CompTIA Security+ Practice Test (2026): Free SY0-701 Questions
Free CompTIA Security+ (SY0-701) practice test with exam-style questions and detailed answer explanations across all five domains. Check your exam readiness.
In this guide
- CompTIA Security+ (SY0-701) at a glance
- Free CompTIA Security+ practice questions
- Security+ practice test FAQ
Test your readiness for the CompTIA Security+ (SY0-701) exam with these free, exam-style questions spanning all five domains — from general security concepts to security operations. Click Reveal answer to check your reasoning and read a short explanation.
CompTIA Security+ (SY0-701) at a glance
- Questions: up to 90 (multiple-choice and performance-based)
- Length: 90 minutes
- Passing score: 750 on a scale of 100–900
- Cost: ~$392 USD (voucher)
- Recommended experience: Network+ and ~2 years of IT/security experience
Free CompTIA Security+ practice questions
-
Which element of the CIA triad ensures data has not been altered?
A) Confidentiality B) Integrity C) Availability D) AuthenticationReveal answer
B) Integrity. Integrity guarantees data is accurate and unaltered; hashing is the primary mechanism used to verify it.
-
An attacker secretly relays and alters traffic between two parties. What is this called?
A) On-path attack B) Replay attack C) DDoS D) Privilege escalationReveal answer
A) On-path attack (formerly “man-in-the-middle”). The attacker positions between two hosts to intercept or modify communication.
-
Which encryption type uses the same key to encrypt and decrypt?
A) Asymmetric B) Symmetric C) Hashing D) SteganographyReveal answer
B) Symmetric. Symmetric algorithms (e.g., AES) use one shared key — fast, but key distribution is the challenge.
-
A phishing attack that specifically targets a senior executive is known as:
A) Vishing B) Smishing C) Whaling D) PharmingReveal answer
C) Whaling. Whaling is spear-phishing aimed at high-value targets such as executives (“big fish”).
-
Which principle grants users only the access required to do their job?
A) Defense in depth B) Least privilege C) Separation of duties D) Zero trustReveal answer
B) Least privilege. Limiting access to the minimum necessary reduces the impact of compromised accounts.
-
What does hashing primarily provide?
A) Confidentiality B) Integrity C) Availability D) Non-repudiation onlyReveal answer
B) Integrity. A hash is a one-way fingerprint; if the data changes, the hash changes — so it verifies integrity, not confidentiality.
-
A security guard stationed at a data-center entrance is which control category?
A) Technical B) Managerial C) Physical D) Detective onlyReveal answer
C) Physical. Guards, locks, fences, and bollards are physical controls (and can act as both deterrent and preventive).
-
Multi-factor authentication combines a password with which of the following?
A) A second password B) A different factor such as a token or fingerprint C) A longer password D) A security questionReveal answer
B) A different factor. MFA requires factors from different categories — something you know, have, or are. Two passwords are still one factor.
-
Which attack overwhelms a service with traffic from many compromised hosts?
A) DoS B) DDoS C) Brute force D) Buffer overflowReveal answer
B) DDoS. A Distributed Denial-of-Service uses many sources (often a botnet) to exhaust a target’s resources.
-
Which document defines how employees may use company systems?
A) SLA B) AUP C) MOU D) BPAReveal answer
B) AUP (Acceptable Use Policy). It sets the rules for acceptable use of organizational systems and data.
Ready to pass Security+ on the first try?
Boost eLearning’s CompTIA Security+ Training covers all five SY0-701 domains with hands-on Live Labs and a money-back Pass Guarantee. Explore the Security+ course →
Security+ practice test FAQ
How many questions are on the Security+ exam?
Up to 90 questions (multiple-choice and performance-based) in 90 minutes.
What is the Security+ passing score?
750 on a scale of 100 to 900.
How hard is the Security+ exam?
It’s an entry-to-intermediate certification. CompTIA recommends Network+ and about two years of hands-on security experience, plus structured prep and practice questions like these.
Related Boost eLearning Courses
- CompTIA SecurityX (CAS-005) Online Training & Certification Prep — Live Labs & Pass Guarantee included
- CompTIA Server+ (SK0-005) Online Training & Certification Prep — Live Labs & Pass Guarantee included
- CompTIA CySA+ (CS0-003) Online Training & Certification Prep — Live Labs & Pass Guarantee included
Ready to earn your certification?
Boost eLearning offers Live Labs, a Pass Guarantee, and online, live virtual, and on-site delivery.


