CompTIA Security+™ Certification All-in-One Exam Guide (Exam SY0-801)
Product Overview
Get complete coverage of the new CompTIA Security+ SY0-801 exam inside this comprehensive, up-to-date resource, available now for preorder. Cybersecurity experts Mya Heath and Bobby E. Rogers wrote the guide to the SY0-801 objectives for aspiring security administrators, analysts, and IT pros moving into security.
Within each chapter, modules drill down on specific exam objectives to give you a clear learning path. Module-ending practice questions then reinforce the concepts you just read.
This practical resource goes beyond knowledge application. It teaches you the skills you need to anticipate security risks and guard against them, which makes it useful long after exam day.
- Covers all five SY0-801 exam domains, including new content on threats and vulnerabilities associated with artificial intelligence
- 27 chapters organized into five parts, from security fundamentals to security operations
- Module-ending practice questions throughout the book
- Bonus online content: a 150-question TotalTester practice exam, 20 free online simulations, and one hour+ of video training
- Available as an eBook, a softcover, or an eBook + softcover combo
- eBook access: three years from the date you receive access, via the Total Seminars Training Hub
Certification Alignment
The book covers all five official domains of the CompTIA Security+ SY0-801 exam.
- General Security Concepts — security controls, Zero Trust and least privilege, change management, and cryptographic solutions
- Threats, Vulnerabilities, and Attacks — threat actors and motivations, threat vectors, attack surfaces, indicators of malicious activity, and AI-related threats
- Security Architecture — architecture models, secure enterprise infrastructure, data protection, and resilience and recovery
- Security Operations — mitigating controls, asset management, vulnerability management, alerting and monitoring, identity and access management, automation, incident response, and investigations
- Security Program Management and Oversight — governance, risk management, third-party risk, compliance, audits and assessments, and security awareness
The exam mixes multiple-choice and performance-based questions.
Career Impact
Security+ is the baseline cybersecurity certification most employers ask for, and it satisfies a widely used government requirement.
- Prepares you for roles such as Security Analyst, Security Administrator, and SOC Analyst
- Also fits Systems Administrators, Network Administrators, and IT Auditors moving into security
- Maps to NICE and DoD 8140 work roles, which many government and contractor positions require
- Leads naturally to CompTIA CySA+, PenTest+, or SecurityX as your next certification
The book doubles as an on-the-job reference once you are certified, so it keeps earning its place on your desk.
Learning Outcomes
By the end of this book, you can do the following.
- Apply the right technical, managerial, operational, and physical controls, and explain Zero Trust and least privilege.
- Assess how change management processes affect security operations.
- Choose and apply cryptographic methods, including PKI and certificate management.
- Recognize threat actors, attack types, and social engineering techniques, then mitigate them.
- Identify threats and vulnerabilities associated with artificial intelligence.
- Secure cloud, network, and hybrid architectures, and plan for resilience and recovery.
- Harden systems, manage vulnerabilities, monitor for incidents, and follow an incident response process.
- Configure identity and access management, and automate routine security tasks.
- Support governance, risk management, compliance, and audit activity within a security program.
Prerequisites
There is no required prerequisite certification. CompTIA designed the SY0-801 exam for security administrators with two years of hands-on experience.
The book builds from foundational concepts, so you can start without formal security experience. Many readers come to it after CompTIA Network+, which covers the networking groundwork Security+ assumes.
About the Experts
Bobby E. Rogers, CISSP-ISSEP, CRISC, CySA+, CEH, MCSE: Security+, is a cybersecurity professional with over 30 years of experience. His specialties include cybersecurity engineering, security compliance, and cyber risk management, and he has worked in almost every area of cybersecurity, including network defense, computer forensics, incident response, and penetration testing. He is the author of the CISSP Certification Passport, and the co-author of the CRISC Certified in Risk and Information Systems Control All-in-One Exam Guide and the CompTIA CySA+ Cybersecurity Analyst Certification All-in-One Exam Guide, Third Edition, all from McGraw-Hill.
Mya Heath, CISSP, GCFA, is a cybersecurity leader with over 20 years of experience in threat hunting, detection engineering, security research, and advanced analytics. She is the VP of Detection Engineering for US Bank, where she serves as a Threat Hunter. Mya has been recognized for her leadership in protecting critical data and infrastructure and has dedicated her career to safeguarding organizations through innovative security strategies. She is the co-author of the CompTIA CySA+ Cybersecurity Analyst Certification All-in-One Exam Guide, Third Edition, from McGraw-Hill.
