CompTIA SecurityX (formerly CASP+), exam CAS-005

CompTIA SecurityX Practice Exam: CASP+ Questions (CAS-005) from Your Own Notes

Upload your SecurityX study notes and the AI writes unlimited CAS-005 practice questions with an answer key in seconds. Built on the current four-domain exam (up to 90 questions, 165 minutes, 529 US dollars) and the pass-or-fail scoring CompTIA actually uses. This is the expert-level credential CompTIA renamed from CASP+ in December 2024.

Your study files are processed securely and deleted automatically after your practice questions are built.

Upload your SecurityX study material and generate your first question set

Click to upload or drag and drop

PDF, DOCX, PPTX, TXT, JPG, JPEG, PNG, HEIC, ODP, ODT, BMP, or TIFF

up to 20MB

Please wait, your quiz is being created...

Uploading...

CompTIA SecurityX (exam CAS-005) is the credential formerly called CASP+. It has up to 90 questions, runs 165 minutes, costs 529 US dollars, and is graded pass or fail with no scaled score. There is no formal prerequisite, though CompTIA recommends ten years in IT including five in security. The four domains are Security Engineering (31%), Security Architecture (27%), Security Operations (22%), and Governance, Risk, and Compliance (20%). It is the expert tier above Security+, CySA+, and PenTest+.

Last updated July 2026

CASP+ and SecurityX are the same certification. CompTIA rebranded CASP+, the CompTIA Advanced Security Practitioner, to SecurityX on December 17, 2024, the same day the CAS-005 exam launched. It is now part of CompTIA's Xpert series. Existing CASP+ holders kept their certification and continuing-education standing, and received updated SecurityX badges. The old exam, CAS-004, has retired, so CAS-005 is the only version you can sit today. If your study guide still says CASP+ or references CAS-004 and five domains, it predates the current exam.

There is no numeric passing score, and that is official. CompTIA states on the SecurityX certification page that the exam is pass or fail only, with no scaled score. This trips up candidates who expect a number like the 750 they saw on Security+. Any prep site quoting a scaled SecurityX passing score is inventing it. You will not see a percentage, only a pass or fail result, so the goal is competence across all four domains rather than clearing a specific line.

What the CompTIA SecurityX exam tests

CAS-005 has four domains, and the balance tells you where SecurityX puts its weight. Engineering and architecture together are 58 percent of the exam, because SecurityX is about building and integrating secure solutions, not just knowing policy. Here is what each domain actually asks.

Domain Weight What is actually in it
Security Engineering31%The largest domain. Implementing secure systems: cryptography and PKI, secure cloud and endpoint configuration, IAM, and hardening across on-prem and hybrid estates.
Security Architecture27%Designing resilient, secure enterprise architecture: zero trust, network segmentation, secure integration of complex systems, and trade-offs between competing requirements.
Security Operations22%Threat management, monitoring and detection, incident response, and the analysis work that turns telemetry into action.
Governance, Risk, and Compliance20%Risk management, regulatory and framework alignment, third-party and supply-chain risk, and translating business risk into security requirements.

Weights from the current CompTIA SecurityX certification page, and they total 100 percent. The retired CAS-004 CASP+ exam had five differently named domains, so any five-domain outline is outdated.

Because performance-based questions drop you into a scenario, recall alone will not carry you. Generate practice questions from your own SecurityX notes so you rehearse reasoning across all four domains, not just memorized terms.

Questions
Up to 90
Time
165 min
Scoring
Pass / fail
Exam code
CAS-005

Where SecurityX sits in the CompTIA pathway

SecurityX is the top of CompTIA's cybersecurity ladder, the Xpert tier. Most candidates arrive after Security+ and then CySA+ or PenTest+, with years of hands-on work in between. Unlike a management-focused certification, SecurityX keeps you technical: it expects you to design and implement, which is why Security Engineering and Architecture dominate the blueprint.

Coming up the CompTIA path

If you are building toward SecurityX, the Security+ practice test and the CySA+ practice test cover the foundational and analyst-level ground SecurityX assumes you already own.

DoD 8140 and hiring

SecurityX maps to work roles in the US Department of Defense 8140 framework and is ISO and ANSI 17024 accredited, which is why it shows up in senior security engineer and architect job requirements.

