CertQuestUSA
Transportation70+AK/AL/AR +moreConstruction & Safety39+CAEnvironmental99+AL/AR/AZ +moreHealthcare & Clinical190+AL/AR/AZ +moreProfessional Licensing307+AL/AR/AZ +moreEducation & Teacher Certification24+CAAviation & FAA Certification9Finance & Securities Licensing23IT & Cloud Certification2Project Management1View all sectors ›

CompTIA Security+ (SY0-701) Practice Test

First published: September 13, 2026Bank updated: September 13, 2026Published by CertQuestUSA · review process
TL;DR

CompTIA Security+ (SY0-701) Practice Test: a 360-question practice bank for the real IT Certification standard, 4 full papers of 90 questions each with no repeats, every question citing the real regulation it comes from.

Where these questions come from

Every question in this bank cites a real source -- primarily SY0-701 (100%) of this exam's citations.

Not sure where you stand? Take the free diagnostic — 10 real questions across the exam's domains, no sign-up required, with a domain-by-domain breakdown at the end.
Start diagnostic
4
full papers, no repeats
90
questions per paper
360
questions in the bank
What this exam covers
5 real sample questions
A company installs a badge reader on the server room door so only authorized staff can enter. Which control category does the badge reader belong to?
A. Managerial
B. Operational
C. Physical
D. Technical
Show answer and reasoning

Correct answer: C. Physical

Correct. A badge reader is a physical control: it restricts physical access to a space. The category axis (technical, managerial, operational, physical) describes what kind of thing the control is, separate from its function. Source: SY0-701 objective 1.1.

  • A: Managerial controls are administrative items such as policies, risk assessments and standards, not door hardware.
  • B: Operational controls are carried out by people as part of day-to-day process, such as awareness training or guard patrols. A reader that enforces entry by itself is a physical control.
  • D: Technical controls are implemented in hardware or software to protect systems and data, such as firewalls or encryption. Controlling a door is physical access, not system access.
Source: SY0-701 1.1
A sign at a parking lot entrance reads "Area under 24-hour video surveillance." No cameras are actually installed. Which control type best describes the sign?
A. Deterrent
B. Corrective
C. Preventive
D. Detective
Show answer and reasoning

Correct answer: A. Deterrent

Correct. A deterrent control discourages an attacker from acting by making the attempt seem risky, even when it cannot physically stop or record anything. The sign only changes the attacker's decision. Source: SY0-701 objective 1.1.

  • B: A corrective control restores a system after an incident, such as restoring from backup. The sign has no role after an event.
  • C: A preventive control physically or logically stops an action, such as a locked gate. The sign stops nothing on its own.
  • D: A detective control identifies and records an event that has occurred, such as working cameras or log review. A sign with no cameras detects nothing.
Source: SY0-701 1.1
A legacy application cannot support multifactor authentication. Management instead restricts it to an isolated network segment reachable only from a hardened jump host. Which control type is the network restriction?
A. Deterrent
B. Compensating
C. Directive
D. Detective
Show answer and reasoning

Correct answer: B. Compensating

Correct. A compensating control is put in place when the primary control cannot be applied, providing an alternative that reduces the same risk. The segment plus jump host stands in for the missing MFA. Source: SY0-701 objective 1.1.

  • A: A deterrent control discourages an attacker from trying. The segment blocks access regardless of the attacker's intent.
  • C: A directive control tells people what to do, such as a policy or a posted procedure. The restriction here is enforced on the network, not communicated as an instruction.
  • D: A detective control finds events after they happen. Segmentation prevents access rather than detecting it.
Source: SY0-701 1.1
An organization publishes an acceptable use policy that every employee must sign before receiving network credentials. Which control category and type best describe this policy?
A. Technical category, preventive type
B. Managerial category, directive type
C. Physical category, deterrent type
D. Operational category, detective type
Show answer and reasoning

Correct answer: B. Managerial category, directive type

Correct. A written policy is a managerial (administrative) control, and because it instructs staff on required behavior it functions as a directive control. Category and type are two separate axes and this item asks for both. Source: SY0-701 objective 1.1.

  • A: A policy is not implemented in hardware or software, so it is not technical, and a document cannot by itself prevent an action.
  • C: A policy is not a physical control. Physical controls are things like locks, fences and guards.
  • D: Operational controls are executed by people as part of routine processes; a policy document sets rules rather than performing a process, and it does not detect events.
Source: SY0-701 1.1
After a malware outbreak, administrators restore affected workstations from clean images. Which control type does the restoration represent?
A. Preventive
B. Detective
C. Corrective
D. Compensating
Show answer and reasoning

Correct answer: C. Corrective

Correct. Corrective controls act after an incident to restore systems to a working state or limit further damage. Reimaging infected hosts is a textbook corrective action. Source: SY0-701 objective 1.1.

  • A: Preventive controls stop an incident before it occurs. The outbreak already happened, so the restoration is a response, not prevention.
  • B: Detective controls discover that something happened, such as an antivirus alert. Restoring images fixes the damage rather than finding it.
  • D: Compensating controls substitute for a primary control that cannot be used. Nothing here is being substituted; the restoration is a direct remedy.
Source: SY0-701 1.1

Frequently asked questions

How many questions are on the CertQuestUSA CompTIA Security+ (SY0-701) Practice Test practice test?
360 questions total, split into 4 full papers of 90 each with no repeats across papers.
What topics does the CompTIA Security+ (SY0-701) Practice Test test cover?
5 domains, with the heaviest weight on Security Operations (28%), Threats Vulnerabilities Mitigations (22%), and Security Program Management (20%).
Where do CertQuestUSA's CompTIA Security+ (SY0-701) Practice Test questions come from?
Primarily SY0-701 (100%) of this bank's citations -- computed directly from this exam's own question sources, not a generic description.
Is there a free diagnostic for CompTIA Security+ (SY0-701) Practice Test?
Yes -- 10 real questions across the exam's domains, no sign-up required, with a domain-by-domain breakdown at the end.
Composing your paper...