CompTIA Cybersecurity Analyst+ (CySA+) Exam Guide

By Vincent Ruan, EA, CFP®Published July 21, 2026

At a glance

Questions
85
Time limit
2h 45m
Passing score
750 (on a scale of 100-900)
Governing body
CompTIA

CompTIA Cybersecurity Analyst+ (CySA+) validates your ability to detect, analyze, and respond to cybersecurity threats in modern security environments. Designed for professionals in security analyst roles, this certification demonstrates hands-on expertise in threat detection and incident response—essential skills in today's evolving threat landscape.

The CySA+ exam assesses core cybersecurity competencies across threat analysis, vulnerability management, and incident response. You'll work with real-world security scenarios using a mix of multiple-choice and performance-based questions that test both conceptual knowledge and practical problem-solving abilities.

Exam fees vary by region and testing provider. Contact Pearson VUE directly or check CompTIA's official website for current pricing in your location. Your fee covers one attempt at the CS0-003 exam.

The CySA+ exam contains a maximum of 85 questions (multiple-choice and performance-based) and lasts 165 minutes. You'll need to score 750 on a scale of 100–900 to pass. The exam is available at physical test centers or through online proctored delivery (OnVUE) via Pearson VUE.

Frequently asked questions

How many questions are on the CySA+ (CS0-003) exam, and how long do I have?

The CS0-003 exam contains a maximum of 85 questions, and you are given 165 minutes to complete it. The questions are a mix of multiple-choice and performance-based questions (PBQs), so with roughly 85 items in 165 minutes you have just under two minutes per question on average — but plan to spend extra time on the hands-on PBQs, which are more involved than standard multiple-choice items.

What score do I need to pass the CySA+ exam?

You need a score of 750 on a scale of 100–900 to pass. Because the scale does not start at zero and the questions are a mix of multiple-choice and performance-based items, 750 is a scaled score rather than a simple percentage of questions correct — so you cannot directly translate it into "answer X out of 85 questions right." Focus on demonstrating competence across all domains rather than targeting a raw percentage.

What topics does the CySA+ exam cover, and where should I focus my study?

CySA+ (CS0-003) is organized into four domains: Security Operations (33%), Vulnerability Management (30%), Incident Response Management (20%), and Reporting and Communication (17%). Since Security Operations and Vulnerability Management together account for 63% of the exam, they should get the largest share of your study time, while still preparing thoroughly for incident response and reporting. Overall, the certification validates your ability to detect, analyze, and respond to cybersecurity threats in today's security environments.

Where do I take the CySA+ exam, and how do I keep the certification current after I pass?

CySA+ is delivered through Pearson VUE, the official test delivery provider for CompTIA exams, and you can choose to test either at a physical test center or through online proctored delivery (OnVUE) — so you can sit the exam from a testing center or from home depending on your preference. Once you pass, the certification is valid for three years from the certification date, and you can renew it by earning Continuing Education Units (CEUs) without retaking the exam, which lets you stay certified by keeping your skills current rather than re-sitting the test.