📞 (800) 555-2678 Sales & enrollment, Mon–Fri
CompTIA Cybersecurity

CompTIA SecurityX (CAS-005) Online Training & Certification Prep

CompTIA SecurityX (formerly CASP+) is the expert-level, vendor-neutral certification for senior security architects, engineers, and practitioners who design and implement enterprise security solutions — not just advise on them. Boost eLearning's CAS-005 course combines advanced technical curriculum with Live Labs and Certified Partner instructors, backed by our Pass Guarantee.

Pass Guarantee Live Labs Available SCORM / xAPI CompTIA Aligned
CompTIA SecurityX (CAS-005) Online Training & Certification Prep

Course Overview

CompTIA SecurityX (exam code CAS-005) is the successor to CompTIA CASP+ and sits at the apex of the CompTIA cybersecurity certification pathway. It targets senior security practitioners — architects, engineers, and technical leads — who are responsible for designing, implementing, and integrating security solutions across complex enterprise environments, rather than managing teams or setting policy at an executive level.

CAS-005 is structured around four high-level domains: Security Architecture, Security Engineering, Security Operations, and Security Program Management and Oversight. Each domain is tested entirely through performance-based questions — there are no multiple-choice items. Candidates must demonstrate the ability to analyse ambiguous scenarios, make defensible technical decisions, and communicate rationale, replicating the cognitive demands of senior practitioner roles.

The CAS-005 content reflects the current enterprise security landscape: zero-trust architecture design, secure cloud-native and hybrid infrastructure, DevSecOps pipeline integration, advanced threat hunting and incident response, supply chain risk management, and governance alignment with NIST CSF 2.0, ISO 27001, and applicable regulatory frameworks. The curriculum does not assume a single vendor stack — solutions are evaluated and compared across the market.

Boost eLearning’s SecurityX course is delivered by Certified Partner instructors with senior security architecture and engineering backgrounds. Boost Live Labs are integral to the course: students configure zero-trust network segments, deploy SIEM and SOAR integrations, analyse real threat intelligence, and work through incident response simulations — skills that are examined directly in CAS-005’s performance-based format.

SecurityX is DoD 8140-approved for IAT Level III and IAM Level III roles. It is the highest-level technical cybersecurity certification CompTIA offers and is designed to remain current through CompTIA’s CE (Continuing Education) programme rather than requiring a retest cycle.

What You'll Learn

  • Design zero-trust network architectures for enterprise environments, including microsegmentation, identity-aware proxies, and continuous verification
  • Architect and implement secure cloud-native, hybrid, and multi-cloud infrastructure across AWS, Azure, and GCP
  • Integrate security controls into DevSecOps pipelines including SAST, DAST, SCA, and container image scanning
  • Design cryptographic solutions appropriate to data classification, compliance requirements, and quantum-resistance considerations
  • Lead incident response operations for advanced persistent threat (APT) scenarios including threat hunting, forensic triage, and stakeholder communication
  • Evaluate and select security tooling (SIEM, SOAR, EDR, UEBA, NDR) based on technical requirements and integration constraints
  • Assess and manage supply chain security risk across third-party software, hardware, and managed service providers
  • Align security programme design to NIST CSF 2.0, ISO 27001, SOC 2, PCI DSS, and sector-specific regulatory frameworks
  • Perform threat modelling (STRIDE, PASTA, MITRE ATT&CK) for complex system architectures and translate outputs into security controls
  • Communicate technical security decisions and risk acceptance rationale to executive and board-level stakeholders
  • Evaluate identity and access management architectures including federation, SCIM provisioning, PAM, and passwordless authentication

Who This Course Is For

  • Senior security engineers and architects designing enterprise security solutions
  • Security operations leads transitioning into architecture or engineering roles
  • Technical security practitioners targeting DoD 8140 IAT Level III or IAM Level III compliance
  • Security consultants and principal advisors who need a vendor-neutral expert credential
  • CompTIA CISSP-track professionals seeking a technically rigorous alternative or complement to management-focused certifications
  • Cloud and DevOps engineers taking on security architecture responsibilities in their organisations

