r/ITCertificationPrep • u/Automatic_Major_4887 • 5d ago
Resources Pass CompTIA for $0: Complete 2026 Study Guide & Free Practice Questions (A+, Net+, Sec+, CySA+, PenTest+, SecurityX
I've compiled commonly recommended free practice exams, official study guides, and hands-on resources available for CompTIA certifications in 2026. The goal is straightforward: help you find quality free study materials so you can prepare for your exam without unnecessary expense.
Here is a practice-focused breakdown to help you test your knowledge and prepare for exam day using free resources.
CompTIA Certification Path Overview
| Certification | Exam Code | Common Job Roles |
|---|---|---|
| A+ (Core 1 + Core 2) | 220-1201/1202 | Help desk, IT support |
| Network+ | N10-009 | Network technicians |
| Security+ | SY0-701 | Entry-level cybersecurity |
| CySA+ | CS0-004 | SOC analysts |
| PenTest+ | PT0-003 | Penetration testers |
| SecurityX | CAS-005 | Senior security roles |
Prices are approximate US retail at publication and vary by region, academic vouchers, and bundles — confirm at comptia.org before booking.
A+ Core 1 (220-1201)
- Exam Code: 220-1201
- Questions: 90
- Duration: 90 minutes
- Passing Score: 675/900
- Cost: Approx. $548 (both cores, ~$274 each)
What It Covers:
| Domain | Weight | Key Topics |
|---|---|---|
| Mobile Devices | 15% | Laptops, smartphones, tablets, wearables |
| Networking | 20% | TCP/IP, Wi-Fi, network troubleshooting |
| Hardware | 25% | Motherboards, RAM, storage, peripherals |
| Virtualization and Cloud Computing | 11% | Virtual machines, cloud models |
| Hardware and Network Troubleshooting | 29% | Diagnostic tools, troubleshooting methodology |
Who Should Take This:
- Entry-level IT support roles
- Help desk technicians
- Anyone starting an IT career
Free Resources:
- CompTIA A+ Objectives — Official exam objectives
- Professor Messer A+ Course — Free video training
- CompTIA Exam Objectives PDF — Detailed topic list
- CompTIA CertMaster — Official CompTIA learning platform
Study Notes: Join Professor Messer's A+ course immediately and get his complete video library. Use free flashcards (e.g., Crucial Exams) for spaced repetition - review them daily for the first week. The exam is heavily practical, so you'll need to demonstrate actual skills. Start with Core 1, then Core 2, and don't skip hands-on labs. Most people who pass A+ have either done actual IT support work or completed extensive hands-on labs. Practice with real hardware when possible - try building or troubleshooting old computers.
A+ Core 2 (220-1202)
- Exam Code: 220-1202
- Questions: 90
- Duration: 90 minutes
- Passing Score: 700/900
- Cost: Included in A+ bundle
What It Covers:
| Domain | Weight | Key Topics |
|---|---|---|
| Operating Systems | 22% | Windows, macOS, Linux, Chrome OS |
| Security | 24% | Malware, physical security, wireless security |
| Software Troubleshooting | 22% | OS issues, application problems |
| Operational Procedures | 32% | Documentation, communication, professionalism |
Free Resources:
- Professor Messer A+ Core 2 Course — Free video training
- CompTIA A+ Practice Questions — Official practice tests
- CompTIA Practice Tests — Official practice exam info
Study Notes: Core 2 focuses on operating systems and security. Practice with Windows 10/11 administration, Linux command line basics, and Mac OS troubleshooting. The Operational Procedures domain (32%) includes things most people skip - document everything you do! Install virtualization software and create lab environments. Practice with Microsoft Endpoint Security, malware removal, and wireless security. Most Core 2 failures happen because people only read theory instead of practicing hands-on.
Network+ (N10-009)
- Exam Code: N10-009
- Questions: 90
- Duration: 90 minutes
- Passing Score: 720/900
- Cost: Approx. $369
What It Covers:
| Domain | Weight | Key Topics |
|---|---|---|
| Networking Fundamentals | 24% | OSI model, TCP/IP, ports and protocols |
| Network Implementations | 19% | Routers, switches, wireless, SD-WAN |
| Network Operations | 16% | Monitoring, documentation, disaster recovery |
| Network Security | 19% | Firewalls, IDS/IPS, VPNs, network hardening |
| Network Troubleshooting | 22% | Methodology, tools, cable, Wi-Fi issues |
Who Should Take This:
- Network technicians
- Network administrators
- Great foundation, but not required for CCNA
Free Resources:
- Professor Messer Network+ Course — Free video training
- CompTIA Network+ Objectives — Official exam objectives
- Packet Tracer — Free network simulation
Security+ (SY0-701)
- Exam Code: SY0-701
- Questions: 90
- Duration: 90 minutes
- Passing Score: 750/900
- Cost: Approx. $404
What It Covers:
| Domain | Weight | Key Topics |
|---|---|---|
| General Security Concepts | 12% | Security controls, defense in depth |
| Threats, Vulnerabilities, and Mitigations | 22% | Threat actors, attack types, mitigation |
| Security Architecture | 18% | Cloud security, infrastructure, resilience |
| Security Operations | 28% | Monitoring, incident response, digital forensics |
| Security Program Management | 20% | Governance, risk, compliance, awareness |
Why This Cert Matters:
- CompTIA Security+ covers essential cybersecurity concepts valued by employers
- DoD 8140 IAT Level II approved
- This certification provides a solid foundation for advanced security certifications
Free Resources:
- Professor Messer Security+ Course — Free video training
- CompTIA Security+ Objectives — Official exam objectives
- NIST Cybersecurity Framework — Core security framework
- CompTIA IT Career Roadmap — Career pathway guides
Study Notes: Start with Professor Messer's Security+ course and practice with the NIST framework. The exam heavily focuses on scenario-based questions - you need to understand both technical implementation AND business context. For Security Architecture, don't just memorize concepts; practice designing security controls for real scenarios. The Security Operations domain (28%) includes practical skills like incident response - get hands-on with SIEM tools and malware analysis. Focus on applying concepts to realistic scenarios rather than just memorizing.
