SecurityX is an advanced cybersecurity certification for security architects and senior security engineers. It proves you have the skills to design, build, and implement secure solutions across complex environments. You’ll also show you can support a resilient enterprise while addressing governance, risk, and compliance needs.
Skills Learned
- Design, implement, and integrate secure solutions across complex environments to support a resilient enterprise in security architecture and engineering.
- Use automation, monitoring, detection, and incident response to proactively support ongoing security operations.
- Apply security practices to cloud, on-premises, and hybrid environments to ensure enterprise-wide protection.
- Utilize cryptographic technologies and techniques while evaluating the impact of emerging trends, such as artificial intelligence, on information security.
- Implement governance, compliance, risk management, and threat modeling strategies across the enterprise.
- Validate advanced, hands-on skills in security architecture and senior security engineering within live environments.
Exam Details
- Exam version: V5
- Exam series code: CAS-005
- Launch date: December 17, 2024
- Number of questions: maximum of 90, a mix of multiple-choice and performance-based questions
- Retirement: usually three years after launch (estimated 2027)
- Duration: maximum of 165 minutes
- Passing score: pass/fail only; no scaled score
- Languages: English, with other languages to be determined
- Recommended experience: minimum of 10 years of general hands-on IT experience, including 5 years of hands-on security, with Network+, Security+, CySA+, Cloud+, and PenTest+ or equivalent knowledge
- NICE and DoD 8140 work roles: security architect, systems requirements planner, security control assessor, research and development specialist, and more
Career Path

Who Should Attend
Schedule Dates
Course Content
- Security program documentation: policies, procedures, standards, and guidelines.
- Program management: training (phishing, security, privacy), communication, reporting, and RACI matrix.
- Frameworks: COBIT, ITIL, etc.
- Configuration management: asset life cycle, CMDB, and inventory.
- GRC tools: mapping, automation, and compliance tracking.
- Data governance: production, development, testing, and QA.
- Risk management: impact analysis, risk assessment (quantitative vs. qualitative), third-party risk, confidentiality, integrity, and availability.
- Threat modeling: actor characteristics, attack patterns, and frameworks (ATT&CK, CAPEC, STRIDE).
- Attack surface: architecture reviews, data flows, and trust boundaries.
- Compliance strategies: industry-specific standards (PCI DSS, ISO/IEC 27000).
- Security frameworks: NIST, CSF, CSA, and others.
FAQs
CompTIA SecurityX, formerly known as CASP+, is a globally recognized, hands-on, performance-based certification for advanced cybersecurity practitioners. It validates skills in security architecture, engineering, automation, monitoring, and incident response across complex environments. The name change emphasizes its position as an advanced, or “Xpert,” level certification in the CompTIA portfolio.
Flexible Training Options to Meet Your Needs
We know the importance of flexibility in the success of learning and professional development. This is the reason CounselTrain provides a variety of delivery options for all IT training offered in the UAE to ensure access and convenience for each learner.
Online Instructor-Led Training
Learn from the comfort of your workplace or at home through live virtual sessions led by expert trainers.
