CAISP
Certified AI Security Professional
Created per CertMap methodology · Updated 1 June 2026 · About the editorial team →
▾ Jump to …4 sections
Overview
What is CAISP?
CAISP from Practical DevSecOps is a hands-on certification for AI security across the full lifecycle, from threat modeling through LLM vulnerabilities to pipeline and supply chain hardening. The exam is practical: five challenges in six hours plus 24 hours for the report. It covers the OWASP LLM Top 10, MITRE ATLAS, STRIDE threat modeling, model signing and SBOMs, as well as the governance frameworks NIST AI RMF, ISO/IEC 42001, and the EU AI Act. Strength: a real practical exam instead of multiple choice, and a broad, current curriculum. Limitation: the provider is considerably smaller than GIAC or ISACA, so market recognition is still a niche. The certification is a lifetime credential with no recertification, which weakens currency assurance.
Suitable for
Quick facts
Key details
Cost, prerequisites, exam & renewal
Prerequisites
No formal prerequisites. Basic knowledge of Linux commands is expected, familiarity with a scripting language such as Python, Go, or Ruby is helpful but not required.
Exam format
Practical online exam: five task-based challenges in six hours, followed by 24 hours for the report and submission. Taken from home or office. 60 days of browser-based lab access and 3 years of video access are included in the price.
Renewal & maintenance
Lifetime credential. No recertification, no annual fees, no CPE requirement.
Classification
CertMap score and matching roles
Rating
Matching NICE roles
Mapping from NIST NICE Framework SP 800-181, status 2025. NIST source ↗
More certifications
More certifications
This page follows CertMap methodology: editorial content is curated by hand. Score, costs and NICE mapping are aggregated from official provider documents. Score methodology → · TCO methodology →
Transparency: CertMap is operated by Daniel Thomas Heessel, who is also managing director of Threat‑Informed, a company specialising in Threat‑Informed Defense. CertMap currently receives no commissions from certification providers, no affiliate links, no sponsored placements. Podcast and interview guests are not paid for appearances and receive no affiliate commissions.
From the knowledge base
View all articles →Nobody is an AI security expert yet.
Which path fits your background, and the certifications that actually count. Three ways into a field where nobody has a ten-year head start.
About the CertMap editorial team
CertMap is an independent platform for comparing cybersecurity certifications, built on data-journalism standards that combine editorial curation with mechanical aggregation.
Certification vs. Certificate: What's the Difference?
Personnel certification per ISO/IEC 17024 versus a training certificate. Why the distinction matters.