Certifications•17 min read
CISA Certified Information Systems Auditor Certification Guide
ISACA CISA certification guide. Learn IT auditing, governance, risk management, and information systems control.
By Andy Pham
CISA Certified Information Systems Auditor Certification Guide
The CISA certification from ISACA validates your expertise in auditing, controlling, and assessing IT systems.
Exam Overview
| Aspect | Details |
|---|---|
| Duration | 4 hours |
| Questions | 150 questions |
| Passing Score | 450/800 |
| Experience | 5 years in IS auditing |
| Cost | $575-760 USD |
Exam Domains
Domain 1: IS Audit Process (21%)
- Audit standards and guidelines
- Risk-based audit planning
- Audit execution
Domain 2: Governance and Management (17%)
- IT governance framework
- IT strategy and policies
- Enterprise architecture
Domain 3: IS Acquisition and Development (12%)
- Project governance
- Business case development
- System development
Domain 4: IS Operations and Resilience (23%)
- IT service management
- Data governance
- Business resilience
Domain 5: Protection of Information Assets (27%)
- Asset security
- Security management
- Access controls
Key Audit Frameworks
- COBIT: Control Objectives for IT
- ITIL: IT service management
- ISO 27001: Information security management
- NIST: Cybersecurity framework
Practice with ExamCert
ExamCert provides 450+ practice questions for the CISA exam covering all audit domains.