CISM - Certified Information Security Manager


CISM is ISACA's next generation credential and is specifically geared toward experienced information security managers and those who have information security management responsibilities. CISM is designed to provide executive management with assurance that those earning the designation have the required knowledge and ability to provide effective security management and consulting. It is business-oriented and focuses on information risk management while addressing management, design and technical security issues at a conceptual level. While its central focus is security management, all those in the IS profession with security experience will certainly find value in CISM.

To earn the CISM designation, candidates will be required to:

1.) Adhere to a code of professional ethics

2.) Submit verified evidence of a minimum number of years of information security
work experience, with a minimum number in the appropriate job analysis domains.

3.) Pass the CISM exam
The CISM Review Course

The Chicago Chapter of ISACA invites you to take part in a CISM Review Course. Click here to learn more!

Experience Requirement

CISM will encompass the following areas:
Information Security Governance
Risk Management
Information Security Programme Management
Information Security Management
Response Management


CISM Exam

The CISM exam (English only) will be offered and is intended to be available in every worldwide location in which the CISA exam is conducted, which consists of 200 test sites in more than 75 countries. Candidates may take the CISM examination prior to meeting the experience requirements. This practice is acceptable and encouraged, although the credential will not be awarded until all requirements are met.

For more information on CISM, please contact Terry Trsar, Chief Professional Development Officer, at ttrsar@isaca.org.