CS0-002.AB1
CompTIA CySA+ (CS0-002)
Get certified for the CySA+ CS0-002 exam with the CompTIA Cybersecurity Analyst (CySA+) course and lab. The lab provides a hands-on learning experience in a safe, online environment. The CySA+ study guide covers the CS0-002 exam objectives and provides an understanding of the topics such as firewalls and anti-virus software. The CySA+ practice test will provide you an analytics-based approach within the IT security industry that is increasingly important for organizations.
- Practice in 37 Hands-On Labs — nothing to install
- 22 Interactive Lessons and 200 topics mapped to the official exam objectives
- 364 Practice Test Questions and 2 Full Length Tests
Intermediate Self-paced · 1 year access 4.8/5 (121 Reviews)
37 Hands-On LiveLabs
Practice real IT tasks in guided environments.
- Real environments
- Auto-graded
- No installation
01 / Skills you'll get
What you will be able to do
Target Career Roles
- Compliance Analyst
- Threat Intelligence Analyst
- Application Security Analyst
- Incident Response or Handler
02 / Lessons & labs
See exactly what you will learn and practice
Lessons
22 Interactive Lessons · 200 topics01 Introduction 5 topics +
- Goals and Methods
- Who Should Read This Course?
- Strategies for Exam Preparation
- How the Course Is Organized
- What’s New?
02 The Importance of Threat Data and Intelligence 9 topics +
- Intelligence Sources
- Indicator Management
- Threat Classification
- Threat Actors
- Intelligence Cycle
- Commodity Malware
- Information Sharing and Analysis Communities
- Review All Key Topics
- Review Questions
03 Utilizing Threat Intelligence to Support Organizational Security 6 topics +
- Attack Frameworks
- Threat Research
- Threat Modeling Methodologies
- Threat Intelligence Sharing with Supported Functions
- Review All Key Topics
- Review Questions
04 Vulnerability Management Activities 7 topics · 1 LiveLab +
- Vulnerability Identification
- Validation
- Remediation/Mitigation
- Scanning Parameters and Criteria
- Inhibitors to Remediation
- Review All Key Topics
- Review Questions
1 LiveLab in this lesson — see the labs panel →
05 Analyzing Assessment Output 8 topics · 6 LiveLab +
- Web Application Scanner
- Infrastructure Vulnerability Scanner
- Software Assessment Tools and Techniques
- Enumeration
- Wireless Assessment Tools
- Cloud Infrastructure Assessment Tools
- Review All Key Topics
- Review Questions
6 LiveLab in this lesson — see the labs panel →
06 Threats and Vulnerabilities Associated with Specialized Technology 14 topics +
- Mobile
- Internet of Things (IoT)
- Embedded Systems
- Real-Time Operating System (RTOS)
- System-on-Chip (SoC)
- Field Programmable Gate Array (FPGA)
- Physical Access Control
- Building Automation Systems
- Vehicles and Drones
- Workflow and Process Automation Systems
- Incident Command System (ICS)
- Supervisory Control and Data Acquisition (SCADA)
- Review All Key Topics
- Review Questions
07 Threats and Vulnerabilities Associated with Operating in the Cloud 10 topics +
- Cloud Deployment Models
- Cloud Service Models
- Function as a Service (FaaS)/Serverless Architecture
- Infrastructure as Code (IaC)
- Insecure Application Programming Interface (API)
- Improper Key Management
- Unprotected Storage
- Logging and Monitoring
- Review All Key Topics
- Review Questions
08 Implementing Controls to Mitigate Attacks and Software Vulnerabilities 4 topics · 7 LiveLab +
- Attack Types
- Vulnerabilities
- Review All Key Topics
- Review Questions
7 LiveLab in this lesson — see the labs panel →
09 Security Solutions for Infrastructure Management 16 topics · 6 LiveLab +
- Cloud vs. On-premises
- Asset Management
- Segmentation
- Network Architecture
- Change Management
- Virtualization
- Containerization
- Identity and Access Management
- Cloud Access Security Broker (CASB)
- Honeypot
- Monitoring and Logging
- Encryption
- Certificate Management
- Active Defense
