Security+

CompTIA Security+ (SY0-601/701)


Certification Link/Proof


Introduction (from Credly)

Earners of the CompTIA Security+ certification have the knowledge and skills necessary to perform core security functions required of any cybersecurity role. Security+ professionals know how to identify and address potential threats, attacks, and vulnerabilities, and they have established techniques in risk management, threat mitigation, and intrusion detection.

Corporateses translation: HR wants to tick one of their boxes that you know the fundies.


Why I Took It

Security+ was an organizational requirement. They wanted to ensure that everyone in the department has a baseline cert to check “foundational knowledge” box. Since I already had OSCP, most of the content was review, but it formalized terminology and compliance concepts useful for communicating with non-technical stakeholders.

It’s not the most exciting cert, but it is widely recognized and often required for certain roles or contracts. Another positive is that it speaks HRese. And I do like ticking Applicant Tracking System (ATS) tickboxes.


Now, Why I Actually Took It

Seriously, it was the organization requirement thing. Plus, I didn’t think that it would be to terribly taxing after finishing months of OSCP study. Wish I had something juicier for you.


Skills Gained

The big concepts: CIA triad (Confidentiality, Integrity, Availability), preventative vs. detective vs. corrective controls, and endless scenario-based classification exercises. There was an Attacks chapter that, by their own admission, defined shellcode differently than the offensive security community, which irked me. Also, drag-and-drop picture-based questions. That’s what stands out.


Tools & Technologies Used

  • Firewalls, IDS/IPS, SIEM platforms.
  • Vulnerability scanners (Nessus, OpenVAS).
  • Basic encryption/PKI tools.
  • Virtual lab environments for practice.


Practical/Hands-On Experience

  • Applied concepts in small virtual lab exercises to reinforce theoretical knowledge.



Tips & Lessons Learned

  • Focus on understanding concepts rather than memorizing terms.
  • Use small lab exercises to reinforce theory.
  • Review scenario-based questions to prepare for exam-style thinking.
  • Learn industry-standard terminology for communication and reporting.


Outcome/Status

  • Verification available upon request.



Standards (from Credly)

Accredited by ANSI to show compliance with the ISO/IEC 17024 Standard.