CompTIA SecurityX
Level: Expert
Course Overview
Course Overview
The CompTIA SecurityX course is designed for experienced cybersecurity professionals who want to develop the advanced technical skills required to secure complex enterprise environments.
SecurityX is the successor to CompTIA CASP+ and forms part of CompTIA’s Xpert Series. It is an expert-level, vendor-neutral certification for senior cybersecurity practitioners responsible for designing, engineering, implementing and managing secure enterprise solutions.
The course focuses on practical security challenges across cloud, hybrid and on-premises environments. Delegates will explore governance, risk and compliance, security architecture, security engineering, advanced cryptography, security operations, threat hunting and incident response.
SecurityX also addresses the effect of emerging technologies on information security, including artificial intelligence, automation, cloud-native services, containerisation and post-quantum cryptography.
Through instructor-led learning, practical exercises and hands-on laboratories, delegates will develop the skills required to architect resilient solutions, apply security controls, respond to sophisticated threats and align security activities with organisational objectives.
The course prepares delegates for the CompTIA SecurityX CAS-005 examination and validates the advanced skills required of security engineers, architects and senior cybersecurity professionals responsible for protecting enterprise systems and data.
Please note: the SecurityX syllabus includes additional content and laboratory exercises beyond those that can be completed during the instructor-led course. Delegates should be prepared to undertake independent study and complete additional laboratory work in their own time.
Target Audience
• Experienced Cybersecurity Professionals
• Security Architects
• Senior Security Engineers
• Enterprise Security Engineers
• Senior Security Analysts
• Cybersecurity Consultants
• Security Operations Professionals
• Incident Response Professionals
• Threat Hunters
• Cloud Security Professionals
• Governance, Risk and Compliance Professionals
• Vulnerability Management Professionals
• Technical Security Leads
• Senior Network and Infrastructure Security Professionals
• IT Security Managers who retain hands-on technical responsibilities
• Professionals responsible for securing complex cloud, hybrid and on-premises environments
• Experienced practitioners preparing for the CompTIA SecurityX certification
By the End of This Course, You Will Be Able To:
• Architect and implement secure, resilient enterprise solutions
• Apply security practices across cloud, hybrid and on-premises environments
• Implement governance, risk management and compliance requirements
• Develop and maintain security policies, procedures, standards and guidelines
• Assess quantitative and qualitative security risks
• Manage third-party and supply-chain security risks
• Apply recognised security and compliance frameworks
• Conduct threat modelling and attack-surface analysis
• Design secure cloud and network architectures
• Apply Zero Trust and de-perimeterisation principles
• Secure cloud-native, containerised and serverless workloads
• Protect enterprise data throughout its lifecycle
• Apply advanced cryptographic technologies and techniques
• Automate security activities using scripts, APIs and security tools
• Conduct vulnerability scanning, analysis and remediation
• Monitor enterprise environments and analyse security events
• Use threat intelligence to support threat hunting and detection
• Apply incident response, malware analysis and root-cause analysis techniques
• Evaluate the security implications of artificial intelligence and emerging technologies
• Prepare confidently for the CompTIA SecurityX CAS-005 examination
The CompTIA SecurityX course is designed for experienced cybersecurity professionals who want to develop the advanced technical skills required to secure complex enterprise environments.
SecurityX is the successor to CompTIA CASP+ and forms part of CompTIA’s Xpert Series. It is an expert-level, vendor-neutral certification for senior cybersecurity practitioners responsible for designing, engineering, implementing and managing secure enterprise solutions.
The course focuses on practical security challenges across cloud, hybrid and on-premises environments. Delegates will explore governance, risk and compliance, security architecture, security engineering, advanced cryptography, security operations, threat hunting and incident response.
SecurityX also addresses the effect of emerging technologies on information security, including artificial intelligence, automation, cloud-native services, containerisation and post-quantum cryptography.
Through instructor-led learning, practical exercises and hands-on laboratories, delegates will develop the skills required to architect resilient solutions, apply security controls, respond to sophisticated threats and align security activities with organisational objectives.