- Review All Key Topics
- Review Questions
6 LiveLab in this lesson — see the labs panel →
10 Software Assurance Best Practices 11 topics +
- Platforms
- Software Development Life Cycle (SDLC) Integration
- DevSecOps
- Software Assessment Methods
- Secure Coding Best Practices
- Static Analysis Tools
- Dynamic Analysis Tools
- Formal Methods for Verification of Critical Software
- Service-Oriented Architecture
- Review All Key Topics
- Review Questions
11 Hardware Assurance Best Practices 12 topics +
- Hardware Root of Trust
- eFuse
- Unified Extensible Firmware Interface (UEFI)
- Trusted Foundry
- Secure Processing
- Anti-Tamper
- Self-Encrypting Drives
- Trusted Firmware Updates
- Measured Boot and Attestation
- Bus Encryption
- Review All Key Topics
- Review Questions
12 Analyzing Data as Part of Security Monitoring Activities 11 topics · 9 LiveLab +
- Heuristics
- Trend Analysis
- Endpoint
- Network
- Log Review
- Impact Analysis
- Security Information and Event Management (SIEM) Review
- Query Writing
- E-mail Analysis
- Review All Key Topics
- Review Questions
9 LiveLab in this lesson — see the labs panel →
13 Implementing Configuration Changes to Existing Controls to Improve Security 13 topics · 1 LiveLab +
- Permissions
- Whitelisting and Blacklisting
- Firewall
- Intrusion Prevention System (IPS) Rules
- Data Loss Prevention (DLP)
- Endpoint Detection and Response (EDR)
- Network Access Control (NAC)
- Sinkholing
- Malware Signatures
- Sandboxing
- Port Security
- Review All Key Topics
- Review Questions
1 LiveLab in this lesson — see the labs panel →
14 The Importance of Proactive Threat Hunting 10 topics · 1 LiveLab +
- Establishing a Hypothesis
- Profiling Threat Actors and Activities
- Threat Hunting Tactics
- Reducing the Attack Surface Area
- Bundling Critical Assets
- Attack Vectors
- Integrated Intelligence
- Improving Detection Capabilities
- Review All Key Topics
- Review Questions
1 LiveLab in this lesson — see the labs panel →
15 Automation Concepts and Technologies 12 topics +
- Workflow Orchestration
- Scripting
- Application Programming Interface (API) Integration
- Automated Malware Signature Creation
- Data Enrichment
- Threat Feed Combination
- Machine Learning
- Use of Automation Protocols and Standards
- Continuous Integration
- Continuous Deployment/Delivery
- Review All Key Topics
- Review Questions
16 The Incident Response Process 5 topics +
- Communication Plan
- Response Coordination with Relevant Entities
- Factors Contributing to Data Criticality
- Review All Key Topics
- Review Questions
17 Applying the Appropriate Incident Response Procedure 7 topics · 1 LiveLab +
- Preparation
- Detection and Analysis
- Containment
- Eradication and Recovery
- Post-Incident Activities
- Review All Key Topics
- Review Questions
1 LiveLab in this lesson — see the labs panel →
18 Analyzing Potential Indicators of Compromise 5 topics · 1 LiveLab +
- Network-Related Indicators of Compromise
- Host-Related Indicators of Compromise
- Application-Related Indicators of Compromise
- Review All Key Topics
- Review Questions
1 LiveLab in this lesson — see the labs panel →
19 Utilizing Basic Digital Forensics Techniques 12 topics · 3 LiveLab +
- Network
- Endpoint
- Mobile
- Cloud
- Virtualization
- Legal Hold
- Procedures
- Hashing
- Carving
- Data Acquisition
- Review All Key Topics
- Review Questions
3 LiveLab in this lesson — see the labs panel →
20 The Importance of Data Privacy and Protection 5 topics +
- Privacy vs. Security
- Non-technical Controls
- Technical Controls
- Review All Key Topics
- Review Questions
21 Applying Security Concepts in Support of Organizational Risk Mitigation 11 topics +
- Business Impact Analysis
- Risk Identification Process
- Risk Calculation
- Communication of Risk Factors
- Risk Prioritization
- Systems Assessment
- Documented Compensating Controls
- Training and Exercises
- Supply Chain Assessment
