ISC2

6 certifications across 4 levels.

vendor rollup

ISC2

Entry · 1Associate · 1Professional · 1Expert · 3
View ISC2 certification path →
L1

Entry

1 cert
L2

Associate

1 cert
L3

Professional

1 cert

Vendor overview

ISC² (International Information System Security Certification Consortium) — Vendor Overview

V015 · Information Security, Risk, Compliance · 5 active certifications · SA presence: Strong

Quick pitch: ISC² is the most respected information security certification body globally; CISSP is the gold standard for enterprise security professionals and is mandatory or strongly preferred for security leadership roles across all industries.


Company Snapshot

FieldDetail
Full nameInternational Information System Security Certification Consortium
Founded1989 — established standardised information security certifications
HeadquartersAlexandria, Virginia, USA
Employees~200 globally (2026)
RevenuePrivate non-profit; revenue estimates ~$50–80M annually
ListedNon-profit
Core businessDevelops and administers security certifications (CISSP, CCSK, CSSLP, CAP, ISSAP); provides training materials and maintains ethical standards. 100% certification and training revenue.
SA officeNo direct office; strong partner network including TrackitSA, Westcon-Comstech, regional training providers

What ISC² Does

ISC² is the premier non-profit information security certification body globally. The organisation maintains exceptionally high ethical and professional standards; CISSP holders must adhere to the Code of Ethics and maintain continuing professional education. The five certifications span different specialisations: CISSP (general security professional), CCSK (cloud security), CSSLP (secure software development), CAP (access control), and ISSAP (security architect).

ISC² maintains approximately 600,000+ CISSP holders globally, making it the largest professional security certification community worldwide. The organization is vendor-neutral and highly respected by enterprise security leadership. Competitors are vendor-specific programs (Palo Alto, Check Point, Fortinet) and competing certifications (CompTIA Security+, EC-Council CEH), but CISSP remains the gold standard for enterprise security professionals.


Certification Portfolio

Active certifications (5 total)

LevelCert NameCodeDomainCost (USD)Valid
AssociateAssociate of (ISC)²CISSP-ASecurity Fundamentals$749Lifetime
ProfessionalCISSP – Certified Information Systems Security ProfessionalCISSPEnterprise Security$7493 yrs
ProfessionalCCSK – Certified Cloud Security KnowledgeCCSKCloud Security$3953 yrs
ProfessionalCSSLP – Certified Secure Software Lifecycle ProfessionalCSSLPSecure Development$7493 yrs
ProfessionalCAP – Certified Access ProfessionalCAPAccess Control$3953 yrs

Additional advanced cert: ISSAP (Security Architect specialist level)

Recommended starting cert

CISSP-A (Associate of ISC²) — Prerequisite for full CISSP. Validates foundational information security knowledge across 8 domains (security architecture, asset security, security engineering, communication/network security, identity/access management, security assessment, security operations, software development security). 3-hour exam; ~100–110 questions. Lifetime credential (no expiry). Prerequisites: 5 years security professional experience (or equivalent education/military background). ~4–6 months study.

Cert ladder for new starters

CISSP-A (Associate) → CISSP (Professional after 5 years experience)
CCSK or CSSLP (specialisations, parallel tracks)

Why ISC² Matters in 2026

CISSP is the gold standard for enterprise security professionals globally. LinkedIn shows 38,000+ open CISSP-related job postings, making it the #1 security certification by employer demand. CISSP is mandatory or strongly preferred for Chief Information Security Officer (CISO), security architect, and security manager roles at Fortune 500 companies, government agencies, and financial services firms.

ISC² maintains exceptionally rigorous ethical and professional standards. CISSP holders must commit to continuing professional education (CPE) and ethical conduct, making the credential particularly valuable for regulated industries. The certification ecosystem is exceptionally healthy; ISC² invests heavily in training and community development. CISSP salaries command premium rates globally, particularly in financial services and government sectors.


