Ad slot · leaderboard — below nav, above the quiz
Home/ CompTIA CySA+ CompTIA PenTest+/ Mock Exam 1

CompTIA CySA+ Mock Exam 1

85 questions · 165 minutes · timed · CS0-003 simulation
What's in this test · 85 questions · 165 min · all 4 domains

Mock Exam 1 simulates the real CompTIA CySA+ (CS0-003) sitting: 85 original questions under a 165-minute clock, spanning all 4 domains and scored with a per-domain breakdown so you can see exactly which areas to drill next. Questions are written to the public objectives and fully explained on review.

Domain coverage

Objectives covered: 1.1 Explain the importance of system and network architecture concepts in security operations (encryption, PKI); 1.1 Explain the importance of system and network architecture concepts in security operations (encryption, TPM, root of trust); 1.1 Explain the importance of system and network architecture concepts in security operations (identity and access management); 1.1 Explain the importance of system and network architecture concepts in security operations (network segmentation); 1.1 Explain the importance of system and network architecture concepts in security operations (sensitive data protection, DLP); 1.1 Explain the importance of system and network architecture concepts in security operations (zero trust); 1.2 Given a scenario, analyze indicators of potentially malicious activity (application-related: application logs); 1.2 Given a scenario, analyze indicators of potentially malicious activity (data exfiltration indicators); 1.2 Given a scenario, analyze indicators of potentially malicious activity (email analysis); 1.2 Given a scenario, analyze indicators of potentially malicious activity (host- and identity-related indicators, credential access); 1.2 Given a scenario, analyze indicators of potentially malicious activity (host-based, ATT&CK technique mapping); 1.2 Given a scenario, analyze indicators of potentially malicious activity (network-related: beaconing); 1.3 Given a scenario, use appropriate tools or techniques to determine malicious activity (DNS reputation, sinkholing); 1.3 Given a scenario, use appropriate tools or techniques to determine malicious activity (email analysis); and more.

Ad slot · in-content — below the quiz, clear of tap targets

About this mock exam

Mock Exam 1 is a full timed simulation of the CompTIA CySA+ (CS0-003) exam — 85 questions in 165 minutes, drawn across all four domains and scored with a per-domain breakdown at the end. The clock starts only when you press Start, and you can flag questions and move freely before submitting.

Use a mock to build exam-day stamina and find weak spots under pressure. Afterwards, drill the domains you missed on the pages below, or warm up with an untimed practice test.

What it covers

1 · Security Operations33% of the exam — drill this domain
2 · Vulnerability Management30% of the exam — drill this domain
3 · Incident Response and Management20% of the exam — drill this domain
4 · Reporting and Communication17% of the exam — drill this domain

Keep practicing