The course prepares delegates for the CompTIA SecurityX CAS-005 examination and validates the advanced skills required of security engineers, architects and senior cybersecurity professionals responsible for protecting enterprise systems and data.
Please note: the SecurityX syllabus includes additional content and laboratory exercises beyond those that can be completed during the instructor-led course. Delegates should be prepared to undertake independent study and complete additional laboratory work in their own time.
Target Audience
• Experienced Cybersecurity Professionals
• Security Architects
• Senior Security Engineers
• Enterprise Security Engineers
• Senior Security Analysts
• Cybersecurity Consultants
• Security Operations Professionals
• Incident Response Professionals
• Threat Hunters
• Cloud Security Professionals
• Governance, Risk and Compliance Professionals
• Vulnerability Management Professionals
• Technical Security Leads
• Senior Network and Infrastructure Security Professionals
• IT Security Managers who retain hands-on technical responsibilities
• Professionals responsible for securing complex cloud, hybrid and on-premises environments
• Experienced practitioners preparing for the CompTIA SecurityX certification
By the End of This Course, You Will Be Able To:
• Architect and implement secure, resilient enterprise solutions
• Apply security practices across cloud, hybrid and on-premises environments
• Implement governance, risk management and compliance requirements
• Develop and maintain security policies, procedures, standards and guidelines
• Assess quantitative and qualitative security risks
• Manage third-party and supply-chain security risks
• Apply recognised security and compliance frameworks
• Conduct threat modelling and attack-surface analysis
• Design secure cloud and network architectures
• Apply Zero Trust and de-perimeterisation principles
• Secure cloud-native, containerised and serverless workloads
• Protect enterprise data throughout its lifecycle
• Apply advanced cryptographic technologies and techniques
• Automate security activities using scripts, APIs and security tools
• Conduct vulnerability scanning, analysis and remediation
• Monitor enterprise environments and analyse security events
• Use threat intelligence to support threat hunting and detection
• Apply incident response, malware analysis and root-cause analysis techniques
• Evaluate the security implications of artificial intelligence and emerging technologies
• Prepare confidently for the CompTIA SecurityX CAS-005 examination
Governance, risk, and compliance
- Security program documentation: policies, procedures, standards, and guidelines.
- Program management: training (phishing, security, privacy), communication, reporting, and RACI matrix.
- Frameworks: COBIT, ITIL, etc.
- Configuration management: asset life cycle, CMDB, and inventory.
- GRC tools: mapping, automation, and compliance tracking.
- Data governance: production, development, testing, and QA.
- Risk management: impact analysis, risk assessment (quantitative vs qualitative), third-party risk, confidentiality, integrity, and availability.
- Threat modelling: actor characteristics, attack patterns, and frameworks (ATT&CK, CAPEC, STRIDE).
- Attack surface: architecture reviews, data flows, and trust boundaries.
- Compliance strategies: industry-specific standards (PCI DSS, ISO 27000).
- Security frameworks: NIST, CSF, CSA, and others.
Security architecture
- Cloud capabilities: CASB (API-based, proxy-based), shadow IT detection, shared responsibility model, CI/CD pipeline, Terraform, Ansible, container security, orchestration, and serverless workloads.
- Cloud data security: data exposure, leakage, remanence, insecure storage, and encryption keys.
- Cloud control strategies: proactive, detective, and preventive controls; customer-to-cloud connectivity, service integration, and continuous authorisation.
- Network architecture: segmentation, micro-segmentation, VPN, always-on VPN, and API integration.
- Security boundaries: asset identification, management, attestation, data perimeters, and secure zones.
- De-perimeterisation: SASE, SD-WAN, and software-defined networking.
- Zero trust concepts: defining subject-object relationships.
Security engineering
- Automation: scripting (PowerShell, Bash, Python), event triggers, IoC, cloud APIs, generative AI, containerisation, patching, SOAR, and workflow automation.
- Vulnerability management: scanning, reporting, and SCAP (OVAL, XCCDF, CPE, CVE, CVSS).
- Advanced cryptography: PQC, key stretching, homomorphic encryption, forward secrecy, and hardware acceleration.
- Cryptographic use cases: data at rest, in transit, and in use; secure email, blockchain, privacy, compliance, and certificate-based authentication.
