From the course: CompTIA Security+ (SY0-701) Cert Prep

Security architecture

- The third domain of the Security+ exam, security architecture, makes up 18% of the questions on the test. It has four objectives. The first objective requires that you be able to compare and contrast the security implications of different architecture models. This includes understanding the security issues related to cloud computing, serverless computing, network infrastructure and critical industrial control systems. You'll need to understand the key considerations of these environments, including availability, resilience, cost, responsiveness and scalability. When you move on to the second objective, you'll be asked to apply security principles to secure enterprise infrastructure when you're given a scenario. This includes understanding different infrastructure considerations, such as device placement, failure modes and device attributes. You'll need to understand the roles of common security devices, such as intrusion prevention and detection systems, load balancers, firewalls and jump servers. You'll also need to know how to secure communications and network access using technologies including VPNs, IPSec and TLS tunneling and software defined wide area networks. The third objective asks you to compare and contrast concepts and strategies to protect data. As you prepare for this objective, you'll learn about data types, data classifications, the differences between data-at-rest, data-in-transit, and data-in-use, as well as the methods used to secure data. The final objective asks you to explain the importance of resiliency and recovery innd security architecture. This includes high availability, site considerations, platform diversity, multi-cloud systems, continuity of operations, capacity planning, testing, backups and power issues. Now, that's a lot to learn, but once you've completed the courses in this series, you'll be ready to face these questions on the Security+ exam.

Contents