Certified Information Systems Security Professional (CISSP) Exam Guide
At a glance
- Time limit
- 3h
- Passing score
- 700/1000
- Exam fee
- $749
- Governing body
- ISC2
Quick answers
How much does the CISSP cost?
The CISSP exam fee is $749.
What is the passing score for the CISSP?
The passing score for the CISSP is 700/1000.
The Certified Information Systems Security Professional (CISSP) is a globally recognized credential for experienced cybersecurity professionals. It validates expertise across eight domains of information security and is ideal for those seeking senior roles in security architecture, governance, or compliance. The credential demonstrates commitment to ethical practices and deep technical knowledge of security principles.
Overview
The CISSP exam covers eight distinct domains: Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management, Security Assessment and Testing, Security Operations, and Software Development Security. Each domain represents a critical area of security practice, from policy and governance to technical implementation and incident response.
Cost and registration
The standard CISSP examination registration fee is U.S. $749. This covers the computerized adaptive testing experience at a Pearson VUE test center. Additional fees apply for cancellations ($100) and rescheduling ($50) if you need to modify your exam appointment.
Exam format
The CISSP exam uses Computerized Adaptive Testing (CAT) and contains 100 to 150 questions. The passing score is 700 out of 1000 points. The adaptive format adjusts question difficulty based on your responses, allowing the exam to efficiently assess your competency level across the eight domains.
Verified facts about the CISSP
29 statements, each bound to the official document it was taken from. The source link beside every line opens that document.
Requirements and rules
- Associate timeframe
- an Associate of ISC2 has 6 years to earn the five years of required experience
- ISC2
- Experience domains
- experience in two or more of the eight domains of the current CISSP Exam Outline
- ISC2
- Experience waiver
- a degree or approved credential may satisfy 1 year of the required experience years
- ISC2
Fees
Numbers
What is tested
- Domains covered
- Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management, Security Assessment and Testing, Security Operations, and Software Development Security
- ISC2
How hard is the CISSP?
There is no verified current CISSP pass-rate figure in the official sources reviewed for this guide. An unsourced percentage, forum poll or prep provider's selected customer results should not be presented as the exam-wide rate. If a new report is published, check its date, sample and treatment of repeat attempts before comparing it.
Use the published requirements as your starting point
The exam owner's documentation and the linked references support the following preparation constraints. Read each in its own unit; a passing standard, content weight and experience requirement answer different questions.
| Published requirement or blueprint detail |
|---|
| contains 100 to 150 questions |
| the passing score is 700 out of 1000 points |
| The CISSP exam is organized into 8 domains |
| a minimum of 5 years cumulative, full-time work experience |
| experience in two or more of the eight domains of the current CISSP Exam Outline |
| an Associate of ISC2 has 6 years to earn the five years of required experience |
The 700/1,000 passing standard is not an official 70% cohort pass rate. The adaptive exam can deliver different question counts, so its length alone is not a reliable result indicator. Exam success and meeting the certification experience requirement are separate matters.
What makes CISSP practice useful?
- For a scenario with several technically sound answers, identify the business objective, risk owner and appropriate decision sequence.
- Review an unfamiliar domain separately from the areas covered by your day job.
- Explain why a plausible control is inappropriate for the stated scope, authority or stage of the security process.
For each missed question, keep an error log with the topic, the assumption you made and why the closest alternative fails. Then answer a fresh question on the same concept. Repeating a familiar bank can measure answer memory rather than transfer to a new scenario.
This is a suggested diagnostic method, not a validated passing-probability model. If accuracy is weak without a timer, start with the CISSP study guide. If your main problem is recall, use the cheat sheet alongside explanation review. Use the practice link on this page for questions, and separate content review from an eligibility or booking issue.
Ways to prepare for the CISSP
Each of these is a side-by-side on what the provider does better than we do, what it charges today, and where the free path here is enough.
Frequently asked questions
How much does the CISSP exam cost, and what are the reschedule and cancellation fees?
The standard CISSP examination registration fee is U.S. $749. If you need to move your appointment, ISC2 charges a rescheduling fee of U.S. $50, and canceling an appointment carries a cancellation fee of U.S. $100. Because rescheduling is far cheaper than canceling, it's generally worth moving your date rather than canceling outright if your plans change.
What score do I need to pass the CISSP, and how is the exam delivered?
You need a scaled score of 700 out of 1000 points to pass. The English-language exam uses Computerized Adaptive Testing (CAT) and contains 100 to 150 questions, meaning the number of items you see depends on how you're performing as you go. Because it's adaptive, the passing bar is fixed at 700 while the exact set of questions is tailored to each candidate, so you can't count on a set number of items in advance.
What work experience do I need to become a CISSP, and what if I don't have it yet?
You need a minimum of 5 years of cumulative, full-time paid work experience in two or more of the eight domains of the current CISSP Exam Outline. A relevant degree or approved credential may satisfy 1 year of that requirement, reducing it to four years. If you pass the exam but don't yet have the experience, you can become an Associate of ISC2, which gives you 6 years to earn the five years of required experience — a practical path if you're early in your security career.
How many domains does the CISSP cover, and which ones carry the most weight?
The CISSP exam is organized into 8 domains: Security and Risk Management, Asset Security, Security Architecture and Engineering, Communication and Network Security, Identity and Access Management, Security Assessment and Testing, Security Operations, and Software Development Security. The domains are not weighted equally — Security and Risk Management is the largest at 16%, followed by a cluster at 13% each (Security Architecture and Engineering, Communication and Network Security, Identity and Access Management, and Security Operations), Security Assessment and Testing at 12%, and Asset Security and Software Development Security at 10% each. Because Domain 1 alone is 16% of the exam, prioritizing your study time toward the higher-weighted domains can improve your odds of hitting the passing score.
Is there an official current CISSP pass rate?
The official sources reviewed for this guide did not provide a verified current exam-wide rate. Check the date, population and source of any percentage quoted elsewhere.
How should I judge my CISSP readiness?
Use unfamiliar practice questions, review the reasoning behind errors, and check pacing and coverage against the official outline. No practice score or historical group statistic guarantees a pass.
Which published details should I use when preparing?
contains 100 to 150 questions. the passing score is 700 out of 1000 points. Confirm the applicable outline for your appointment.
Sources
- 1.CISSP Certification Exam Outline — ISC2 (accessed Jul 18, 2026)
- 2.ISC2 Exam Pricing — ISC2 (accessed Jul 18, 2026)
- 3.CISSP Experience Requirements — ISC2 (accessed Jul 18, 2026)
- 4.Register for an ISC2 Exam — ISC2 (accessed Jul 18, 2026)
- 5.CISSP Certification Overview — ISC2 (accessed Jul 18, 2026)
Official sources
Primary documents used to verify the exam details shown on this page.
- CISSP Certification Exam OutlineISC2isc2.org
- Occupational Employment and Wage Statistics, May 2025 — Information Security Analysts (SOC 15-1212)U.S. Bureau of Labor Statisticsbls.goveffective May 31, 2025
- CISSP Experience RequirementsISC2isc2.org
- ISC2 Exam PricingISC2isc2.org
- CISSP Certification OverviewISC2isc2.org
- Register for an ISC2 ExamISC2isc2.org
- CISM exam content outlineISACAisaca.org
- CISM certification and experience requirementsISACAisaca.org
- CISM examination and feesISACAisaca.org
Last verified against the official exam content outline: