GRC Careers
Home › Certifications › CISA

CISA Certification

Certified Information Systems Auditor  ·  ISACA  ·  IS Audit & Assurance

CISA is ISACA's globally recognized certification for professionals who audit, monitor, and assess an organization's information systems, controls, and business technology.

Exam at a Glance

Domains
5 (below)
Exam Fee
$575 member / $760 non-member
Application Fee
$50 one-time
Format
Computer-based, multiple choice
Questions
150 (ISACA standard)
Duration
4 hours (ISACA standard)
Passing Score
450 on a 200 to 800 scale
Maintenance
ISACA CPE policy — see ISACA

Fees, application fee, and domains verified 2026-08-06 against ISACA. ISACA uses a common exam format across its certifications (150 questions, 4 hours, 450 on a 200 to 800 scale). Confirm the current CISA experience requirement and CPE policy at isaca.org before you register.

Overview

CISA certifies that you can plan and lead an audit of an organization's information systems: the process, the governance, the controls, and the evidence that any of it is working. It is the long-standing standard for IS audit and assurance.

The credential is widely required for IT audit roles and is recognized across financial services, government, healthcare, and consulting. It pairs naturally with risk and security credentials such as CRISC and CISM.

The Exam Domains

1

Domain 1 — Information Systems Auditing Process

Planning and conducting IS audits in line with standards, gathering evidence, and reporting results.

2

Domain 2 — Governance & Management of IT

Evaluating IT governance, strategy, structures, and how IT supports the organization's objectives.

3

Domain 3 — IS Acquisition, Development & Implementation

Assessing how systems are acquired, built, tested, migrated, and implemented.

4

Domain 4 — IS Operations & Business Resilience

Reviewing IT operations, service management, continuity, and resilience.

5

Domain 5 — Protection of Information Assets

Assessing the security policies, standards, and controls that protect information assets.

Who CISA Is For

Browse live GRC and audit jobs →Hand-reviewed governance, risk, compliance, and audit roles on GRC Careers
📘 Preparing for the exam? Review the official CISA exam content outline and requirements on the ISACA official page →

Related Certifications

Frequently Asked Questions

What is the CISA certification?

CISA, Certified Information Systems Auditor, is an ISACA certification for professionals who audit, monitor, and assess information systems, IT governance, and controls. It is a long-standing standard for IS audit and assurance.

What are the CISA domains?

CISA covers five domains: Information Systems Auditing Process; Governance and Management of IT; Information Systems Acquisition, Development and Implementation; Information Systems Operations and Business Resilience; and Protection of Information Assets.

How much does the CISA exam cost?

The exam fee is $575 for ISACA members and $760 for non-members, plus a one-time $50 certification application fee after you pass, as listed by ISACA.

Is there an experience requirement for CISA?

Yes. ISACA requires demonstrated work experience in information systems auditing, control, or security to be certified. Confirm the current requirement and any waivers on the ISACA CISA page.

How should I prepare for CISA?

Study ISACA's official CISA exam content outline and review manual, and use reputable published study materials. Avoid braindump sites; they violate exam rules and are often inaccurate.

Official Resources

CISA and ISACA are trademarks of ISACA. GRC Careers is not affiliated with, endorsed by, or accredited by ISACA. This page is an independent study aid and contains no real exam questions.

Educational reference only and not legal, compliance, or certification advice. © 2026 GRC Careers · AI-Governance-Jobs.com · From the GRC Careers network.