Skip to content
CertMapCertMap

CCISOEC Council Certified Information Security Officer

EC-CouncilPersonnel certification (ISO 17024)Leadership

Created per CertMap methodology · Updated 12 May 2026 · About the editorial team → · Official page ↗

▾ Jump to …6 sections

What is CCISO?

The CCISO from EC-Council is a management credential for people who carry executive responsibility for information security, not proof of hands-on implementation. The exam consists of 150 multiple-choice questions over two and a half hours under proctored conditions and spans the five CCISO domains. Admission requires five years of experience in each of those five domains; after authorised EC-Council training, five years in three of the five domains suffice, submitted through the Exam Eligibility Application and confirmed by named verifiers. The credential is valid for three years and is renewed with 120 CPE credits per cycle.

Suitable for

Chief information security officers
Heads of information security
Security managers with budget and programme responsibility
Information security officers in government and defence environments
Risk and governance owners in security organisations

Quick facts

AccreditationISO/IEC 17024 by ANAB
Languages
RecognitionGlobal

CertMap assessment & background

The demonstrable value of the CCISO sits in Anglo-American government and defence settings: DoD 8140 lists it as a qualifying credential for nine position codes, and the UK NCSC recognises it as certified training. For the German-speaking job market, no reliable demand signal is available. Candidates regularly underestimate admission: without authorised training, five years of experience in each of the five domains, with training five years in three of them, each confirmed by named verifiers. The limit is the format. 150 multiple-choice questions in two and a half hours test governance knowledge, not execution. Budget a 100 USD application fee, 999 USD for the voucher, and then 100 USD per year plus 120 CPE credits per three-year cycle.

More on CertMap editorial methodology →

Cost, prerequisites, exam & renewal

Cost over 5 years

Exam fee (acquisition)€919
AMF (5 years)€460
CPE time value (5 years)€16,000
5-year total€17,379
CPE effort: 40 h per year · 200 h over 5 years · Valued at 80 €/h.
How is TCO calculated? →

CertMap score and matching roles

Rating

Market recognition
2/3
Scheme quality
3/3
Practice evidence
2/3
Maintenance
0/3

Schema quality 3/3 through ISO/IEC 17024 with ANAB accreditation. Practice evidence 2/3: scenario-based multiple choice under proctored conditions, no lab. Maintenance 0/3: EC-Council describes a nine-phase exam development process but names no revision cycle in years and no date of the last content revision, so the rubric awards 0. Market recognition 2/3 via DoD 8140 and the UK NCSC, without a demand signal for the German-speaking market.

Matching NICE roles

Oversee and GovernSystems Security Management
Oversee and GovernExecutive Cybersecurity Leadership
Oversee and GovernCybersecurity Policy and Planning

What are NICE roles? The framework explained →

About EC-Council

EC-Council runs a broad certification family. Alongside the CCISO, the Certified Ethical Hacker, the Certified Penetration Testing Professional and the Certified Network Defender are among the programmes accredited to ISO/IEC 17024 by the ANSI National Accreditation Board. The UK NCSC lists several of these programmes as certified training. The CCISO has its own candidate handbook documenting exam format, admission, fees and recertification in one place, plus a nine-phase exam development process. Continuing education is tracked in EC-Council's own Aspen portal, and the annual fee for the CCISO is 100 USD.

More certifications

CCISOView in quadrant ↗