› Certifications · compare
Compare certifications
Pick up to 3 certifications and compare them side-by-side on cost, exam format, recertification, salary signal, quality, and domain coverage.
ISACA · professional
CISACertified Information Systems Auditor
IS audit, governance, control testing, and assurance.
Official pageISACA · professional
CRISCCertified in Risk and Information Systems Control
Enterprise risk identification, assessment, and response + IT controls.
Official pageComparing
ISACACISA
ISACACRISC
› Cost
Exam fee
CISA$760
CRISC$760
Exam fee
$760
$760
Annual maintenance fee
CISA$45/yr
CRISC$45/yr
Annual maintenance fee
$45/yr
$45/yr
3-year cost of ownership
CISA$895
CRISC$895
3-year cost of ownership
$895
$895
› Exam mechanics
Pass mark
CISA450/800 (scaled)
CRISC450/800 (scaled)
Pass mark
450/800 (scaled)
450/800 (scaled)
Retake policy
CISA$575 fee · 30d wait · 4/yr cap
CRISC$575 fee · 30d wait · 4/yr cap
Retake policy
$575 fee · 30d wait · 4/yr cap
$575 fee · 30d wait · 4/yr cap
Study time
CISA120–250 hrs
CRISC100–200 hrs
Study time
120–250 hrs
100–200 hrs
Validity
CISA3 yrs
CRISC3 yrs
Validity
3 yrs
3 yrs
CPE / yr
CISA40 CPEs
CRISC40 CPEs
CPE / yr
40 CPEs
40 CPEs
Delivery
CISAtest center
CRISCtest center
Delivery
test center
test center
› Salary signal (US base)
Range
CISA$100K – $150K
CRISC$115K – $165K
Range
$100K – $150K
$115K – $165K
Median
CISA$122,000
CRISC$135,000
Median
$122,000
$135,000
Premium %
CISA+9%
CRISC+9%
Premium %
+9%
+9%
Role context
CISAIT Auditor / SOX auditor / IS audit manager, US, 5+ years.
CRISCIT risk analyst / IT risk manager, US, 5+ years.
Role context
IT Auditor / SOX auditor / IS audit manager, US, 5+ years.
IT risk analyst / IT risk manager, US, 5+ years.
› Quality (4-axis rubric · 0–10)
Schema quality
CISA9.0
CRISC8.5
Schema quality
9.0
8.5
Practice evidence
CISA2.0
CRISC1.0
Practice evidence
2.0
1.0
Maintenance
CISA8.5
CRISC7.5
Maintenance
8.5
7.5
Market recognition
CISA9.0
CRISC7.0
Market recognition
9.0
7.0
Average
CISA7.1
CRISC6.0
Average
7.1
6.0
› Recognition & lifecycle
Recognition
CISAGlobal · US · EU · UK · DACH
CRISCGlobal · US · EU · UK · DACH
Recognition
Global · US · EU · UK · DACH
Global · US · EU · UK · DACH
ISO 17024 accredited
CISA✓
CRISC✓
ISO 17024 accredited
✓
✓
DoD 8140 baseline
CISA✓
CRISC—
DoD 8140 baseline
✓
—
Holders worldwide
CISA165,000
CRISC30,000
Holders worldwide
165,000
30,000
Current version
CISA2024 job-practice analysis (2024-06)
CRISC2021 job-practice analysis (2021-08)
Current version
2024 job-practice analysis (2024-06)
2021 job-practice analysis (2021-08)
› Domain coverage
A1Governance, Risk & Compliance
CISA● core
CRISC● core
A1Governance, Risk & Compliance
● core
● core
A12Data Security, Privacy & Protection
CISA○ touched
CRISC·
A12Data Security, Privacy & Protection
○ touched
·
A13Supply Chain Security
CISA○ touched
CRISC○ touched
A13Supply Chain Security
○ touched
○ touched
A18Security Leadership
CISA○ touched
CRISC● core
A18Security Leadership
○ touched
● core
C7AI Governance & Risk
CISA·
CRISC○ touched
C7AI Governance & Risk
·
○ touched
Browse the full catalog or open any one of these on its detail page for full study materials, peer comparisons, and lifecycle notes.