CISSPISC2 Certified Information Systems Security Professional
Created per CertMap methodology · Updated 12 May 2026 · About the editorial team → · Official page ↗

▾ Jump to …7 sections
What is CISSP?
The Certified Information Systems Security Professional (CISSP) from ISC2 is considered the gold standard among generalist certifications in information security and is one of the most frequently required qualifications in job postings worldwide. It covers eight domains – from cryptography and network security to software development security – demonstrating broad conceptual competence. The CAT-based exam (125–175 questions) is challenging; 5 years of relevant practical experience are mandatory. The CISSP is particularly suited for mid-to-senior-level professionals pursuing a general security leadership role. Critics occasionally note that it sacrifices technical depth in favor of breadth.
Suitable for
Quick facts
CertMap assessment & background
Der CISSP ist seit über zwei Jahrzehnten der am häufigsten genannte Generalist-Standard für Security-Führungsrollen im DACH-Markt. Praxis-Erfahrung in mindestens zwei von acht Domains ist Pflicht, der ISC2-Endorsement-Prozess verlangt eine Referenz aus dem eigenen Berufsumfeld. Aus CISO-Perspektive deckt er Breite zuverlässig ab, ersetzt aber keine domänenspezifische Tiefe. Wer eine technische Spezialrolle anstrebt (Pentest, AppSec, IR), profitiert oft erstmal von einem fokussierten Zertifikat. Die jährliche AMF (125 USD) gilt zusammen mit allen weiteren ISC2-Certs, was das Ressource-Bundle attraktiv macht, wenn man später SSCP oder CCSP nachzieht.
More on CertMap editorial methodology →Cost, prerequisites, exam & renewal
Cost over 5 years
Prerequisites
5 years cumulative work experience in at least 2 of the 8 CISSP domains. 1 year may be substituted by a college degree or approved certification. Without experience: Associate of ISC2 possible.
Exam format
Renewal & maintenance
Valid for 3 years. Renewal via 40 CPE credits/year (120 over 3 years) + annual AMF ($125). CPE types: Group A (domain topics) and Group B (general professional development).
CertMap score and matching roles
Rating
Marktstärke maximal: Schema-Qualität 3/3 durch ISO/IEC 17024 plus ANAB-Akkreditierung, Markt-Anerkennung 3/3 in globalen Stellenausschreibungen. Substanz solide bei 5/6: Pflege regelmäßig aktualisiert, Praxis-Nachweis 2/3, weil der Pflicht-Endorsement-Prozess durch Bestandsmitglieder keine praktische Lab-Prüfung ersetzt.
Matching NICE roles
How to prepare
Our editorial recommendation to get started: freely accessible, no paid placement, no affiliate links.
Pete Zerger – CISSP Exam Cram Full Course (All 8 Domains)
Free complete CISSP video course by Pete Zerger (Inside Cloud and Security); the link opens the full "CISSP Exam Cram 2026" playlist including addendum and strategy videos.
- CISSP Exam Cram - 2024 Addendum
- CISSP Exam Prep 2025 LIVE - 10 Key Topics & Strategies
- CISSP Exam Prep LIVE - 100 Important Topics
Watch on YouTube ↗ · checked on Aug 19, 2026
Curated, not sponsored: the recommendation is chosen editorially and cannot be bought. Official provider materials are available via the certification page link at the top of this page.
About ISC2
ISC2 (vormals (ISC)²) ist eine 1989 gegründete, gemeinnützige Standardisierungs-Organisation für Cybersecurity-Zertifizierungen mit Sitz in Florida und über 600.000 Mitgliedern weltweit. Die Cert-Familie (CISSP, CCSP, SSCP, HCISPP) ist nach ISO/IEC 17024 akkreditiert; die jährliche AMF (125 USD) deckt alle ISC2-Zertifizierungen gemeinsam ab. ISC2 betreibt zusätzlich ein eigenes Continuing Professional Education (CPE)-Programm zur Aufrechterhaltung der Mitgliedschaft.
More certifications
From ISC2
CCISC2 Certified in CybersecurityCCSPISC2 Certified Cloud Security ProfessionalCGRCISC2 Certified in Governance, Risk and ComplianceCSSLPISC2 Certified Secure Software Lifecycle ProfessionalHCISPPHealthCare Information Security and Privacy PractitionerISSAPInformation Systems Security Architecture ProfessionalFrom the knowledge base
View all articles →CISSP or CISM? Two Careers, One Decision
Both require five years of experience, both cost roughly the same at first glance. Yet CISSP and CISM lead to different professions. The comparison with the numbers that course providers don't show.
CISSP or TISP? One Builds, the Other Governs
Both are considered heavyweights for experienced security professionals, yet they target different kinds of work: the CISSP centres on designing and building secure systems, the T.I.S.P. on oversight, assessment, and governance within the German regulatory framework.
CISM or CISA? Two ISACA paths, one directional decision
Both come from ISACA, both require five years of experience, and both cost almost the same. The difference is not the price but the role: managing or auditing. The comparison with the numbers and the role mapping.
