› Certifications · compare

Compare certifications

Pick up to 3 certifications and compare them side-by-side on cost, exam format, recertification, salary signal, quality, and domain coverage.

ISC2 · expert
CISSP
Certified Information Systems Security Professional

Breadth across security engineering, architecture, operations, and governance at senior-IC / manager level. The default senior-generalist signal.

Official page
ISACA · leadership
CISM
Certified Information Security Manager

Security program management, risk, governance, and incident governance. The manager / CISO-track signal.

Official page

Cost

Exam fee
CISSP$749
CISM$760
Annual maintenance fee
CISSP$135/yr
CISM$45/yr
3-year cost of ownership
CISSP$1,154
CISM$895

Exam mechanics

Pass mark
CISSP700/1000 (CAT-derived)
CISM450/800 (scaled)
Retake policy
CISSP$749 fee · 30d wait · 4/yr cap
CISM$575 fee · 30d wait · 4/yr cap
Study time
CISSP150–300 hrs
CISM100–200 hrs
Validity
CISSP3 yrs
CISM3 yrs
CPE / yr
CISSP40 CPEs
CISM40 CPEs
Delivery
CISSPtest center
CISMtest center

Salary signal (US base)

Range
CISSP$130K – $200K
CISM$130K – $190K
Median
CISSP$155,000
CISM$155,000
Premium %
CISSP+12%
CISM+11%
Role context
CISSPSenior security engineer / architect, US, 5+ years experience.
CISMInformation security manager / director, US, 5+ years.

Quality (4-axis rubric · 0–10)

Schema quality
CISSP9.0
CISM9.0
Practice evidence
CISSP1.5
CISM1.0
Maintenance
CISSP8.0
CISM8.5
Market recognition
CISSP9.5
CISM9.0
Average
CISSP7.0
CISM6.9

Recognition & lifecycle

Recognition
CISSPGlobal · US · EU · UK · DACH
CISMGlobal · US · EU · UK · DACH
ISO 17024 accredited
CISSP
CISM
DoD 8140 baseline
CISSP
CISM
Holders worldwide
CISSP190,000
CISM70,000
Current version
CISSP2024 CBK refresh (2024-04)
CISM2022 job-practice analysis (2022-06)

Domain coverage

A1Governance, Risk & Compliance
CISSP● core
CISM● core
A10Security Operations
CISSP● core
CISM·
A11Detection Engineering & Threat Hunting
CISSP● core
CISM⚠ gap
A12Data Security, Privacy & Protection
CISSP● core
CISM○ touched
A13Supply Chain Security
CISSP○ touched
CISM○ touched
A14OT/ICS Security
CISSP⚠ gap
CISM·
A15Cryptography
CISSP● core
CISM·
A18Security Leadership
CISSP○ touched
CISM● core
A2Network Security
CISSP● core
CISM·
A21Malware Analysis & Reverse Engineering
CISSP⚠ gap
CISM·
A25Security Architecture & Engineering
CISSP● core
CISM○ touched
A3Zero Trust Architecture
CISSP● core
CISM·
A4Application Security
CISSP● core
CISM⚠ gap
A5Cloud Security
CISSP○ touched
CISM⚠ gap
A6Identity & Access Management
CISSP● core
CISM·
A7Incident Response & Forensics
CISSP○ touched
CISM● core
A9Penetration Testing & Red Teaming
CISSP○ touched
CISM⚠ gap
B1AI-Powered Threat Detection
CISSP⚠ gap
CISM⚠ gap
B2AI-Driven Security Automation
CISSP⚠ gap
CISM·
B3AI for Vulnerability Management
CISSP⚠ gap
CISM·
C1Adversarial Machine Learning
CISSP⚠ gap
CISM⚠ gap
C11Agentic AI Security
CISSP⚠ gap
CISM·
C2LLM-Specific Attacks
CISSP⚠ gap
CISM·
C5AI Red Teaming
CISSP⚠ gap
CISM·
D2Post-Quantum Cryptography
CISSP⚠ gap
CISM·

Browse the full catalog or open any one of these on its detail page for full study materials, peer comparisons, and lifecycle notes.