Course Outline

Security Architecture Foundations & Zero Trust6 hours
  • Zero-trust architecture: NIST SP 800-207 principles, pillars, and maturity model
  • Microsegmentation strategies: network-based, host-based, and workload-based
  • Identity-aware proxy and software-defined perimeter (SDP) design
  • SASE and SSE architecture components and vendor evaluation
  • Secure network architecture patterns for hybrid and multi-cloud environments
  • CAS-005 exam format: fully performance-based, question types, and time management
Cloud & Hybrid Security Architecture6 hours
  • Cloud shared-responsibility model applied to architecture decisions
  • Cloud security posture management (CSPM) and cloud workload protection (CWPP)
  • IAM design for AWS, Azure, and GCP: least privilege, role hierarchies, federated identity
  • Container security: image hardening, registry scanning, Kubernetes RBAC and network policies
  • Serverless and microservices security patterns
  • Data security in cloud: encryption at rest/transit, KMS, tokenisation, DLP controls
Cryptography & PKI for Enterprise Environments4 hours
  • Algorithm selection: symmetric, asymmetric, hashing, and MAC u2014 current standards and deprecation timeline
  • PKI architecture: root CA, intermediate CAs, certificate lifecycle, and auto-renewal
  • HSM integration and key escrow considerations
  • Quantum-resistant cryptography: NIST PQC standards (CRYSTALS-Kyber, CRYSTALS-Dilithium) and migration planning
  • TLS 1.3 configuration, HSTS, certificate transparency, and OCSP stapling
DevSecOps & Secure SDLC Integration5 hours
  • Integrating security into CI/CD pipelines: GitHub Actions, GitLab CI, and Jenkins security plugins
  • SAST tools: Semgrep, SonarQube, Checkmarx u2014 integrating into pull request gates
  • DAST and IAST: OWASP ZAP, Burp Suite Enterprise in automated pipelines
  • Software composition analysis (SCA) and SBOM generation (SPDX, CycloneDX)
  • Secrets management: HashiCorp Vault, AWS Secrets Manager integration patterns
  • Container image scanning and runtime security (Trivy, Falco, Sysdig)
Identity, Access & Privileged Access Management4 hours
  • Enterprise IAM architecture: LDAP, Active Directory, Azure AD/Entra ID, and Okta federation
  • SAML 2.0, OAuth 2.0, and OpenID Connect: protocol mechanics and implementation pitfalls
  • SCIM provisioning and JIT access patterns
  • Privileged Access Management (PAM): CyberArk, BeyondTrust, and vault-based credential management
  • Passwordless authentication: FIDO2/WebAuthn, passkeys, and enterprise rollout considerations
  • MFA architecture: TOTP, push-based, hardware tokens, and phishing-resistant MFA
Threat Hunting, SIEM & SOAR Operations5 hours
  • MITRE ATT&CK framework: navigating the matrix, mapping detections, and measuring coverage
  • SIEM architecture and log source onboarding: Splunk, Microsoft Sentinel, and Elastic SIEM
  • Writing detection rules: Sigma rules, KQL, and SPL for common ATT&CK techniques
  • SOAR platform design: playbook architecture, integration patterns, and human-in-the-loop workflows
  • Threat intelligence operationalisation: STIX/TAXII feeds, TIP integration, and IOC lifecycle management
  • Threat hunting hypothesis-driven methodology and operational cadence
Incident Response for Advanced Threats5 hours
  • IR lifecycle: preparation, identification, containment, eradication, recovery, lessons learned
  • Digital forensics fundamentals: chain of custody, disk imaging, memory acquisition
  • Ransomware incident response: isolation, negotiation decisions, recovery orchestration
  • APT investigation: lateral movement detection, persistence mechanism identification, timeline reconstruction
  • Tabletop exercise design and execution for executive and technical stakeholders
  • Regulatory notification timelines: GDPR 72-hour rule, SEC incident disclosure requirements
Governance, Risk, Supply Chain & CAS-005 Exam Readiness5 hours
  • NIST CSF 2.0: governance function and updated framework tiers and profiles
  • ISO 27001:2022 Annex A controls: key changes and implementation
  • Supply chain risk management (SCRM): NIST SP 800-161 Rev. 1, software supply chain attacks
  • Third-party risk management: vendor assessment, contractual security requirements, continuous monitoring
  • Risk quantification: FAIR methodology and communicating residual risk to the board
  • CAS-005 PBQ walkthroughs, exam strategy, and full timed practice assessment session