- Cryptographic techniques: tokenisation, code signing, cryptographic erase, digital signatures, hashing, and symmetric/asymmetric cryptography.
Security operations
- Monitoring and data analysis: SIEM (event parsing, retention, false positives/negatives), aggregate analysis (correlation, prioritisation, trends), and behaviour baselines (network, systems, users).
- Vulnerabilities and attack surface: injection, XSS, insecure configurations, outdated software, and weak cyphers; mitigations include input validation, patching, encryption, and defence-in-depth.
- Threat hunting: internal intelligence (honeypots, UBA), external intelligence (OSINT, dark web, ISACs), TIPs, IoC sharing (STIX, TAXII), and rule-based languages (Sigma, YARA, Snort).
- Incident response: malware analysis (sandboxing, IoC extraction, code stylometry), reverse engineering, metadata analysis, data recovery, and root cause analysis.
Governance, risk, and compliance
- Security program documentation: policies, procedures, standards, and guidelines.
- Program management: training (phishing, security, privacy), communication, reporting, and RACI matrix.
- Frameworks: COBIT, ITIL, etc.
- Configuration management: asset life cycle, CMDB, and inventory.
- GRC tools: mapping, automation, and compliance tracking.
- Data governance: production, development, testing, and QA.
- Risk management: impact analysis, risk assessment (quantitative vs qualitative), third-party risk, confidentiality, integrity, and availability.
- Threat modelling: actor characteristics, attack patterns, and frameworks (ATT&CK, CAPEC, STRIDE).
- Attack surface: architecture reviews, data flows, and trust boundaries.
- Compliance strategies: industry-specific standards (PCI DSS, ISO 27000).
- Security frameworks: NIST, CSF, CSA, and others.
Security architecture
- Cloud capabilities: CASB (API-based, proxy-based), shadow IT detection, shared responsibility model, CI/CD pipeline, Terraform, Ansible, container security, orchestration, and serverless workloads.
- Cloud data security: data exposure, leakage, remanence, insecure storage, and encryption keys.
- Cloud control strategies: proactive, detective, and preventive controls; customer-to-cloud connectivity, service integration, and continuous authorisation.
- Network architecture: segmentation, micro-segmentation, VPN, always-on VPN, and API integration.
- Security boundaries: asset identification, management, attestation, data perimeters, and secure zones.
- De-perimeterisation: SASE, SD-WAN, and software-defined networking.
- Zero trust concepts: defining subject-object relationships.
Security engineering
- Automation: scripting (PowerShell, Bash, Python), event triggers, IoC, cloud APIs, generative AI, containerisation, patching, SOAR, and workflow automation.
- Vulnerability management: scanning, reporting, and SCAP (OVAL, XCCDF, CPE, CVE, CVSS).
- Advanced cryptography: PQC, key stretching, homomorphic encryption, forward secrecy, and hardware acceleration.
- Cryptographic use cases: data at rest, in transit, and in use; secure email, blockchain, privacy, compliance, and certificate-based authentication.
- Cryptographic techniques: tokenisation, code signing, cryptographic erase, digital signatures, hashing, and symmetric/asymmetric cryptography.
Security operations
- Monitoring and data analysis: SIEM (event parsing, retention, false positives/negatives), aggregate analysis (correlation, prioritisation, trends), and behaviour baselines (network, systems, users).
- Vulnerabilities and attack surface: injection, XSS, insecure configurations, outdated software, and weak cyphers; mitigations include input validation, patching, encryption, and defence-in-depth.
- Threat hunting: internal intelligence (honeypots, UBA), external intelligence (OSINT, dark web, ISACs), TIPs, IoC sharing (STIX, TAXII), and rule-based languages (Sigma, YARA, Snort).
- Incident response: malware analysis (sandboxing, IoC extraction, code stylometry), reverse engineering, metadata analysis, data recovery, and root cause analysis.
