Chosen by more corporations and defense organizations than any other certification on the market to validate baseline security skills and for fulfilling the DoD 8570 compliance. • Security+ proves hands-on skills: The only baseline cybersecurity certification emphasizing hands-on practical skills, ensuring the security professional is better prepared to problem solve a wider variety of today’s complex issues. • More job roles turn to Security+: Baseline cybersecurity skills are applicable across more of today’s job roles to secure systems, software and hardware. • Security+ is aligned to the latest trends and techniques: Covering the most core technical skills in risk assessment and management, incident response, forensics, enterprise networks, hybrid/cloud operations and security controls, ensuring high-performance on the job.
  • 13. Security+ competitive comparison CompTIA Security+ (ISC)² Systems Security Certified Practitioner (SSCP) EC-Council Certified Ethical Hacker (CEH) GIAC Security Essentials (GSEC) Performance- based questions Yes No No No Exam focus Core cybersecurity skills required by security and network administrators Security administrator job role or systems security Penetration testing Fundamental cybersecurity skills Experience level Entry level Entry level Entry level Entry level Vendor neutral Yes Yes Yes Yes
  • 14. Security+ SY0-601 Exam Details Item Description Exam code SY0-601 Launch Date Mid-November 2020 Availability Worldwide Testing Provider Pearson VUE Testing Centers, OnVUE Question Types Performance based and multiple choice No. of Questions Maximum of 90 questions Length of Test 90 minutes Passing Score 750 (on a scale of 100-900) Languages English, others to follow Recommended Experience CompTIA Network+ and two years of experience in IT administration with a security focus Exam retirement SY0-501 to retire July 31, 2021
  • 15. Organizations that assisted in development ● Max Life Insurance ● Aussie Home Loans ● WilCo, LLC ● RxSense ● Southeastern Louisiana University ● Spire Inc. ● University of Redlands ● PCM Sales ● Johns Hopkins University Applied Physics Laboratory ● Australian Information Security Association / Deakin University ● University of Petroleum and Engineering Studies ● Archdiocese of Philadelphia ● Fayetteville Technical Community College ● U.S. Navy Center for Information Dominance ● Tanium ● SecureWorks ● Target Corp. ● Splunk ● Ricoh ● Netflix ● General Dynamics IT (GDIT) ● Boulder Community Health ● Washington State Patrol ● aeSolutions Subject matter experts (SMEs) from the following organizations assisted with the development of SY0-601. Some of the biggest contributors are listed below.
  • 17. Free year of Infosec Skills ($299) And the winner is ...
  • 18. Everyone gets a free week of Infosec Skills. Then it’s just $34/month infosecinstitute.com/skills
  • 19. About us At Infosec, we believe knowledge is the most powerful tool in the fight against cybercrime. We provide the best certification and skills development training for IT and security professionals, as well as employee security awareness training and phishing simulations. infosecinstitute.com 708.689.0131 19