› Certifications · compare

Compare certifications

Pick up to 3 certifications and compare them side-by-side on cost, exam format, recertification, salary signal, quality, and domain coverage.

ISACA · leadership
CISM
Certified Information Security Manager

Security program management, risk, governance, and incident governance. The manager / CISO-track signal.

Official page
ISC2 · expert
CISSP
Certified Information Systems Security Professional

Breadth across security engineering, architecture, operations, and governance at senior-IC / manager level. The default senior-generalist signal.

Official page

Cost

Exam fee
CISM$760
CISSP$749
Annual maintenance fee
CISM$45/yr
CISSP$135/yr
3-year cost of ownership
CISM$895
CISSP$1,154

Exam mechanics

Pass mark
CISM450/800 (scaled)
CISSP700/1000 (CAT-derived)
Retake policy
CISM$575 fee · 30d wait · 4/yr cap
CISSP$749 fee · 30d wait · 4/yr cap
Study time
CISM100–200 hrs
CISSP150–300 hrs
Validity
CISM3 yrs
CISSP3 yrs
CPE / yr
CISM40 CPEs
CISSP40 CPEs
Delivery
CISMtest center
CISSPtest center

Salary signal (US base)

Range
CISM$130K – $190K
CISSP$130K – $200K
Median
CISM$155,000
CISSP$155,000
Premium %
CISM+11%
CISSP+12%
Role context
CISMInformation security manager / director, US, 5+ years.
CISSPSenior security engineer / architect, US, 5+ years experience.

Quality (4-axis rubric · 0–10)

Schema quality
CISM9.0
CISSP9.0
Practice evidence
CISM1.0
CISSP1.5
Maintenance
CISM8.5
CISSP8.0
Market recognition
CISM9.0
CISSP9.5
Average
CISM6.9
CISSP7.0

Recognition & lifecycle

Recognition
CISMGlobal · US · EU · UK · DACH
CISSPGlobal · US · EU · UK · DACH
ISO 17024 accredited
CISM
CISSP
DoD 8140 baseline
CISM
CISSP
Holders worldwide
CISM70,000
CISSP190,000
Current version
CISM2022 job-practice analysis (2022-06)
CISSP2024 CBK refresh (2024-04)

Domain coverage

A1Governance, Risk & Compliance
CISM● core
CISSP● core
A10Security Operations
CISM·
CISSP● core
A11Detection Engineering & Threat Hunting
CISM⚠ gap
CISSP● core
A12Data Security, Privacy & Protection
CISM○ touched
CISSP● core
A13Supply Chain Security
CISM○ touched
CISSP○ touched
A14OT/ICS Security
CISM·
CISSP⚠ gap
A15Cryptography
CISM·
CISSP● core
A18Security Leadership
CISM● core
CISSP○ touched
A2Network Security
CISM·
CISSP● core
A21Malware Analysis & Reverse Engineering
CISM·
CISSP⚠ gap
A25Security Architecture & Engineering
CISM○ touched
CISSP● core
A3Zero Trust Architecture
CISM·
CISSP● core
A4Application Security
CISM⚠ gap
CISSP● core
A5Cloud Security
CISM⚠ gap
CISSP○ touched
A6Identity & Access Management
CISM·
CISSP● core
A7Incident Response & Forensics
CISM● core
CISSP○ touched
A9Penetration Testing & Red Teaming
CISM⚠ gap
CISSP○ touched
B1AI-Powered Threat Detection
CISM⚠ gap
CISSP⚠ gap
B2AI-Driven Security Automation
CISM·
CISSP⚠ gap
B3AI for Vulnerability Management
CISM·
CISSP⚠ gap
C1Adversarial Machine Learning
CISM⚠ gap
CISSP⚠ gap
C11Agentic AI Security
CISM·
CISSP⚠ gap
C2LLM-Specific Attacks
CISM·
CISSP⚠ gap
C5AI Red Teaming
CISM·
CISSP⚠ gap
D2Post-Quantum Cryptography
CISM·
CISSP⚠ gap

Browse the full catalog or open any one of these on its detail page for full study materials, peer comparisons, and lifecycle notes.