• Exam code: CAS-005
• Exam duration: 165 minutes
• Maximum of 90 questions
• Question types: multiple-choice and performance-based questions
• Passing result: pass or fail only; CompTIA does not provide a scaled passing score
• Recommended experience: a minimum of 10 years of general, hands-on IT experience, including at least five years of broad, hands-on IT security experience
• Closed-book examination – no reference materials are permitted
• Examination available online or at an authorised Pearson VUE testing centre
Please note: NILC’s Exam Pass Guarantee applies to instructor-led courses only.
The SecurityX syllabus contains additional content and laboratory exercises beyond those covered during the five-day course. Independent study and completion of additional labs may be required before attempting the examination.
CompTIA examination vouchers are normally valid for up to 12 months from the date of issue. However, delegates receiving funding through PLA, PLA Digital, ReAct+, Skills for the Workplace or another funding scheme may be required to complete their examination within a shorter period to comply with the relevant funding requirements. Any examination deadline communicated by NILC or the funding provider will take precedence over the standard voucher validity period.
• Exam code: CAS-005
• Exam duration: 165 minutes
• Maximum of 90 questions
• Question types: multiple-choice and performance-based questions
• Passing result: pass or fail only; CompTIA does not provide a scaled passing score
• Recommended experience: a minimum of 10 years of general, hands-on IT experience, including at least five years of broad, hands-on IT security experience
• Closed-book examination – no reference materials are permitted
• Examination available online or at an authorised Pearson VUE testing centre
Please note: NILC’s Exam Pass Guarantee applies to instructor-led courses only.
The SecurityX syllabus contains additional content and laboratory exercises beyond those covered during the five-day course. Independent study and completion of additional labs may be required before attempting the examination.
CompTIA examination vouchers are normally valid for up to 12 months from the date of issue. However, delegates receiving funding through PLA, PLA Digital, ReAct+, Skills for the Workplace or another funding scheme may be required to complete their examination within a shorter period to comply with the relevant funding requirements. Any examination deadline communicated by NILC or the funding provider will take precedence over the standard voucher validity period.
• Five days of instructor-led training and examination preparation delivered by an accredited CompTIA trainer
• Official CompTIA SecurityX courseware and learning materials
• Practical exercises and hands-on laboratory activities
• CompTIA SecurityX CAS-005 certification examination voucher
• Exam Pass Guarantee – if you do not pass the examination after attending the course, you can retake the same instructor-led training with NILC at no additional cost. You will only need to pay the examination fee charged by the examination provider.
• NILC course completion certificate
• Official CompTIA SecurityX certification upon successful completion of the examination
Please note: NILC’s Exam Pass Guarantee applies to instructor-led courses only.
The SecurityX syllabus contains additional content and laboratory exercises beyond those covered during the five-day course. Independent study and completion of additional labs may be required before attempting the examination.
CompTIA examination vouchers are normally valid for up to 12 months from the date of issue. However, delegates receiving funding through PLA, PLA Digital, ReAct+, Skills for the Workplace or another funding scheme may be required to complete their examination within a shorter period to comply with the relevant funding requirements. Any examination deadline communicated by NILC or the funding provider will take precedence over the standard voucher validity period.
• Five days of instructor-led training and examination preparation delivered by an accredited CompTIA trainer
• Official CompTIA SecurityX courseware and learning materials
• Practical exercises and hands-on laboratory activities
• CompTIA SecurityX CAS-005 certification examination voucher
• Exam Pass Guarantee – if you do not pass the examination after attending the course, you can retake the same instructor-led training with NILC at no additional cost. You will only need to pay the examination fee charged by the examination provider.
• NILC course completion certificate
• Official CompTIA SecurityX certification upon successful completion of the examination
Please note: NILC’s Exam Pass Guarantee applies to instructor-led courses only.
The SecurityX syllabus contains additional content and laboratory exercises beyond those covered during the five-day course. Independent study and completion of additional labs may be required before attempting the examination.
CompTIA examination vouchers are normally valid for up to 12 months from the date of issue. However, delegates receiving funding through PLA, PLA Digital, ReAct+, Skills for the Workplace or another funding scheme may be required to complete their examination within a shorter period to comply with the relevant funding requirements. Any examination deadline communicated by NILC or the funding provider will take precedence over the standard voucher validity period.
