View and download the latest PDF version of the ISSAP Certification Exam Outline
ISSAP – English
About ISSAP
The Information Systems Security Architecture Professional (ISSAP) is a security leader who specializes in designing security solutions and providing management with risk-based guidance to meet organizational goals. ISSAPs facilitate the alignment of security solutions within the organizational context (e.g., vision, mission, strategy, policies, requirements, change, and external factors).
The broad spectrum of topics included in the ISSAP Exam Outline ensure its relevancy across all disciplines in the field of information security. Successful candidates are competent in the following four domains:
- Governance, Risk, and Compliance (GRC)
- Security Architecture Modeling
- Infrastructure and System Security
- Identity and Access Management (IAM) Architecture
Experience Requirements
Candidates must be a CISSP in good standing and have two years cumulative, full-time experience in one or more of the four domains of the current ISSAP Exam Outline.
Or
Candidates must have a minimum of seven years cumulative, full-time experience in two or more of the domains of the current ISSAP Exam Outline. Earning a post-secondary degree (bachelors or masters) in computer science, information technology (IT) or related fields or an additional credential from the ISC2 approved list may satisfy one year of the required experience. Only one year of experience can be waived. Part-time work and internships may also count towards the experience requirement.
Accreditation
The ISSAP is in compliance with the stringent requirements of the ANSI National Accreditation Board (ANAB) ISO/IEC Standard 17024.
Job Task Analysis (JTA)
ISC2 has an obligation to its membership to maintain the relevancy of the ISSAP. Conducted at regular intervals, the Job Task Analysis (JTA) is a methodical and critical process of determining the tasks that are performed by ISSAP credential holders. The results of the JTA are used to update the examination. This process ensures that candidates are tested on the topic areas relevant to the roles and responsibilities of today’s practicing information security professionals.
ISSAP Examination Information
| Length of exam |
3 hours |
| Number of items |
125 |
| Item format |
Multiple choice and advanced item types |
| Passing grade |
700 out of 1000 points |
| Exam language availability |
English |
| Testing center |
Pearson VUE Testing Center |
ISSAP Examination Weights Domains
| Domains
| Average Weight
|
| 1. Governance, Risk, and Compliance (GRC) |
21% |
| 2. Security Architecture Modeling |
22% |
| 3. Infrastructure and System Security |
32% |
| 4. Identity and Access Management (IAM) Architecture |
25% |
| Total |
100% |