If your role leans offensive, the PenTest+ practice exam pairs naturally on the way up. Whatever path you took, SecurityX rewards depth over breadth, so practice with material drawn from your own work.

How to build SecurityX practice questions that hold up on exam day

SecurityX is scenario-driven and technical. Build question sets that make you decide, not just recall.

1
Weight toward engineering
Security Engineering and Architecture are 58 percent combined. Load your sets with cryptography, secure cloud design, IAM, and zero-trust scenarios first.
2
Use current material
Skip anything labeled CASP+ or CAS-004 with five domains. Upload CAS-005 aligned notes so the terminology and domain balance match the live exam.
3
Practice trade-offs
Architecture questions rarely have one right answer, they have a best fit. Ask for questions that pit valid options against a stated constraint.
4
Read the explanations
Each set includes an answer key with reasoning. On a pass-or-fail exam with no partial number to chase, understanding why is the whole game.

CompTIA SecurityX questions, answered

Is CompTIA SecurityX the same as CASP+?
Yes. CompTIA renamed CASP+ (CompTIA Advanced Security Practitioner) to SecurityX on December 17, 2024, the day the CAS-005 exam launched. It is the same advanced credential, now part of CompTIA's Xpert series. CASP+ is simply the legacy name, and existing holders kept their certification and continuing-education status. If a study guide still says CASP+ and CAS-004, it predates the rebrand and the current exam.
What is the passing score for the SecurityX CAS-005 exam?
There is no numeric passing score. SecurityX (CAS-005) is graded pass or fail only, with no scaled score reported, which CompTIA states plainly on the certification page. This is unusual for a major certification and catches people out. Prep sites that quote a 750 scaled score are wrong; they are copying the format of Security+ or vendor exams. You either pass or you do not, and CompTIA does not release the number.
How many questions and how long is the exam?
SecurityX (CAS-005) has a maximum of 90 questions and a time limit of 165 minutes. The questions mix multiple choice with performance-based items that put you in a simulated environment to solve a task. The US voucher price is 529 dollars. It is delivered through Pearson VUE, at a test center or online with a proctor, and the certification is valid for three years.
How many domains does CAS-005 have?
The current SecurityX exam, CAS-005, has four domains: Governance, Risk, and Compliance (20 percent), Security Architecture (27 percent), Security Engineering (31 percent), and Security Operations (22 percent). The older CASP+ exam, CAS-004, had five differently named domains, so any material listing five domains is out of date. Security Engineering is the largest single domain at 31 percent.
What experience do I need before taking SecurityX?
There is no formal prerequisite, but CompTIA recommends a minimum of ten years of general IT experience including at least five years of hands-on security, plus the knowledge covered by Network+, Security+, CySA+, Cloud+, and PenTest+. SecurityX is the expert tier, aimed at senior security engineers and architects who implement solutions rather than only manage policy. It maps to US Department of Defense 8140 work roles.
How do I renew the SecurityX certification?
SecurityX is valid for three years from the date you pass. You renew by earning 75 continuing-education units over that period, by earning a higher-level certification, or by passing the latest version of the SecurityX exam. Continuing-education activities include training, conferences, publishing, and related industry certifications, all logged in your CompTIA continuing-education account.

PDFQuiz is not affiliated with, endorsed by, or sponsored by CompTIA. CompTIA, SecurityX, CASP+, and Security+ are trademarks of CompTIA, Inc. This generator builds practice questions from material you upload and is a study aid, not a substitute for hands-on experience or official exam preparation. Exam details change, so always confirm current details on the official CompTIA certification page before you book.

Related study tools

Working up the CompTIA cybersecurity path? The Security+ practice test and CySA+ practice test cover the tiers below SecurityX, and the PenTest+ practice exam pairs with it on the offensive side. For the vendor-neutral management angle, compare the CISSP practice questions. Any notes work with the certification exam generator, or start from any PDF with the PDF to practice test generator.

Build your first SecurityX practice set

Upload your SecurityX and CASP+ study notes and generate scenario practice questions across all four CAS-005 domains with an answer key in under a minute.