There are no mandatory certification prerequisites for attending the CompTIA SecurityX course or sitting the CAS-005 examination.
However, CompTIA recommends that candidates have at least 10 years of general, hands-on IT experience, including at least five years of broad, hands-on IT security experience.
It is also recommended that delegates hold CompTIA Security+ or possess an equivalent level of knowledge and practical experience.
Before attending the course, delegates should be comfortable with:
• Identity and Access Management, including authentication, authorisation and directory services
• Cryptographic concepts and technologies
• Encryption, hashing, digital certificates and Public Key Infrastructure
• SSL/TLS and secure communications
• TCP/IP, network protocols, routing and switching
• Firewalls, virtual private networks and endpoint protection
• Enterprise networking and security architecture
• Cloud, hybrid and on-premises environments
• Vulnerability management and security operations
• Governance, risk management and compliance
• Incident response and threat intelligence
• Common scripting and automation concepts
SecurityX is an expert-level course and is not suitable for learners who are new to IT or cybersecurity. CompTIA Security+, CySA+ or an equivalent qualification may provide a more appropriate starting point for less experienced learners.
There are no mandatory certification prerequisites for attending the CompTIA SecurityX course or sitting the CAS-005 examination.
However, CompTIA recommends that candidates have at least 10 years of general, hands-on IT experience, including at least five years of broad, hands-on IT security experience.
It is also recommended that delegates hold CompTIA Security+ or possess an equivalent level of knowledge and practical experience.
Before attending the course, delegates should be comfortable with:
• Identity and Access Management, including authentication, authorisation and directory services
• Cryptographic concepts and technologies
• Encryption, hashing, digital certificates and Public Key Infrastructure
• SSL/TLS and secure communications
• TCP/IP, network protocols, routing and switching
• Firewalls, virtual private networks and endpoint protection
• Enterprise networking and security architecture
• Cloud, hybrid and on-premises environments
• Vulnerability management and security operations
• Governance, risk management and compliance
• Incident response and threat intelligence
• Common scripting and automation concepts
SecurityX is an expert-level course and is not suitable for learners who are new to IT or cybersecurity. CompTIA Security+, CySA+ or an equivalent qualification may provide a more appropriate starting point for less experienced learners.
How does NILC’s Exam Pass Guarantee work?
NILC’s Exam Pass Guarantee applies to instructor-led CompTIA SecurityX courses. If you do not pass the certification exam after completing the course, you can attend the same training again at no additional training cost. You will only need to pay the examination fee charged by the examination provider.
Who is the CompTIA SecurityX course suitable for?
CompTIA SecurityX is designed for experienced cybersecurity professionals working in advanced technical roles. It is particularly suitable for security architects, security engineers, senior security analysts, cybersecurity consultants and other professionals responsible for protecting complex enterprise environments.
Are there any prerequisites for CompTIA SecurityX?
There are no compulsory certification prerequisites. However, SecurityX is an expert-level certification and is not suitable for beginners. CompTIA recommends approximately 10 years of general hands-on IT experience, including at least five years of broad hands-on security experience. NILC also recommends holding CompTIA Security+ or possessing equivalent knowledge and experience.
Learners should already understand networking, identity and access management, cryptography, enterprise security technologies, security operations and risk management.
How does NILC’s Exam Pass Guarantee work?
NILC’s Exam Pass Guarantee applies to instructor-led CompTIA SecurityX courses. If you do not pass the certification exam after completing the course, you can attend the same training again at no additional training cost. You will only need to pay the examination fee charged by the examination provider.
Who is the CompTIA SecurityX course suitable for?
CompTIA SecurityX is designed for experienced cybersecurity professionals working in advanced technical roles. It is particularly suitable for security architects, security engineers, senior security analysts, cybersecurity consultants and other professionals responsible for protecting complex enterprise environments.
Are there any prerequisites for CompTIA SecurityX?
There are no compulsory certification prerequisites. However, SecurityX is an expert-level certification and is not suitable for beginners. CompTIA recommends approximately 10 years of general hands-on IT experience, including at least five years of broad hands-on security experience. NILC also recommends holding CompTIA Security+ or possessing equivalent knowledge and experience.
