CIPT
Certified Information Privacy Technologist
Privacy engineering, privacy-by-design in products and platforms.
› Quality score
Four-axis SecProve rubric, each 0–10. SecProve editorial assessment — each axis carries a written justification so you can push back on any single call without dismissing the whole score.
› Market signals
public, citable inputs to the recognition score› Built for these roles
› Exam format
90 multiple-choice questions over 2.5 hours, English plus several other languages. Online proctored via IAPP/Pearson.
30-day wait between attempts.
› Recertification
20 CPE credits over two years (avg 10/yr) plus the $250/yr IAPP membership fee that bundles certification renewal.
› 3-year cost of ownership
Excludes study materials, training, retake risk, and lost-wage opportunity. Use as a floor estimate.
› NICE Framework work roles
The NIST NICE work-role IDs this cert maps to. NICCS lookup.
› Core domains covered
The 2 domains this cert is centrally about. Passing the exam demonstrates working knowledge of each.
› Also touched
Present in the blueprint but not the primary focus — you’ll be introduced but shouldn’t expect depth.
AWS/Azure/GCP security controls, IAM policies, CSPM, container security, shared responsibility model.
Training data poisoning, PII leakage from models, differential privacy, federated learning security.
Symmetric/asymmetric, PKI, TLS/SSL, hashing, post-quantum cryptography, key management.
› Prerequisites
Engineering or product development background recommended. Many candidates come from software, data engineering, or privacy-law backgrounds.
- Privacy-by-design principles
- Data-protection controls in software
- Common privacy anti-patterns in product design
› Progression
requiredrecommendedWhere this cert fits in the typical learning path. Required edges are vendor-gated; recommended edges reflect de facto industry progression.
No vendor-gated prereqs.
No de facto priors typically expected.
No certs require this one.
› Study materials
Curated starting points. Not exhaustive — vet each against your learning style and the current exam version.
- IAPP CIPT Practice Exam
› Version & lifecycle
› Salary signal
Privacy engineer / technical privacy lead, US, 3–7 years.
IAPP Privacy Salary Survey + Glassdoor 'Privacy Engineer' aggregations · 2024 · US base only · p25–p75 range
› How it compares
CIPT is privacy-engineering / technical; CIPM is privacy-program management.
↔ Compare side-by-sideCIPT is the technical-implementation cert; CIPP/E is the regulatory-knowledge cert. Often paired.
↔ Compare side-by-side› Careers that commonly pursue this cert
Build privacy into systems by design. Navigate GDPR, CCPA, and emerging AI privacy regulations.
See this cert’s domains highlighted on the interactive map, or compare it against the rest of the catalog.