CompTIA Security+ (SY0-701) Exam Preparation
A two-day intensive covering the full SY0-701 exam blueprint. Security+ is the certification Malaysian employers name most often in job adverts for security analysts, system administrators moving into security, and IT staff who have picked up the security work by default. It is vendor neutral, it is recognised by government and regulated employers, and it is the credential that most reliably converts hands-on experience into a hiring signal.
The programme works through all five exam domains in weight order, with practice questions after every block and performance-based question walkthroughs on the topics that carry them. This is exam preparation rather than accredited delivery: participants sit the exam with Pearson VUE, and the exam voucher and booking are arranged separately from the course fee. Participants who already work in IT will find this a consolidation and gap-closing exercise. Those newer to security should expect self study either side of the two days, and the course includes a study plan for exactly that.
HRD Corp SBL-Khas Claimable
Programme Agenda
Day 1, 9:00 AM - 9:15 AM
Welcome and Exam Orientation
Exam format, question types, scoring, and how to read a Security+ question. Setting the two-day plan and confirming each participant's starting point.
Day 1, 9:15 AM - 10:45 AM
Domain 1: General Security Concepts
The CIA triad, authentication, authorisation and accounting. Control categories and types: technical, managerial, operational and physical, and preventive through to corrective and compensating. Zero trust, the control plane and the data plane. Physical security. Change management as a security control, which the exam treats far more seriously than most practitioners do. Cryptography foundations: symmetric and asymmetric, PKI, certificates, hashing, digital signatures, key exchange, salting and obfuscation.
Day 1, 10:45 AM - 11:00 AM
Break
Day 1, 11:00 AM - 12:45 PM
Domain 2: Threats, Vulnerabilities and Mitigations
Threat actors and motivations. Attack surfaces and threat vectors including message-based, image-based, supply chain, human and removable media. Vulnerability types across application, operating system, web, hardware, virtualisation, cloud, supply chain and cryptography. Indicators of malicious activity: malware families, physical, network, application and cryptographic attacks. Mitigation techniques including segmentation, hardening, isolation, patching and least privilege. This is the second heaviest domain on the exam.
Day 1, 12:45 PM - 1:45 PM
Lunch
Day 1, 1:45 PM - 3:15 PM
Domain 3: Security Architecture
Architecture models and their security implications: cloud, infrastructure as code, serverless, microservices, on-premises, centralised versus decentralised, virtualisation, IoT, ICS and SCADA, and embedded systems. Secure infrastructure design: device placement, security zones, failure modes, network appliances and port security. Data protection by classification, type, state and sovereignty, including geographic restriction, encryption, hashing, masking and tokenisation. Resilience and recovery: high availability, redundancy, backups, testing and continuity of operations.
Day 1, 3:15 PM - 3:30 PM
Break
Day 1, 3:30 PM - 4:45 PM
Domain 3 Practice and Performance-Based Questions
Working through architecture and cryptography scenarios in the performance-based format, where the exam asks you to configure or place controls rather than recall a definition. Group walkthrough and debrief.
Day 1, 4:45 PM - 5:00 PM
Day 1 Close and Evening Study Set
Recap and the practice set to complete before day two.
Day 2, 9:00 AM - 9:15 AM
Day 1 Review
Working through the evening set and the questions that caused trouble.
Day 2, 9:15 AM - 11:00 AM
Domain 4: Security Operations, Part 1
The heaviest domain on the exam. Securing computing resources: secure baselines, hardening across mobile, workstations, servers, ICS, embedded and IoT. Mobile deployment models and connection methods. Wireless security settings. Application security, sandboxing and monitoring. Asset management through the full lifecycle including acquisition, monitoring, disposal and sanitisation. Vulnerability management: identification, analysis, prioritisation using CVSS and CVE, response, validation and reporting.
Day 2, 11:00 AM - 11:15 AM
Break
Day 2, 11:15 AM - 12:45 PM
Domain 4: Security Operations, Part 2
Security alerting and monitoring, tooling including SIEM, SNMP, NetFlow, antivirus, DLP and SCAP. Enhancing enterprise capability: firewalls, IDS and IPS, web filtering, DNS filtering, email security with SPF, DKIM and DMARC, EDR and XDR. Identity and access management: provisioning, federation, SSO, LDAP, SAML, OAuth, multifactor and privileged access management. Automation and orchestration. Incident response process, and investigative data sources.
Day 2, 12:45 PM - 1:45 PM
Lunch
Day 2, 1:45 PM - 3:15 PM
Domain 5: Security Programme Management and Oversight
Governance structures, policies, standards, procedures and guidelines. Risk management: identification, assessment, analysis both qualitative and quantitative, register, appetite and tolerance, treatment and reporting. Business impact analysis with RTO, RPO, MTTR and MTBF. Third-party risk: vendor assessment, due diligence, agreement types and ongoing monitoring. Compliance, audit and assessment including penetration testing. Security awareness practices. Mapping this domain onto Malaysian obligations under the PDPA and the Cyber Security Act 2024 for participants who need the local context.
Day 2, 3:15 PM - 3:30 PM
Break
Day 2, 3:30 PM - 4:30 PM
Full-Length Practice Assessment
A timed practice set under exam conditions, scored and reviewed by domain so each participant leaves knowing exactly where their remaining gaps are.
Day 2, 4:30 PM - 5:00 PM
Exam Strategy, Study Plan and Close
Booking with Pearson VUE, timing your attempt, managing the clock and the performance-based questions, and a personalised study plan for the weeks between the course and the exam.
Key Outcomes
- Explain security controls, cryptographic concepts and zero trust to the depth SY0-701 assesses
- Identify threat actors, vectors and vulnerability types, and select appropriate mitigations
- Evaluate architecture choices and data protection methods for their security implications
- Work through security operations content covering hardening, vulnerability management, monitoring and identity
- Apply governance, risk, third-party and compliance concepts including the Malaysian context
- Sit the SY0-701 exam with a scored diagnostic and a personalised study plan behind you
Training Mode Physical / Online / Hybrid / e-learning
HRD Corp SBL-Khas Claimable
Level Intermediate. Suitable for IT support and system administrators moving into security, junior security analysts, and network staff. CompTIA suggests around two years of IT administration experience with a security focus. Network+ or equivalent networking knowledge is helpful but not required.
Duration 2 Days (16 Hours) | 9:00 AM to 5:00 PM daily
Venue In-house at the client's premises, or delivered via the client's preferred platform (Microsoft Teams, Zoom, or equivalent)
Assessment A timed full-length practice assessment scored by domain, plus domain practice sets throughout. The CompTIA exam itself is booked with Pearson VUE and the voucher is arranged separately.
Certificate Orbix Certificate of Completion issued to all participants upon full attendance. This is a training certificate, not the CompTIA credential. Security+ is awarded by CompTIA only on passing the SY0-701 exam, which is booked and paid for separately.