Learners should already understand networking, identity and access management, cryptography, enterprise security technologies, security operations and risk management.
Dates & Prices
No upcoming dates available.
Send course enquiryCan't find the course dates, location or delivery type you are looking for?
Fill out the request dates form above and we'll try our best to accommodate or contact us directly.
"*" indicates required fields
How we deliver our courses
Virtual
Our virtual courses allow you to access live instructor-led training from the same expert instructors that deliver our classroom courses, without leaving the comfort of your home or office. All virtual courses are fully interactive, and learners can communicate with their trainer and peers at any time.
Many of our virtual courses are also recorded, so you can recap over the content you learnt as many time as you wish.
Classroom
Our classroom courses allow you to learn and interact face-to-face with our expert instructors in a comfortable and modern training environment. All of our classroom based courses take place at NILC centers, or high quality training facilities, and include all required IT and physical equipment.
We also limit our class sizes to help promote better discussions and to ensure your learning experience is comfortable as possible.
Onsite
Save time and hassle by arranging for one of our expert instructors to come to you. Our onsite courses allow you to learn in a location of your choosing, and you can train as many or as few people as you want – from a single person or team to whole departments. We can also fully customize the course content to the specific requirements of your business or project.
We offer onsite courses throughout the UK and it can be a great team building opportunity for colleagues to come together, bond and discuss.
Online
Our Online Self Paced courses allow you to learn new skills from our expert instructors, in your own time and at your own pace. Our flexible online learning platform allows you to access content on your computer, tablet or mobile device, whether you’re on the move or at home. All our online courses come with immediate access and you can start learning straight away, from any internet enabled compatible device.
We also offer online email support from our expert instructors, so they’re always on hand and happy to help you with any questions which may arise.
Why choose NILC for your training?
Award-Winning Training with Industry-Leading Customer Satisfaction
Trusted Training Partner by Colleges, Government Organisations and Businesses
UK-Based Trainers with Real-World Industry Experience
Family-Run Business with Customer Service at Its Core
Rated Excellent on Trustpilot with 950+ Customer Reviews
Our learners rate us 'Excellent' on Trustpilot
Frequently Asked Questions
NILC’s Exam Pass Guarantee applies to instructor-led CompTIA SecurityX courses. If you do not pass the certification exam after completing the course, you can attend the same training again at no additional training cost. You will only need to pay the examination fee charged by the examination provider.
CompTIA SecurityX is designed for experienced cybersecurity professionals working in advanced technical roles. It is particularly suitable for security architects, security engineers, senior security analysts, cybersecurity consultants and other professionals responsible for protecting complex enterprise environments.
There are no compulsory certification prerequisites. However, SecurityX is an expert-level certification and is not suitable for beginners. CompTIA recommends approximately 10 years of general hands-on IT experience, including at least five years of broad hands-on security experience. NILC also recommends holding CompTIA Security+ or possessing equivalent knowledge and experience.
Learners should already understand networking, identity and access management, cryptography, enterprise security technologies, security operations and risk management.
Yes. CompTIA SecurityX is the successor to the CompTIA Advanced Security Practitioner certification, previously known as CASP+. It forms part of CompTIA’s Xpert Series and validates advanced, practical cybersecurity skills for senior security professionals.
You will develop advanced skills across four principal areas: governance, risk and compliance; security architecture; security engineering; and security operations. Topics include cloud security, Zero Trust, threat modelling, vulnerability management, advanced cryptography, threat intelligence, incident response and enterprise security automation.
Yes. The course combines instructor-led learning with practical exercises and hands-on labs that let you apply advanced security concepts to real-world scenarios. Learners should also be prepared to complete additional laboratory exercises and independent study outside the instructor-led course.
Yes. SecurityX covers modern cybersecurity challenges across cloud, hybrid and on-premises environments. The course also explores emerging technologies and security considerations in areas such as artificial intelligence, automation, and evolving enterprise architectures.
Yes. SecurityX covers security across cloud, hybrid and on-premises environments. It includes topics such as cloud security controls, container and serverless security, infrastructure automation, generative AI, Security Orchestration, Automation and Response, and the use of AI-driven technologies within modern security environments.
