[ STUDY TRACKER · COMPTIA SY0-701 ]

Pass the CompTIA Security+ in 12 weeks.

A structured study tracker for the SY0-701 certification. Track 12 weeks of curriculum, 43 hands-on labs with step-by-step manuals, roughly 3,000 practice exam questions, and your progress across every exam domain — all in one terminal-themed dashboard. Free to use.

Free · OAuth login · No credit card · Multi-tenant data isolation

12
Weeks of curriculum
43
Hands-on labs
60
Topics covered
~3,000
Practice questions
5
Exam domains
100%
Free to use
[FEATURES]

Everything you need to pass — in one place.

Most cert-prep apps focus on one thing: practice questions, or videos, or labs. SecTrack gives you all of it together with the one thing they all miss — structured progress tracking that ties everything back to the five Security+ exam domains.

12-Week Curriculum

A structured weekly plan covering all five Security+ domains. Each week ships with reading material, video lectures, hands-on labs, and 10-question quizzes per topic. Mark progress as you go and the dashboard updates your domain-level completion automatically.

43 Hands-On Labs

Every lab is a full manual — prerequisites, knowledge base, environment setup (Linux/Windows/cloud), step-by-step commands you can copy, common variations, self-practice challenges, and exam-relevant takeaways. Run Nmap scans, deploy a Wazuh SIEM, crack hashes with Hashcat, exploit Metasploitable, detect a rogue AP with Kismet, verify SPF/DKIM/DMARC — and 37 more.

Practice Exam Tracker

Log results from Boson ExSim, MeasureUp, Jason Dion, ExamCompass, or Professor Messer. The analytics panel shows your score trend over time, your best attempt, and a per-domain weakness radar so you know which of the five domains to focus on next.

Command Cheat Sheet

30+ pre-loaded Security+ commands across Nmap, OpenSSL, Wireshark/tshark, Metasploit, iptables, Hashcat, OpenVPN, and Linux file-hashing. Tag, search, copy with one click. Add your own commands as you discover them.

Smart Notes

Free-form study notes organized by week and exam domain. Full-text search across every note you've written. Tag and filter to surface the right context fast on exam-prep day.

Reference Library

Curated links to Professor Messer, Jason Dion, MITRE ATT&CK, NIST Cybersecurity Framework, OWASP Top 10, CVE/NVD, and more — plus a quick-lookup acronym reference covering AES, RSA, PKI, MITM, APT, IoC, TTP, SIEM, and the other 30+ acronyms that show up on the exam.

[CURRICULUM]

12 weeks · 5 exam domains.

The SY0-701 exam covers five weighted domains. The curriculum below maps every weekly lesson, lab, and practice question back to the right domain so you always know what you're studying for and why.

Domain 1
12%
of the exam

General Security Concepts

CIA triad, AAA, Zero Trust, cryptography fundamentals, PKI, hashing, authentication methods (MFA, biometrics, tokens), authorization models (RBAC, ABAC, MAC, DAC), security controls, change management

Domain 2
22%
of the exam

Threats, Vulnerabilities & Mitigations

Malware types, social engineering (phishing/vishing/smishing), MITRE ATT&CK, threat actors, OSINT, vulnerability scanning vs pentesting, CVE/CVSS, OWASP Top 10, SQL injection, XSS, patch management

Domain 3
18%
of the exam

Security Architecture

VLANs and segmentation, NGFW/WAF, VPN types, cloud security (IaaS/PaaS/SaaS), Zero Trust Architecture, IAM/SSO/SAML, IDS/IPS placement, container security, disaster recovery (RTO/RPO), backup strategies

Domain 4
28%
of the exam

Security Operations

SIEM, EDR, network traffic analysis, incident response phases, digital forensics, vulnerability management, penetration testing, threat intelligence (STIX/TAXII), SOAR, MDM/BYOD, wireless security, email security

Domain 5
20%
of the exam

Security Program Management & Oversight

Risk management (identification, analysis, treatment, monitoring), NIST RMF, ISO 27001, FAIR, BIA, security policies, GDPR/HIPAA/PCI-DSS compliance, third-party risk, security awareness, SBOMs

Exam target: 750 / 900 · 90 questions · 90 minutes
[LABS]

43 step-by-step lab manuals — real tools, real commands.

Reading about security only gets you so far. Every week ships with three or four lab exercises built around tools you'll actually use on the job: Nmap, OpenSSL, Wireshark, Metasploit, Wazuh SIEM, Snort, OpenVPN, iptables, Hashcat, Kismet, GoPhish, Burp Suite, OWASP WebGoat, and more. Each lab manual includes a knowledge-base section explaining the underlying concepts, then walks you through the commands one at a time.

[SAMPLE LABS — 29 of 43]
  • Generate and compare MD5/SHA hashes (Linux)
  • Create a self-signed certificate with OpenSSL
  • Configure MFA on a test account with Google Authenticator
  • Implement RBAC with Linux file permissions
  • Analyze malware behavior in the ANY.RUN sandbox
  • OSINT investigation with Maltego CE and Shodan
  • Run an Nmap scan and interpret results
  • Perform basic SQL injection on DVWA
  • Conduct a vulnerability scan with OpenVAS/Greenbone
  • Configure VLANs and inter-VLAN routing in Cisco Packet Tracer
  • Set up an iptables firewall ruleset on Linux
  • Deploy OpenVPN and test the encrypted tunnel
  • Deploy and test Snort IDS rules
  • Set up SAML-based SSO with Keycloak
  • Configure automated backup and test restore
  • Deploy Wazuh SIEM — ingest and analyze logs
  • Capture and analyze packets in Wireshark (HTTP/DNS/FTP)
  • Image a disk and verify hash integrity
  • Conduct a full pentest cycle on Metasploitable 2
  • Automate log parsing with a Python script
  • Configure WPA3 and detect a rogue AP with Kismet
  • Verify SPF/DKIM/DMARC records with MXToolbox
  • Test web app vulnerabilities in OWASP WebGoat
  • Implement a Content Security Policy in nginx
  • Build a risk register spreadsheet
  • Map controls to NIST CSF categories
  • Perform a GDPR gap assessment
  • Complete a vendor risk questionnaire (CAIQ-Lite)
  • Generate an SBOM with Syft for a Docker image
[WHY SECTRACK]

Built for serious learners — not for the marketing department.

Most CompTIA Security+ prep tools fall into two buckets. Practice-question dumps that hammer you with multiple choice questions without context. Or bloated LMS platforms with autoplay videos, gamification badges, and progress trackers that don't survive past your first practice exam.

SecTrack is different. It's a single, dense dashboard built around the actual shape of the SY0-701 exam objectives. Every feature ties back to one of the five exam domains. Every lab has commands you can run today. Every practice result you log feeds the domain-weakness analytics so you know which domain to study next.

No autoplay. No achievement badges. No streak counters. Just the curriculum, the labs, your notes, your commands, your practice scores — and a clean status bar telling you how many weeks you have left.

Ready to start studying?

Sign in with Google or GitHub in 10 seconds. Your progress, notes, and practice scores are private to your account.

Free · No credit card · No mailing list