About the Certification Exam

Exam code
CAS-005
Length
165 minutes
Questions
Maximum 90 questions (performance-based questions only u2014 no multiple-choice)
Passing score
Pass/Fail (CompTIA does not publish a numeric cut score for CAS-005; scoring is criterion-referenced)
Exam cost
~$509 USD
Where
Pearson VUE test centres or online remote proctoring

The certification exam fee is paid separately to the testing provider and is not included in the course price unless stated otherwise.

Live Labs Included

Hands-on practice on real environments

This course includes Live Labs — direct access to real hardware and cloud environments so you build the skills the exam actually tests.

  • Array
  • Array
  • Array
  • Array
  • Array
  • Array

Pass Guarantee Included

Complete this course and if you don't pass the certification exam on your first attempt, we'll refund your course fee or give you a free retake — your choice.

Read the guarantee →

Frequently Asked Questions

CompTIA SecurityX (CAS-005) is the rebranded, updated successor to CASP+ (CAS-004). The rebrand reflects a broader scope beyond the "advanced security practitioner" framing — SecurityX positions the credential explicitly for architects, engineers, and technical leads. CAS-005 introduces updated content on zero trust, NIST CSF 2.0, quantum cryptography, and AI/ML-enabled threats. All Boost materials are aligned to CAS-005.
Yes. CompTIA SecurityX (CAS-005) is DoD 8140-approved for IAT Level III and IAM Level III roles — the highest technical tiers in the DoD cybersecurity workforce framework.
CompTIA recommends a minimum of ten years of general IT experience, with at least five years of hands-on technical security experience. CompTIA Security+ (or equivalent knowledge) and ideally CYSA+ are recommended prerequisites.
CompTIA redesigned SecurityX to use exclusively performance-based questions because expert-level competency cannot be assessed through memorisation. PBQs present realistic scenarios — architecture diagrams, log excerpts, tool outputs, configuration files — and require candidates to analyse, decide, and justify. Boost's course and labs are specifically structured to build this analytical capability.
CISSP (ISC2) is a managerial and governance credential recognised across risk management, compliance, and security leadership roles — its questions test conceptual knowledge. SecurityX is technically hands-on at the implementation and architecture level, with performance-based questions requiring demonstrated technical skill. Many senior practitioners hold both; SecurityX is the stronger signal of technical depth.
SecurityX is valid for three years and renewed through CompTIA's CE programme by earning 75 CEUs. Once renewed, it does not require a retest — making it an efficient long-term credential compared to certifications that require periodic re-examination.
Students who complete all course modules, pass all in-course assessments, and do not pass CAS-005 on their first attempt receive a full refund of their Boost course fee. Given the exam's difficulty, Boost also offers a one-time free coaching session before the second attempt for students who do not pass.
Yes. Boost delivers SecurityX as a customisable on-site intensive for security architecture and engineering teams. The on-site format is commonly used by government agencies, financial institutions, and critical infrastructure operators that need to certify a cohort of senior practitioners within a defined timeline and want the curriculum tailored to their specific technology stack.

Related Certifications

Related Reading