Yes. Eligible learners may access funding through schemes such as Personal Learning Accounts (PLA), PLA Digital, ReAct+, and Skills for the Workplace. Please contact NILC to discuss your eligibility
The SecurityX examination, CAS-005, lasts 165 minutes and includes up to 90 multiple-choice and performance-based questions. It is a closed-book exam, and results are reported as pass or fail rather than through a published scaled passing score.
The course includes five days of instructor-led training and examination preparation, official CompTIA courseware and learning materials, practical exercises and a CompTIA SecurityX examination voucher.
Examination vouchers are normally valid for up to 12 months from their date of issue. However, learners receiving government funding may be required to complete the examination within an earlier timeframe to comply with funding requirements.
NILC offers CompTIA SecurityX through live virtual, classroom and onsite delivery. Eligible learners may be able to access Welsh Government funding through schemes including Personal Learning Accounts, PLA Digital, ReAct+ and Skills for the Workplace. Funding is subject to the relevant programme’s eligibility criteria and availability.
Frequently Asked Questions
NILC’s Exam Pass Guarantee applies to instructor-led CompTIA SecurityX courses. If you do not pass the certification exam after completing the course, you can attend the same training again at no additional training cost. You will only need to pay the examination fee charged by the examination provider.
CompTIA SecurityX is designed for experienced cybersecurity professionals working in advanced technical roles. It is particularly suitable for security architects, security engineers, senior security analysts, cybersecurity consultants and other professionals responsible for protecting complex enterprise environments.
There are no compulsory certification prerequisites. However, SecurityX is an expert-level certification and is not suitable for beginners. CompTIA recommends approximately 10 years of general hands-on IT experience, including at least five years of broad hands-on security experience. NILC also recommends holding CompTIA Security+ or possessing equivalent knowledge and experience.
Learners should already understand networking, identity and access management, cryptography, enterprise security technologies, security operations and risk management.
Yes. CompTIA SecurityX is the successor to the CompTIA Advanced Security Practitioner certification, previously known as CASP+. It forms part of CompTIA’s Xpert Series and validates advanced, practical cybersecurity skills for senior security professionals.
You will develop advanced skills across four principal areas: governance, risk and compliance; security architecture; security engineering; and security operations. Topics include cloud security, Zero Trust, threat modelling, vulnerability management, advanced cryptography, threat intelligence, incident response and enterprise security automation.
Yes. The course combines instructor-led learning with practical exercises and hands-on labs that let you apply advanced security concepts to real-world scenarios. Learners should also be prepared to complete additional laboratory exercises and independent study outside the instructor-led course.
Yes. SecurityX covers modern cybersecurity challenges across cloud, hybrid and on-premises environments. The course also explores emerging technologies and security considerations in areas such as artificial intelligence, automation, and evolving enterprise architectures.
Yes. SecurityX covers security across cloud, hybrid and on-premises environments. It includes topics such as cloud security controls, container and serverless security, infrastructure automation, generative AI, Security Orchestration, Automation and Response, and the use of AI-driven technologies within modern security environments.
Yes. Eligible learners may access funding through schemes such as Personal Learning Accounts (PLA), PLA Digital, ReAct+, and Skills for the Workplace. Please contact NILC to discuss your eligibility
The SecurityX examination, CAS-005, lasts 165 minutes and includes up to 90 multiple-choice and performance-based questions. It is a closed-book exam, and results are reported as pass or fail rather than through a published scaled passing score.
The course includes five days of instructor-led training and examination preparation, official CompTIA courseware and learning materials, practical exercises and a CompTIA SecurityX examination voucher.
Examination vouchers are normally valid for up to 12 months from their date of issue. However, learners receiving government funding may be required to complete the examination within an earlier timeframe to comply with funding requirements.
NILC offers CompTIA SecurityX through live virtual, classroom and onsite delivery. Eligible learners may be able to access Welsh Government funding through schemes including Personal Learning Accounts, PLA Digital, ReAct+ and Skills for the Workplace. Funding is subject to the relevant programme’s eligibility criteria and availability.
Trusted By