CompTIA · FC0-U71
CompTIA Tech+ validates foundational IT knowledge and skills for individuals exploring a career in technology, covering core concepts in infrastructure, software, databases, and security. It is an entry-level, lifetime certification designed for those with no prior IT experience.
Questions
599
Duration
60 minutes
Passing Score
650/900
Difficulty
FoundationalLast Updated
Apr 2026
Use this FC0-U71 practice exam to prepare for CompTIA Tech+ IT Fundamentals (FC0-U71) with realistic questions, detailed explanations, and focused study modes. The practice bank includes 599 questions for CompTIA FC0-U71, so you can review the exam steadily instead of relying on one long cram session.
As you practice, pay extra attention to recurring topics such as IT Concepts and Terminology, Infrastructure, Applications and Software, Software Development Concepts, and Database Fundamentals. Start with short sessions to identify weak areas, then move into timed quizzes once your accuracy is consistent.
The explanations are especially useful when you want to connect exam wording to the responsibilities and scenarios described in the official certification guidance. Use the free preview first, then unlock the full question bank when you are ready to build a complete study routine.
CompTIA Tech+ (FC0-U71) is an entry-level, vendor-neutral certification that validates foundational IT knowledge and skills across six core domains: infrastructure, applications and software, software development concepts, data and database fundamentals, security, and tech concepts and terminology. Launched in July 2024 as the successor to CompTIA IT Fundamentals (ITF+), the updated exam incorporates modern topics such as artificial intelligence tools, cloud basics, and contemporary security practices, making it relevant to the current technology landscape. It is the only CompTIA certification designated as a lifetime credential — it does not expire and requires no continuing education for renewal.
The certification is designed for individuals at the very start of their technology journey. It covers computing basics including notational systems (binary, hexadecimal, octal), units of measure for storage and throughput, internal hardware components (CPU, RAM, SSD/NVMe, GPU), networking and wireless fundamentals, virtualization, operating systems, programming concepts, database structures, and security principles such as encryption and password best practices. Rather than testing rote memorization, the exam assesses the ability to apply these foundational concepts in practical contexts.
CompTIA Tech+ is intended for individuals with no prior formal IT experience who are exploring whether a technology career is the right path for them. Ideal candidates include high school and college students considering IT as a profession, career changers transitioning from non-technical fields, and non-IT professionals — such as those in marketing, business operations, or administration — who want to formalize and demonstrate a working understanding of technology used in their day-to-day roles.
The certification is also appropriate as a pre-requisite stepping stone before pursuing more advanced CompTIA credentials such as A+, Network+, or Security+. Individuals who already have hands-on PC experience or a basic technical background would likely benefit more from starting directly with the CompTIA A+ rather than Tech+.
CompTIA officially states that no prior experience is necessary to sit for the FC0-U71 exam, and there are no formal prerequisite certifications required. The exam is explicitly designed as a starting point for individuals with no IT background.
That said, candidates will benefit from basic comfort with everyday technology — such as using a smartphone, laptop, or web browser — before attempting the exam. Familiarity with common software applications and a general curiosity about how computers and networks function will make the study material more approachable. No programming experience or hardware troubleshooting background is expected.
The FC0-U71 exam consists of a maximum of 70 multiple-choice questions and must be completed within 60 minutes. All questions are multiple-choice format; unlike some other CompTIA exams, there are no performance-based or drag-and-drop question types on this version. The exam is available in English and Japanese and can be taken at a Pearson VUE testing center or via online proctoring.
Scoring is on a scale of 100 to 900, with a passing score of 650. Because Tech+ is a lifetime certification, there is no renewal requirement once passed — candidates do not need to retake or earn continuing education units to maintain the credential.
CompTIA Tech+ serves primarily as a career entry point and a stepping stone rather than a standalone professional credential. Holding the certification signals to employers that a candidate has a verified, baseline understanding of IT across hardware, software, networking, security, and data — making them a more competitive applicant for entry-level roles such as IT Support Technician, Help Desk Analyst, Desktop Support Specialist, and IT Assistant. For non-IT professionals, it formalizes digital literacy that is increasingly expected across roles in business operations, marketing, and administration.
According to Skillsoft's IT Skills & Salary Report, CompTIA-certified professionals earn up to 16% more than non-certified peers. While Tech+ itself is typically a prerequisite to further credentials rather than a terminal certification, it provides a clear pathway to the CompTIA A+, which is associated with help desk and support technician salaries in the $50,000–$60,000/year range in the United States. Candidates who continue along the CompTIA certification roadmap — progressing to Network+, Security+, or specialized credentials — can access significantly higher compensation bands exceeding $100,000 annually.
5 sample questions with answers and explanations. Start a practice session to test yourself across all 599 questions.
