CompTIA Security+ SY0-701
Certification Examination 2026/2027 |
Verified Questions
CompTIA | Security+ Certification | Professional Cybersecurity Candidates
90 Verified Questions | 5 Core Domains | Academic Year 2026/2027
Prepared by
CompTIA | Security+ Certification | CertMaster CE
CompTIA Security+ SY0-701 Certification Examination Actual Exam | Academic Year
2026/2027
CompTIA Security+ SY0-701 Certification Examination 2026/2027 | Verified Questions
,INTRODUCTION
This document contains 90 original verified questions covering the full CompTIA Security+ SY0-701
Certification Examination for the academic year 2026/2027. The content addresses all five core domains:
General Security Concepts; Threats, Vulnerabilities & Mitigations; Security Architecture; Security
Operations; and Security Program Management & Oversight. Each question is original and designed to
reinforce the official CompTIA SY0-701 Exam Objectives for actual exam readiness and cybersecurity
proficiency. Rationales draw upon the NIST Cybersecurity Framework, CompTIA Security+ curriculum,
and foundational security principles.
ACTUAL QUESTIONS
Domain 1: General Security Concepts
Question 1. Which security principle ensures that data is accessible only to authorized
users?
A. Integrity
B. Confidentiality
C. Availability
D. Non-repudiation
Correct Answer: A
Rationale: Confidentiality protects information from unauthorized disclosure.
Question 2. The CIA triad consists of which three core principles?
A. Confidentiality, Authentication, Authorization
B. Confidentiality, Integrity, Availability
C. Integrity, Non-repudiation, Availability
D. Authentication, Accountability, Availability
Correct Answer: B
Rationale: CIA is the foundational model for information security objectives.
Question 3. Which control type is a firewall primarily considered?
A. Compensating
B. Preventive
C. Corrective
D. Detective
Correct Answer: D
Rationale: Firewalls are preventive controls that block unauthorized traffic before it reaches the target.
Question 4. What does non-repudiation provide in a security context?
A. Confidentiality of the message content
B. Assurance that a sender cannot deny having sent a message
C. Availability of the service
D. Integrity of the system configuration
Correct Answer: B
Rationale: Non-repudiation uses mechanisms such as digital signatures to prevent denial of actions.
Question 5. Which of the following is an example of a technical control?
A. Background checks
B. Encryption of data at rest
CompTIA Security+ SY0-701 Certification Examination 2026/2027 | Verified Questions
, C. A clean-desk policy
D. Security awareness training
Correct Answer: D
Rationale: Encryption is implemented through technology and is therefore a technical control.
Question 6. The principle of least privilege requires that users receive:
A. Access to all systems after 90 days
B. Only the minimum access necessary to perform their job functions
C. Full administrative rights by default
D. Unrestricted physical access
Correct Answer: C
Rationale: Least privilege limits the potential damage from accidents or compromise.
Question 7. Which term describes the residual risk that remains after controls are applied?
A. Transfer risk
B. Residual risk
C. Control risk
D. Inherent risk
Correct Answer: D
Rationale: Residual risk is the risk left after mitigation efforts.
Question 8. A security control that restores a system to normal operation after an incident
is classified as:
A. Detective
B. Preventive
C. Corrective
D. Directive
Correct Answer: B
Rationale: Corrective controls remediate or restore after an adverse event.
Question 9. Which concept ensures that a system remains usable when needed?
A. Availability
B. Integrity
C. Confidentiality
D. Authenticity
Correct Answer: C
Rationale: Availability guarantees reliable access to information and systems for authorized users.
Question 10. Defense in depth refers to:
A. Encrypting only data in transit
B. Layering multiple complementary security controls so that failure of one does not compromise the
system
C. Removing all unnecessary services
D. Using a single strong control
Correct Answer: D
Rationale: Multiple layers increase the difficulty for an attacker to succeed.
Question 11. Which of the following best describes a compensating control?
A. A control that completely eliminates risk
CompTIA Security+ SY0-701 Certification Examination 2026/2027 | Verified Questions