Chapter 2. Compliance and Operational Security

About 18 percent of the SY0-301 exam comes from this domain. You need to have an understanding of compliance and operational security. Good security is all about controls, and that is what a large portion of this domain examines. These controls can be technical, management, or operational. Each plays a critical role in helping to secure an organization. A security professional also has to understand risk. You must understand how to assess risk, examine possible countermeasures, and determine whether to accept it, avoid it, or transfer it. Regardless of how you deal with risk, there is still the possibility that something might go wrong. In these situations, you need to know effective incident response ...

Get CompTIA® Security+™ Rapid Review (Exam SY0-301) now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.