Certified Information Systems Auditor (CISA)
Credential: Certified Information Systems Auditor (CISA)
Credentialing Agency: ISACA
Renewal Period: 3 years
The Certified Information Security Auditor (CISA) is an advanced certification for individuals who work in the information systems audit, control and security industry. The CISA certification covers topics such as the information systems audit process, IT governance, systems and infrastructure lifecycle management, IT service delivery and support, protection of Information Assets, and business continuity and disaster recovery. This certification is targeted toward experienced information security auditors and those who have information security management responsibilities. Candidates are required to have a minimum of five years of professional information systems audit, control, assurance or security work experience.
More information can be found on the certifying agency's website.
Certified Information Systems Auditor (CISA)
MINIMUM REQUIREMENTS
Eligibility Requirements (View Details)
- Credential Prerequisite
- Experience: 5 years
- Education
- Training
- Membership
- Other
- Fee
Note: This credential may have multiple options for becoming eligible. Listed are the minimum requirements based on the minimum degree required. To view other options, see the Eligibility tab.
Exam Requirements (View Details)
- Exam
- Written Exam
- Oral Exam
- Practical Exam
- Performance Assessment
RECERTIFICATION SUMMARY
Renewal Period: 3 years
AGENCY CONTACT INFORMATION
ISACA
3701 Algonquin Road
Suite 1010
Rolling Meadows, IL 60008
Phone: 847-660-5505
Fax: (847) 253-1443
Contact Page
Education and/or Experience REQUIREMENTS
Submit an application with verified evidence of a minimum of five years of professional information systems auditing, control, or security work experience. Substitution and waivers of such experience, to a maximum of three years, may be obtained as follows:
- A maximum of one year of information systems OR one year of non-IS audit experience can be substituted for one year of experience;
- 60 to 120 completed university semester credit hours (the equivalent of a two-year or four-year degree), not limited by the 10-year preceding restriction, can be substituted for one or two years, respectively, of experience;
- A bachelor's or master's degree from a university that enforces the ISACA sponsored Model Curricula can be substituted for one year of experience. To view a list of these schools, please visit the ISACA website. This option cannot be used if three years of experience substitution and educational waiver have already been claimed:
- A master's degree in information security or information technology from an accredited university can be substituted for 1 year of experience.
- Two years as a full-time university instructor in a related field (e.g., computer science, accounting or information systems auditing) can be substituted for one year of experience.
All experience must be verified independently with employers and have been gained within the 10-year period preceding the application date or within five years after the date of passing the CISA exam. Applications for certification must also be submitted no more than five years after the date of passing the CISA exam.
Other REQUIREMENTS
The Certified Information Systems Auditor (CISA) credential has the following other requirements:
- Adhere to the ISACA Code of Professional Ethics
Written Exam
- The Process of Auditing Information Systems (14%)
- Governance & Management of IT (14%)
- Information Systems Acquisition, Development & Implementation (19%)
- Information Systems Operations, Maintenance & Support (23%)
- Protection of Information Assets (30%)
Exam Preparation Resources
There are a number of resources available to help you prepare for the Certified Information Systems Auditor (CISA) examination:
- Best Sources
- General References
Testing Information
Testing for this credential is handled by PSI. The test centers are located in the U.S.
To find out more, use the following links on the PSI website:
For more information on the ISACA testing process, visit the agency website.
RECERTIFICATION
Certified Information Systems Auditor (CISA)
Renewal Period: 3 years