IT & Cybersecurity

ISACA CISA®Certified Information Systems Auditor®

CISA (Certified Information Systems Auditor) is ISACA's flagship audit-track certification, focused on auditing, controls, and security assurance.

30 free questions · no credit card · cancel anytime

Exam facts

Everything you need to know about the ISACA CISA® exam.

Passing score
450 / 800
Format & length
150 questions · 4 hours
Voucher cost
~$575 USD members / $760 non-members
Prerequisites
5 years IS audit / control / security experience
Validity
3 years

What’s tested

Key topics on the ISACA CISA® exam.

The Cert Climb question bank is mapped to every domain on the official ISACA CISA® exam blueprint, so what you study is what the test asks.

Who it’s for

Built for the people taking this exam.

IT auditors, compliance professionals, and risk-track security people. Required for many Big 4 audit roles.

Why it matters in 2026

The career signal.

CISA is the most-cited credential in IT audit job postings worldwide and is effectively required for senior audit roles at Big 4 firms (Deloitte, PwC, EY, KPMG) and at the audit and risk functions of every major bank and Fortune 500. ISACA reports average CISA salaries above $130k in the US, and the cert is recognized by GLBA, SOX, and PCI assessor programs. It is also one of the few non-Big-4 paths into an internal-audit director role without a CPA.

Sample question

What a ISACA CISA® question looks like.

An online retailer has just started processing credit card transactions and wants to verify that their payment controls align with the relevant industry standard. Which compliance framework should guide their audit?

  • APCI-DSSCorrect
  • BHIPAA
  • CGLBA
  • DGDPR

Why: PCI-DSS (Payment Card Industry Data Security Standard) applies to organizations that handle cardholder data. HIPAA governs health information privacy, GLBA applies to financial services firms, and GDPR addresses personal data protection in the European Union.

Run 30 free questions →

What you get

Everything you need to actually pass.

Full question bank

1,123 questions covering every objective on the official ISACA CISA® exam blueprint, with detailed explanations on every option — right and wrong.

Quiz modes

Timed exam simulation, missed-only review, topic drills, and a daily question of the day. Practice the way you study best.

Flashcards

Spaced-repetition flashcards generated from each topic. Pull them up on a phone in the gap between meetings.

Progress tracking

See per-topic accuracy and answered counts. Find weak areas before they cost you on test day.

Per-category premium

Unlocking ISACA CISA® unlocks every other IT & Cybersecurity exam in the Cert Climb catalog — pay once, stack credentials.

No-fluff explanations

Every wrong answer comes with a 2-3 sentence explanation of why it’s wrong, not just “the correct answer is X.” Pattern recognition is the whole game.

Read while you study

ISACA CISA® articles & study guides

FAQ

Frequently asked questions about ISACA CISA®

How many questions does the ISACA CISA® bank have?

1,123 questions, organized into 5 subject areas mapped to the official exam objectives.

Is the free trial really free?

Yes. 30 questions, no credit card, no email-trap, no “activate by Friday or pay” spam. You either upgrade because the bank’s good, or you don’t.

What does premium cost?

Premium is sold per category and unlocks every IT & Cybersecurity exam in the Cert Climb catalog. Plans are 1-month, 3-month, or 12-month — see the upgrade modal for current pricing.

How current is the ISACA CISA® content?

We track exam version updates and refresh the bank within weeks of new objectives. Where the version of an exam matters (e.g. CompTIA SY0-701 vs. SY0-601), question explanations call it out.

Can I cancel my subscription anytime?

Yes. Cancellation is one click from your profile. Your access continues through the end of the period you’ve already paid for.

Stop researching. Start drilling.

30 free questions on ISACA CISA® — no card, no commitment.

Start free trial