Job Market Data

Global demand

MetricValueSourceDate
Active job postings mentioning CISSP38,000+LinkedIn JobsMay 2026
Growth YoY+12%LinkedIn Salary Insights2025–2026
Top job title hiringSecurity ManagerLinkedInMay 2026
Top hiring countriesUSA, UK, Canada, Australia, IndiaLinkedInMay 2026

Common job titles requiring ISC² skills

Job TitleSeniorityMedian USD SalaryMedian ZAR Salary
CISSP-A / AssociateMid$78,000R71,800/month
CISSP – Senior Security ManagerSenior$135,000R124,200/month
CISSP – Security ArchitectSenior$145,000R133,400/month
CISO / CISSP-ExpertExecutive$200,000+R184,000+/month

South Africa Presence

Direct presence

ISC² has no direct office in South Africa but operates through a strong partner network. Primary partners include TrackitSA, Westcon-Comstech, and regional training providers. CISSP is exceptionally valued in SA enterprise security roles.

SA job market

South African banks (ABSA, Nedbank, FirstRand, Standard Bank, Investec), government agencies, and large enterprises mandate CISSP or equivalent for security leadership roles. CISSP is the gold standard credential for SA enterprise security professionals. Demand is exceptionally strong; CISSP holders command premium salaries in SA security market.

Median salary for CISSP-certified Security Manager in SA is R124,200/month (approximately $6,700 USD), among the highest for technical certifications. CISO roles command R184,000+/month.

SA training providers

ProviderCert(s) offeredURL
TrackitSACISSP, CCSKtrackitsa.co.za
Westcon-Comstech AcademyCISSP, CCSK, CSSLPwestcon.co.za
ISC² Learning HubAll ISC² certsisc2.org
Linux Academy / A Cloud GuruCISSPacloudguru.com

Vendor Ecosystem

Key technologies and platforms

  • Security architecture frameworks (NIST, ISO 27001, CIS Controls)
  • Risk management (RISKR framework)
  • Identity and access management (IAM)
  • Cryptography and encryption standards
  • Secure software development lifecycle (SDLC)
  • Cloud security frameworks
  • Incident response and forensics

Complementary vendors and certs

Complementary VendorWhy they pair well
ISACA (CISA)Risk and governance specialist complements security professional
CompTIA Security+Entry-level cert before CISSP
Palo Alto, Check PointVendor certifications complement CISSP career
Cloud vendors (AWS, Azure)Cloud architects often pursue CISSP for security foundation

Community and resources

ResourceTypeURL
ISC² Learning HubOfficialisc2.org/learning
ISC² Community ForumCommunityisc2.org/community
r/cisspCommunityreddit.com/r/cissp
ISC² YouTubeLearningyoutube.com/c/ISC2

Vendor History & Roadmap

Key milestones

YearEvent
1989Founded; established CISSP certification
2000CISSP became gold standard for security professionals
2008Launched CCSK (cloud security)
2015Introduced CSSLP (secure software development)
2020Expanded CPE requirements; emphasised ethical conduct
2024Introduced advanced specialisation certs (ISSAP)
2025–2026Focus on AI security, cloud-native security, zero-trust
2026CISSP remains gold standard; AI security specialisation growing

Outlook

ISC² is firmly positioned as the premier information security certification authority globally. The organisation's non-profit status and ethical commitment ensure long-term credibility. For certification professionals, CISSP remains secure and in exceptionally high demand, particularly for career progression to management and leadership roles. Exam content will evolve to include AI security, supply chain risk, and zero-trust architecture over the next 12–24 months.


Frequently Asked Questions

Q: Is CISSP worth investing in for my career? Yes, absolutely—if you want a security career trajectory to management and leadership. CISSP is the gold standard for enterprise security professionals.

Q: How often do CISSP certs expire? CISSP expires after 3 years. Renewal requires earning 120 Continuing Professional Education (CPE) points or passing the CISSP renewal exam.

Q: Are CISSP certs recognised in South Africa? Absolutely. CISSP is the gold standard credential for SA enterprise security professionals and is mandatory for CISO roles.

Q: What's the best cert to start with from ISC²? CISSP-A (Associate), which requires 5 years security experience or equivalent. Expect 4–6 months study with extensive hands-on knowledge requirements.


Related Content


Sources

#SourceURLUsed for
1ISC² Certificationsisc2.org/certificationsCompany data, cert portfolio
2ISC² Aboutisc2.org/aboutHistory, mission, ethics
3LinkedIn Jobs – CISSPlinkedin.com/jobsJob market data
4TrackitSA (SA Partner)trackitsa.co.zaSA presence, training

Template version: 2026-05-03 | Maintained by IT Career Roadmap

Rate ISC2
Was this helpful?
Comments ()
0/2000