Course Outline
27 chapters in five parts, covering every SY0-801 exam domain.
Part I: Security Fundamentals
CH 1 Security Concepts
CH 2 Security Controls
CH 3 Physical and Environmental Security
CH 4 Data Protection Strategies
Part II: Security Program Management
CH 5 Security Governance and Compliance
CH 6 Risk Management Fundamentals
CH 7 Security Audits and Assessments
CH 8 Security Awareness and Training
Part III: Security Architecture
CH 9 Cryptography Fundamentals
CH 10 Secure Architecture Principles
CH 11 Secure Infrastructure Principles
CH 12 Resilience and Recovery
Part IV: Threat and Vulnerability Management
CH 13 Threat Vectors and Attack Surfaces
CH 14 Threat Fundamentals
CH 15 Vulnerability Fundamentals
CH 16 Analyzing Malicious Activity
CH 17 Vulnerability Management
CH 18 Threat and Vulnerability Mitigation
Part V: Security Operations
CH 19 Device Hardening
CH 20 Asset Management
CH 21 Change Management
CH 22 Security Monitoring
CH 23 Identity and Access Management
CH 24 Enterprise Security
CH 25 Security Automation and Orchestration
CH 26 Incident Response
CH 27 Investigations
Delivery Options
- eBook: start studying with a three-year subscription to your eBook copy. Access each chapter 24 hours a day, seven days a week, exclusively on the Total Seminars Training Hub. You save on study materials and shipping, and you get access to your other Training Hub materials alongside your reading.
- Softcover: if you have the space, nothing beats the feel of a physical book or the experience of studying from words printed on paper.
- eBook + softcover combo: get the best of both worlds — the eBook on the Total Seminars Training Hub, plus a physical book to anchor that space on your desk.
Frequently Asked Questions
What is included with this book?
You get the full CompTIA Security+ Certification All-in-One Exam Guide in your chosen format. Your purchase also unlocks a 150-question TotalTester practice exam, 20 free online simulations, and one hour+ of video training.
Which exam version does this book cover?
This book is written for the new CompTIA Security+ SY0-801 exam and covers all five official domains.
Can I order this book before the SY0-801 exam launches?
Yes. The book is available for preorder now, so you can lock in your copy and start preparing for SY0-801 as soon as it is ready.
Can I get this book in print?
Yes. Choose the softcover, or the combo if you want both the printed book and the eBook.
How long do I have access to the eBook?
Three years, through the Total Seminars Training Hub. Your three years start when you receive access, so presale orders don’t lose any time before the eBook is released.
Can I download the eBook?
No. You read it online at the Total Seminars Training Hub, where you can access each chapter 24 hours a day.
What devices can I use to read the eBook?
The eBook works on any device with a web browser — no special software required.
What is the Security+ SY0-801 exam like?
The exam mixes multiple-choice and performance-based questions. CompTIA designed it for security administrators with two years of hands-on experience.
Is this book aligned to the latest exam version?
Yes. This edition is written to the SY0-801 exam objectives, the newest version of CompTIA Security+, and covers all five official domains.
Can I use this for classroom or multi-user training?
Single-user licenses cover individual use only, so they are not valid for classroom instruction. Please call 877-687-2768 for discounted multi-user pricing.
What happens after I purchase?
You’ll receive an order confirmation email immediately. Because this is a presale, your Total Seminars Training Hub login email for the eBook will be sent when the eBook is released. For the softcover or combo, you’ll also receive a shipping confirmation when your book goes out. If your order confirmation doesn’t arrive within 30 minutes, check your spam folder or contact support@totalsem.com.
Educators
Please call 877-687-2768 for discounted multi-user pricing. Single-user licenses are not valid for classroom use.
Order Process
- You’ll receive an email confirming your order.
- Presale eBook orders: your Total Seminars Training Hub login email will be sent when the eBook is released.
- eBook access: log in at hub.totalsem.com — works on any device with a web browser, no special software required.
- Softcover and combo orders: your physical book ships separately, and you’ll receive a shipping confirmation.
- eBook access duration: three years from the date you receive access.
- Questions? Contact support@totalsem.com.
