Pass the CISM exam.
Lead enterprise security with confidence. Structured CISM preparation covering governance, risk management, program design and incident response.
The four CISM domains.
Information Security Governance
Information Security Risk Management
Information Security Program
Incident Management
Everything you need to pass.
90+ structured lessons covering every CISM objective, 600+ original practice questions with detailed explanations, 450+ spaced-repetition flashcards and 5 full-length mock exams that mirror the real test.
Frequently asked questions.
What is CISM and who is it for?
CISM (Certified Information Security Manager) is ISACA's management-focused certification for security professionals who design and manage enterprise security programs. It is ideal for aspiring CISOs and security directors.
How does CISM compare to CISSP?
Both are management certifications, but CISM focuses specifically on security program management and risk, while CISSP covers a broader technical and managerial scope. Many professionals hold both.
How many questions are on the CISM exam?
The CISM exam contains 150 multiple-choice questions with a 4-hour time limit. The passing score is 450 out of 800.
What experience is required for CISM?
ISACA requires 5 years of information security management experience (with some substitutions allowed). Our 90+ lessons cover all four domains from governance to incident management.
PassYour is an independent study aid and is not affiliated with, endorsed by or sponsored by ISACA. CISM is a registered mark of ISACA.