View and download the latest PDF version of the CCSP Certification Exam Outline in the following languages:
CCSP - English |
CCSP - Chinese |
CCSP - Japanese |
CCSP - German
About CCSP
ISC2 developed the Certified Cloud Security Professional (CCSP) credential to ensure that cloud security professionals have the required knowledge, skills, and abilities in cloud security design, implementation, architecture, operations, controls, and compliance with regulatory frameworks. A CCSP applies information security expertise to a cloud computing environment and demonstrates competence in cloud security architecture, design, operations, and service orchestration. This professional competence is measured against a globally recognized body of knowledge.
The topics included in the CCSP Exam Outline ensure its relevancy across all disciplines in the field of cloud security. Successful candidates are competent in the following six domains:
- Cloud Concepts, Architecture and Design
- Cloud Data Security
- Cloud Platform & Infrastructure Security
- Cloud Application Security
- Cloud Security Operations
- Legal, Risk and Compliance
Experience Requirements
Candidates must have a minimum of five years cumulative, full-time experience in Information Technology (IT). Three years must be in cybersecurity, and one year must be in one or more of the six domains of the current CCSP Exam Outline . Earning a post-secondary degree (bachelors or masters) in computer science, IT or related fields may satisfy up to one year of the required experience. Earning CSA’s CCSK certificate can be substituted for one year of experience. Only one year of experience can be waived. An active CISSP credential can be substituted for the entire CCSP experience requirement. Part-time work and internships may also count towards the experience requirement.
A candidate that doesn’t have the required experience to become a CCSP may become an Associate of ISC2 by successfully passing the CCSP examination. The Associate of ISC2 will then have six years to earn the five years required experience. You can learn more about CCSP experience requirements and how to account for part-time work and internships at www.isc2.org/Certifications/CCSP/CCSP-Experience-Requirements.
Accreditation
CCSP is in compliance with the stringent requirements of ANSI/ISO/IEC Standard 17024.
Job Task Analysis (JTA)
ISC2 has an obligation to its membership to maintain the relevancy of the CCSP. Conducted at regular intervals, the Job Task Analysis (JTA) is a methodical and critical process of determining the tasks that are performed by security professionals who are engaged in the profession defined by the CCSP. The results of the JTA are used to update the examination. This process ensures that candidates are tested on the topic areas relevant to the roles and responsibilities of today’s practicing information security professionals focusing on cloud technologies.
CCSP Examination Information
The CCSP exam uses Computerized Adaptive Testing (CAT) for all exams.
| Length of exam |
3 hours |
| Number of items |
100-150 |
| Item format |
Multiple choice and advanced item types |
| Passing grade |
700 out of 1000 points |
| Exam language availability |
English, Chinese, Japanese and German |
| Testing center |
Pearson VUE Testing Center |
Notice: Chinese language CISSP exams are only available during select appointment windows.
- Annual Availability: March 1-31, June 1-30, September 1-30, December 1-31
CCSP Examination Weights
| Domains |
Average Weight |
| 1. Cloud Concepts, Architecture and Design |
17% |
| 2. Cloud Data Security |
20% |
| 3. Cloud Platform & Infrastructure Security |
17% |
| 4. Cloud Application Security |
17% |
| 5. Cloud Security Operations |
16% |
| 6. Legal, Risk and Compliance |
13% |
| Total |
100% |