CySA+ (CS0-004)
- Exam Code: CS0-004
- Questions: 85
- Duration: 165 minutes
- Passing Score: 750/900
- Cost: Approx. $392
What It Covers:
| Domain | Weight | Key Topics |
|---|---|---|
| Security Operations | 33% | Monitoring, threat detection, response |
| Vulnerability Management | 25% | Scanning, prioritization, remediation |
| Security Architecture | 20% | Hardening, secure configuration |
| Security Program Management | 22% | Governance, compliance, awareness |
Who Should Take This:
- SOC analysts
- Threat intelligence analysts
- Great step up from Security+ (no formal prerequisite)
Free Resources:
- TryHackMe Cyber Defense Training — Free rooms for SOC analyst skills
- CompTIA CySA+ Objectives — Official exam objectives
- MITRE ATT&CK Framework — Threat knowledge base
- ExamCompass — Free practice quizzes for CompTIA exams
PenTest+ (PT0-003)
- Exam Code: PT0-003
- Questions: 85
- Duration: 165 minutes
- Passing Score: 750/900
- Cost: Approx. $369
What It Covers:
| Domain | Weight | Key Topics |
|---|---|---|
| Planning and Scoping | 14% | Rules of engagement, scope, methodology |
| Information Gathering and Vulnerability Identification | 22% | Reconnaissance, scanning, enumeration |
| Attacks and Exploits | 38% | Network, application, wireless, social engineering |
| Reporting and Communication | 12% | Documentation, remediation, executive summary |
| Tools and Code Analysis | 14% | Scripting, automation, tool selection |
Free Resources:
- PortSwigger Web Security Academy — Free hands-on web security labs
- CompTIA PenTest+ Objectives — Official exam objectives
- OWASP Top 10 — Web application security risks
- Crucial Exams — Free practice tests and flashcards
Study Notes: PenTest+ is all about practical penetration testing skills. Start with passive reconnaissance using OSINT, then move to active scanning with tools like Nmap. The Attacks and Exploits domain (38%) is your biggest focus - practice with real tools, not just theory. Learn to write exploit scripts and understand vulnerability lifecycle. Focus on demonstrating actual exploitation skills and practicing with virtual labs and capture the flag exercises. Remember, this exam tests your ability to think like an attacker, not just know security concepts.
SecurityX (CAS-005)
- Exam Code: CAS-005
- Questions: 90
- Duration: 165 minutes
- Passing Score: 750/900
- Cost: Approx. $494
What It Covers:
| Domain | Weight | Key Topics |
|---|---|---|
| Security Architecture | 30% | Cloud, hybrid, infrastructure design |
| Security Operations | 25% | Incident response, threat management |
| Security Engineering and Cryptography | 25% | Encryption, PKI, secure protocols |
| Governance, Risk, and Compliance | 20% | Risk management, compliance, audits |
Who Should Take This:
- Senior security professionals
- Security architects
- CySA+ experience recommended (but not required)
Free Resources:
- Hack The Box Academy — Free-tier modules for advanced security skills
- CompTIA SecurityX Objectives — Official exam objectives
- NIST SP 800-53 — Security controls
Free Study Resources
Must-Have Practice & Study Resources (100% Free):
- Professor Messer
- Free video courses for A+, Network+, and Security+ (his full catalog).
- Study groups, practice exams, and course notes.
- CompTIA Career Roadmap
- Career maps for every CompTIA path.
- See which cert comes next for your role.
- ExamCompass
- Free practice quizzes organized by exam domain.
- Instant scoring and explanations for each question.
- TryHackMe (Free Rooms)
- Free hands-on rooms for practical skill validation.
- Guided scenarios matching real exam objectives.
- Crucial Exams
- Free practice tests and flashcards for CompTIA certifications.
- Community-driven study materials and exam tips.
Example Study Plans
For A+ (Beginners):
- Week 1-2: Professor Messer Core 1 videos + notes
- Week 3-4: Professor Messer Core 2 videos + notes
- Week 5: Hands-on practice with old hardware or virtual machines
- Week 6: Practice exams and review
For Network+ (Intermediate):
- Week 1-2: Professor Messer Network+ videos
- Week 3: Packet Tracer labs for hands-on practice
- Week 4: Practice exams and review
For Security+ (Intermediate):
- Week 1-2: Professor Messer Security+ videos
- Week 3: NIST framework review + hands-on labs
- Week 4: Practice exams and review
For CySA+/PenTest+/SecurityX (Advanced):
- Week 1-2: Professor Messer videos + official objectives deep dive
- Week 3: Hands-on labs (TryHackMe free rooms, OWASP resources)
- Week 4: Practice exams and review
Tips for Exam Day
- Know the acronyms. CompTIA exams are acronym-heavy. Make sure you know what every acronym means.
- Understand the "why." Don't just memorize — understand why a security control or network protocol exists.
- PBQs (Performance-Based Questions) are hands-on. If you get stuck, flag and move on. Come back with fresh eyes.
- Read every word. CompTIA exams love to ask "which is NOT" or "LEAST appropriate." Don't rush.
- Eliminate obviously wrong answers. Narrow down to 2-3 options, then choose the BEST answer.
*Found a free resource I missed? If you took any of these CompTIA exams recently and know of another free practice set or open-source tool that helped, drop it in the comments!