Preview — answers shown1. A Litware Corporation IT manager is conducting a mandatory security awareness training for all employees. During the session, an employee asks the presenter to clarify the difference between a computer virus and a worm, since both seem to cause similar damage. Which explanation correctly distinguishes these two types of malware? (Select one!)
Explanation
A worm is standalone malicious software that self-replicates and spreads across networks automatically by exploiting vulnerabilities in operating systems, open ports, or network services — it requires no host file and no user action to propagate. Historical examples include WannaCry and Conficker, which spread to hundreds of thousands of systems rapidly without any user involvement. A virus, by contrast, must attach itself to a legitimate host file such as an executable, script, or document. The virus activates and spreads only when a user executes the infected file — for example, by running an infected program or opening a malicious email attachment. Without that user-triggered execution, the virus remains dormant. Reversing these definitions misrepresents how each threat operates, which could lead to incorrect incident response decisions. The claim that both require users to open email attachments is incorrect — worms specifically bypass this requirement by exploiting network-level vulnerabilities autonomously. The description of malware that disguises itself as legitimate software to trick users into installing it describes a Trojan horse, which is a distinct malware category from both viruses and worms. Trojans do not self-replicate at all.
2. Northwind Traders is deploying IoT sensors across a large warehouse to monitor temperature in areas up to 1 kilometer apart with minimal power consumption. Sensors need to operate for years on battery power and transmit small data packets infrequently. Which IoT protocol is most suitable? (Select one!)
Explanation
LoRa is designed specifically for long-range (up to several kilometers), low-power IoT applications where devices send small amounts of data infrequently. It can achieve multi-year battery life and is ideal for large-area deployments like warehouses. Bluetooth Low Energy has a typical range of only 10-50 meters, which is insufficient for 1-kilometer distances. Zigbee has a range of 10-100 meters and requires mesh networking to extend range, adding complexity and increasing power consumption. Z-Wave has similar range limitations to Zigbee at approximately 30-100 meters and is primarily designed for home automation, not industrial warehouse deployments requiring long-range communication.
3. A records manager at Contoso is implementing a data governance program. The manager needs to ensure that customer data stored in data centers located in Germany and France is subject to European data protection laws, not U.S. law, regardless of where the company is headquartered. Which data governance concept directly addresses this requirement? (Select one!)
Explanation
Data sovereignty is the principle that data is subject to the laws and jurisdiction of the country in which it is physically stored or processed. When Contoso stores customer data in Germany and France, that data falls under EU law — specifically GDPR — regardless of where the company itself is headquartered. This is a critical consideration for multinational organizations choosing data center locations. Data classification involves labeling data by its sensitivity level (public, internal, confidential, restricted) to determine handling requirements, but it does not determine which country's laws apply. Data retention defines how long data must be kept before it can be deleted and relates to record-keeping policies rather than jurisdictional authority. Data stewardship refers to assigning responsibility for managing data quality and appropriate access, not for determining legal jurisdiction.
4. An organization is concerned about an AI system used to screen job applicants producing unfair results for certain demographic groups. After investigation, they find the training data overrepresented candidates from a specific geographic region and educational background. Which AI concern does this scenario BEST illustrate? (Select one!)
Explanation
AI bias occurs when an AI system produces systematically unfair or prejudiced outputs due to biased training data, flawed algorithm design, or unrepresentative data collection. In this scenario, training data that overrepresents candidates from a specific region and educational background causes the model to associate those characteristics with desirability, disadvantaging candidates from other backgrounds who may be equally or more qualified. The quality and representativeness of training data directly determines whether an AI model perpetuates or amplifies existing societal biases. AI hallucination refers to a model generating confident but factually incorrect information, not biased scoring patterns. Lack of explainability is a concern about transparency in understanding why a decision was made, but the root cause identified is biased data. Prompt injection is an attack technique where malicious inputs manipulate AI behavior, which is not what is described here.
5. A user at Adatum Corporation receives an email that appears to be from their company's CEO asking them to urgently wire $15,000 to a vendor account. The email includes the CEO's name, company logo, and a sense of urgency stating the transfer must happen within two hours. The user's email address and job title were found on the company website. Which type of attack does this scenario BEST describe? (Select one!)
Explanation
This scenario describes a whaling attack, which is a type of spear phishing that specifically impersonates high-level executives such as CEOs, CFOs, or board members to manipulate employees into taking harmful actions like wire transfers or disclosing sensitive information. The attacker researched the target by finding the employee's email and title on the company website, then crafted a personalized message impersonating the CEO. Phishing is a broad, untargeted mass email campaign sent to large groups without personalization. Smishing uses SMS text messages, not email. Vishing uses voice calls, not email. The defining characteristic of whaling is executive impersonation targeting employees — the attack flows from an impersonated senior figure downward to a subordinate, which precisely matches this scenario.
$7.99
One-time access to this exam