- Review All Key Topics
- Review Questions
22 The Importance of Frameworks, Policies, Procedures, and Controls 7 topics · 1 LiveLab +
- Frameworks
- Policies and Procedures
- Category
- Control Type
- Audits and Assessments
- Review All Key Topics
- Review Questions
1 LiveLab in this lesson — see the labs panel →
Hands-On Labs Our edge
37 LiveLabs- Conducting Vulnerability Scanning Using Nessus
- Using Nikto
- Using OWASP ZAP
- Inspecting the Vulnerability in the Echo Server's Source Code
- Performing Reconnaissance on a Network
- Using the hping Program
- Identifying Search Options in Metasploit
- Scanning the Rootkit
- Configuring DHCP Snooping
- Performing a MITM Attack
- Exploiting a Website Using SQL Injection
- Performing Session Hijacking Using Burp Suite
- Detecting Rootkits
- Performing ARP Spoofing
- Configuring Remote Access with VPN
- Configuring the SSL Port Setting
- Attacking a Website Using XSS Injection
- Setting up a Honeypot on Kali Linux
- Using the MD5 Hash Algorithm
- Encrypting and Decrypting a File Using AES Crypt
- Performing a Memory-Based Attack
- Using Apktool to Decode and Analyze the apk file
- Simulating the DDoS Attack
- Simulating a DoS Attack
- Scanning the Website using URLVoid
- Configuring Snort
- Making Syslog Entries Readable
- Examining Audited Events
- Installing Splunk on the Server
- Using the iptables Command to Create a Personal Firewall in Linux
- Working with the Task Manager
- Configuring a Perimeter Firewall
- Performing the Initial Scan
- Confirming the Spoofing Attack in Wireshark
- Capturing a Packet Using Wireshark
- Downloading and Installing Wireshark
- Reviewing and Modifying the Policy Items
03 / Exam details
CompTIA CySA+ (CS0-002) Details
Get certified for the CySA+ CS0-002 exam with the CompTIA Cybersecurity Analyst (CySA+) course and lab. The lab provides a hands-on learning experience in a safe, online environment. The CySA+ study guide covers the CS0-002 exam objectives and provides an understanding of the topics such as firewalls and anti-virus software. The CySA+ practice test will provide you an analytics-based approach within the IT security industry that is increasingly important for organizations.
Ready to take the exam?
Add your official CS0-002.AB1 exam voucher to your order.
Official Voucher · Fast delivery · Retake bundle available04 / FAQs
Questions before you start
What are the prerequisites for this exam?+
What is the exam registration fee?+
Where do I take the exam?+
Pearson VUE
What is the format of the exam?+
How many questions are asked in the exam?+
What is the duration of the exam?+
What is the passing score?+
(on a scale of 100-900)
What is the exam's retake policy?+
In the event that you fail your first attempt at passing the CySA+ examination, CompTIA's retake policies are:
- CompTIA does not require a waiting period between the first and second attempt to pass such examination. However, if you need a third or subsequent attempt to pass the examination, you shall be required to wait for a period of at least 14 calendar days from the date of your last attempt before you can retake the exam.
- If a candidate has passed an exam, he/she cannot take it again without prior consent from CompTIA.
- A test result found to be in violation of the retake policy will not be processed, which will result in no credit awarded for the test taken. Repeat violators will be banned from participation in the CompTIA Certification Program.
- Candidates must pay the exam price each time they attempt the exam. CompTIA does not offer free re-tests or discounts on retakes.
What is the validity of the certification?+
Where can I find more information about this exam?+
Prepare for CompTIA CySA+ (CS0-002)
One-time payment. Full access for 1 year. Start with a free trial if you want to look around first.
- 1 year of full access
- 37 LiveLab included
- Certificate of completion
No credit card required