CISA is ISACA's globally recognized certification for professionals who audit, monitor, and assess an organization's information systems, controls, and business technology.
Fees, application fee, and domains verified 2026-08-06 against ISACA. ISACA uses a common exam format across its certifications (150 questions, 4 hours, 450 on a 200 to 800 scale). Confirm the current CISA experience requirement and CPE policy at isaca.org before you register.
CISA certifies that you can plan and lead an audit of an organization's information systems: the process, the governance, the controls, and the evidence that any of it is working. It is the long-standing standard for IS audit and assurance.
The credential is widely required for IT audit roles and is recognized across financial services, government, healthcare, and consulting. It pairs naturally with risk and security credentials such as CRISC and CISM.
Planning and conducting IS audits in line with standards, gathering evidence, and reporting results.
Evaluating IT governance, strategy, structures, and how IT supports the organization's objectives.
Assessing how systems are acquired, built, tested, migrated, and implemented.
Reviewing IT operations, service management, continuity, and resilience.
Assessing the security policies, standards, and controls that protect information assets.
CISA, Certified Information Systems Auditor, is an ISACA certification for professionals who audit, monitor, and assess information systems, IT governance, and controls. It is a long-standing standard for IS audit and assurance.
CISA covers five domains: Information Systems Auditing Process; Governance and Management of IT; Information Systems Acquisition, Development and Implementation; Information Systems Operations and Business Resilience; and Protection of Information Assets.
The exam fee is $575 for ISACA members and $760 for non-members, plus a one-time $50 certification application fee after you pass, as listed by ISACA.
Yes. ISACA requires demonstrated work experience in information systems auditing, control, or security to be certified. Confirm the current requirement and any waivers on the ISACA CISA page.
Study ISACA's official CISA exam content outline and review manual, and use reputable published study materials. Avoid braindump sites; they violate exam rules and are often inaccurate.