CompTIA SecurityX (Formerly CASP+)

SecurityX is a hands-on, advanced cybersecurity certification for practitioners, focusing on security architecture, engineering, and enterprise readiness.

Category:

The CompTIA SecurityX (formerly CASP+) certification exam will certify the successful candidate has the knowledge and skills required to:
• Architect, engineer, integrate, and implement secure solutions across complex environments to support a resilient enterprise.
• Use automation, monitoring, detection, and incident response to proactively support ongoing security operations in an enterprise environment.
• Apply security practices to cloud, on-premises, and hybrid environments.
• Consider cryptographic technologies and techniques, as well as the impact of emerging trends (e.g., artificial intelligence) on information security.
• Use the appropriate governance, compliance, risk management, and threat-modeling strategies throughout the enterprise.

  • CompTIA SecurityX is aimed at IT Professionals with a minimum of 10 years of general, hands-on IT experience that includes at least 5 years of broad, hands-on IT security experience.
  • IT Professional that has the technical knowledge and skills required to conceptualize, design, and engineer secure solutions across complex enterprise environments.
  • Students should have a minimum of 10 years experience including at least 5 years of hands-on technical security experience.
1.1 - Given a set of organizational security requirements, implement the appropriate governance components
1.2 - Given a set of organizational security requirements, perform risk management activities
1.3 – Explain how compliance affects information security strategies
1.4 - Given a scenario, perform threat-modeling activities
1.5 – Summarize the information security challenges associated with artificial intelligence (AI) adoption
2.1 – Given a scenario, analyse requirements to design resilient systems
2.2 – Given a scenario, implement security in the early stages of the systems life cycle and throughout subsequent stages
2.3 – Given a scenario, integrate appropriate controls in the design of a secure architecture
2.4 – Given a scenario, apply security concepts to the design of access, authentication, and authorization systems
2.5 – Given a scenario, securely implement cloud capabilities in an enterprise environment
2.6 - Given a scenario, integrate Zero Trust concepts into system architecture design
3.1 – Given a scenario, troubleshoot common issues with identity and access management (IAM) components in an enterprise environment
3.2 – Given a scenario, analyse requirements to enhance the security of endpoints and servers
3.3 – Given a scenario, troubleshoot complex network infrastructure security issues
3.4 – Given a scenario, implement hardware security technologies and techniques
3.5 – Given a set of requirements, secure specialized and legacy systems against threats
3.6 – Given a scenario, use automation to secure the enterprise
3.7 – Explain the importance of advanced cryptographic concepts
3.8 – Given a scenario, apply the appropriate cryptographic use case and/or technique
4.1 – Given a scenario, analyse data to enable monitoring and response activities
4.2 – Given a scenario, analyse vulnerabilities and attacks, and recommend solutions to reduce the attack surface
4.3 – Given a scenario, apply threat-hunting and threat intelligence concepts
4.4 – Given a scenario, analyse data and artifacts in support of incident response activities
Length of exam 165 minutes
Number of questions 90
Question format Multiple-choice and performance-based
Passing grade This test has no scaled score; pass/fail only.
Exam availability English
Testing center Pearson VUE Testing Center

Description

SecurityX (formerly CASP+) covers technical skills in on premises, cloud native, and hybrid environments, governance, risk, and compliance skills, assessing an enterprise’s cybersecurity readiness, and leading technical teams to implement enterprise-wide cybersecurity solutions.

SecurityX is the only hands-on, performance-based certification for advanced practitioners—not managers—at the advanced skill level of cybersecurity.

While cybersecurity managers help identify what cybersecurity policies and frameworks could be implemented, SecurityX certified professionals figure out how to implement solutions within those policies and frameworks.

Unlike other certifications, SecurityX covers both security architecture and engineering.

SecurityX is the only certification on the market that qualifies technical leaders to assess cyber readiness within an enterprise and design and implement the proper solutions to ensure the organization is ready for the next attack.

SecurityX is the most up-to-date advanced-level cybersecurity certification on the market.

This certification also covers technical skills in on-premises, cloud-native, and hybrid environments, governance, risk, and compliance skills, assessing an enterprise’s cybersecurity readiness, and leading technical teams to implement enterprise-wide cybersecurity solutions.