› Certifications · compare
Compare certifications
Pick up to 3 certifications and compare them side-by-side on cost, exam format, recertification, salary signal, quality, and domain coverage.
ISACA · professional
CRISCCertified in Risk and Information Systems Control
Enterprise risk identification, assessment, and response + IT controls.
Official pageISACA · professional
CISACertified Information Systems Auditor
IS audit, governance, control testing, and assurance.
Official pageComparing
ISACACRISC
ISACACISA
› Cost
Exam fee
CRISC$760
CISA$760
Exam fee
$760
$760
Annual maintenance fee
CRISC$45/yr
CISA$45/yr
Annual maintenance fee
$45/yr
$45/yr
3-year cost of ownership
CRISC$895
CISA$895
3-year cost of ownership
$895
$895
› Exam mechanics
Pass mark
CRISC450/800 (scaled)
CISA450/800 (scaled)
Pass mark
450/800 (scaled)
450/800 (scaled)
Retake policy
CRISC$575 fee · 30d wait · 4/yr cap
CISA$575 fee · 30d wait · 4/yr cap
Retake policy
$575 fee · 30d wait · 4/yr cap
$575 fee · 30d wait · 4/yr cap
Study time
CRISC100–200 hrs
CISA120–250 hrs
Study time
100–200 hrs
120–250 hrs
Validity
CRISC3 yrs
CISA3 yrs
Validity
3 yrs
3 yrs
CPE / yr
CRISC40 CPEs
CISA40 CPEs
CPE / yr
40 CPEs
40 CPEs
Delivery
CRISCtest center
CISAtest center
Delivery
test center
test center
› Salary signal (US base)
Range
CRISC$115K – $165K
CISA$100K – $150K
Range
$115K – $165K
$100K – $150K
Median
CRISC$135,000
CISA$122,000
Median
$135,000
$122,000
Premium %
CRISC+9%
CISA+9%
Premium %
+9%
+9%
Role context
CRISCIT risk analyst / IT risk manager, US, 5+ years.
CISAIT Auditor / SOX auditor / IS audit manager, US, 5+ years.
Role context
IT risk analyst / IT risk manager, US, 5+ years.
IT Auditor / SOX auditor / IS audit manager, US, 5+ years.
› Quality (4-axis rubric · 0–10)
Schema quality
CRISC8.5
CISA9.0
Schema quality
8.5
9.0
Practice evidence
CRISC1.0
CISA2.0
Practice evidence
1.0
2.0
Maintenance
CRISC7.5
CISA8.5
Maintenance
7.5
8.5
Market recognition
CRISC7.0
CISA9.0
Market recognition
7.0
9.0
Average
CRISC6.0
CISA7.1
Average
6.0
7.1
› Recognition & lifecycle
Recognition
CRISCGlobal · US · EU · UK · DACH
CISAGlobal · US · EU · UK · DACH
Recognition
Global · US · EU · UK · DACH
Global · US · EU · UK · DACH
ISO 17024 accredited
CRISC✓
CISA✓
ISO 17024 accredited
✓
✓
DoD 8140 baseline
CRISC—
CISA✓
DoD 8140 baseline
—
✓
Holders worldwide
CRISC30,000
CISA165,000
Holders worldwide
30,000
165,000
Current version
CRISC2021 job-practice analysis (2021-08)
CISA2024 job-practice analysis (2024-06)
Current version
2021 job-practice analysis (2021-08)
2024 job-practice analysis (2024-06)
› Domain coverage
A1Governance, Risk & Compliance
CRISC● core
CISA● core
A1Governance, Risk & Compliance
● core
● core
A12Data Security, Privacy & Protection
CRISC·
CISA○ touched
A12Data Security, Privacy & Protection
·
○ touched
A13Supply Chain Security
CRISC○ touched
CISA○ touched
A13Supply Chain Security
○ touched
○ touched
A18Security Leadership
CRISC● core
CISA○ touched
A18Security Leadership
● core
○ touched
C7AI Governance & Risk
CRISC○ touched
CISA·
C7AI Governance & Risk
○ touched
·
Browse the full catalog or open any one of these on its detail page for full study materials, peer comparisons, and lifecycle notes.