← Docs
Certs updated July 3, 2026

The CompTIA roadmap: A+ to Network+ to Security+, mapped honestly

A clear guide to navigating CompTIA certifications from beginner to security professional.


The CompTIA Roadmap: A+ to Network+ to Security+, Mapped Honestly

CompTIA certifications are vendor-neutral IT credentials that serve as a standard on-ramp for IT careers. They're recognized by HR and required for certain government and contractor roles, particularly the Security+ certification. These certifications test knowledge breadth rather than specific skills, opening doors to interviews and providing a foundation for further learning.

The Core Trio in Order

A+

  • Exams: Two exams
  • Content: Hardware troubleshooting, OS issues, basic IT concepts.
  • Target Audience: Zero-experience starters aiming for helpdesk roles. Skippable if you already have practical experience fixing computers.
  • Notes: The most commonly skipped certification of the trio.

Network+

  • Exam Code: N10-009
  • Content: Subnetting, protocols, troubleshooting, essential networking knowledge.
  • Target Audience: Ideal for network administrators and NOC roles. Maps directly to our networking documentation sections.
  • Notes: A sweet spot certification that provides enough theory to make other certifications easier.

Security+

  • Exam Code: SY0-701
  • Content: Security concepts, threats, basic cryptography, governance.
  • Target Audience: The highest ROI single certification. Required by the DoD and recognized widely in HR. A pivotal point for security careers.
  • Notes: Essential for government roles and a strong foundation for further security certifications.

Beyond the Core Trio

Linux+

  • Content: Linux administration skills (LPIC, RHCSA debate).
  • Target Audience: For those interested in server administration and automation.

Server+

  • Content: Comprehensive server management.
  • Target Audience: For those looking to manage servers across various environments.

Cloud+

  • Content: Cloud computing fundamentals (consider AWS or Azure certifications for more market pull).
  • Target Audience: For those interested in cloud services and infrastructure.

Security Ladder

  1. CySA+
    • Content: Blue team/analyst roles.
  2. PenTest+
    • Content: Red team/penetration testing (competed with OSCP, a more respected certification).
  3. CASP/SecurityX
    • Content: Architect-level security certifications.

Exam Mechanics

  • Cost: Approximately $370-$400 per exam attempt.
  • Expiry: Certifications expire after 3 years; renew via Continuing Education Units (CEUs) or passing a higher cert, which renews lower ones.
  • Question Types: Performance-based questions mixed with multiple-choice.

How to Study

  1. Resources:
    • Professor Messer: Free video tutorials, widely recognized as the community standard.
    • Practice Exams: Choose practice exams that explain answers (e.g., Jason Dion).
  2. Homelab Setup: Subnetting a real network, reading firewall logs, and breaking DNS are highly effective learning methods.

Timeline

  • Network+ in 4-8 weeks of evening study with some background knowledge.
  • Security+ similar timeline after completing Network+.

Voucher Note

  • Cost Savings: Never pay list price blindly; Comptia's own store runs sales, and student/edu pricing exists (Comptia Academic Marketplace). Exam + retake bundles cost less than one failed full-price attempt.
  • Affiliate/Coupon Options: To be added once our program applications land. Disclosure will accompany any links.

The resource stack most successful self-studiers use: Professor Messer's free video series and course notes for the content (A+, Network+, and Security+ are all covered), Jason Dion's practice exams for test readiness — his explanations of wrong answers are where the real learning happens — and CompTIA's own exam-objectives PDF as the checklist you grade yourself against. Add a homelab for the hands-on portions and that combination passes these exams reliably without a bootcamp.

Was this useful?

This doc is maintained by the humans who run BreadLab. Spotted an error? Tell us — we fix docs, not just typos.