SCAP
Security Content Automation Protocol
A suite of standards for automating vulnerability and configuration assessment.
SCAP is a set of interoperable specifications that let security tools automate vulnerability scanning, configuration checking, and compliance reporting in a consistent, machine readable way. It incorporates components such as CVE for known flaws, CCE for configuration items, and CVSS for severity scoring. By standardizing how findings are expressed, it allows products from different vendors to share results and supports continuous monitoring and benchmark validation against hardening baselines.
Looking SCAP up is step one. Getting tested on it is step two.
A free account opens all 4 Domain 1 objectives, 271 exam-style questions with a lesson and a lab on each, a placement check that skips what you already know, and a dated plan. No card.
Not affiliated with or endorsed by CompTIA.
