Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-COUNCIL

EC-Council Associate C|CISO

The EC-Council Associate C|CISO certification equips cybersecurity professionals with the foundational knowledge required for information security leadership. Designed for aspiring C-suite leaders, it covers the five domains of the Certified CISO program, enabling candidates to support strategic decision-making and contribute to a CISO's office. This credential is a stepping stone to the full Certified CISO title.

Exam formatMultiple-choice questions
Duration120 minutes
DeliveryPearson VUE
Passing score70%
Free questions1309

Content last reviewed 30 July 2026 · Up to date

The certification

What EC-Council Associate C|CISO proves, and what it asks of you

What this certification covers, who it is written for, and what the exam itself looks like on the day.

5domains
26objectives
218concepts
What it is

What this certification is

What it validates, who it is written for, and the experience it assumes.

About this certification

The Associate CCISO Program is a professional certification that equips cybersecurity professionals with the fundamental knowledge required for information security leadership. It is designed specifically for candidates aspiring to become C-suite leaders by training them in the five domains of the Certified CISO (CCISO) program, even if they fall short of meeting the minimum five years of experience in three of the Certified CISO domains.

This certification empowers emerging information security officers to understand the roles and responsibilities necessary for security executives to effectively contribute to the functioning of a CISO's office. It guides their career paths toward leadership, allowing them to collaborate with and support CISOs in strategic decision-making regarding information security and risk management. By holding the Associate CCISO certification, cybersecurity officers demonstrate their commitment to continuous professional development and their readiness to take on leadership roles within a CISO's office.

The program serves as a stepping stone to obtaining the Certified CISO title and joining the global team of certified cybersecurity leaders. Candidates access the same courseware and training programs leveraged by seasoned professionals within the Certified CISO program, ensuring a consistent and rigorous learning experience.

Who it’s for

The Associate CCISO certification is suitable for all cybersecurity professionals who possess either a minimum of two or more years of experience in any of the Certified CISO domains or currently hold certifications such as CISA, CISM, or CISSP. It is designed for those who aspire to leadership roles and want to understand the strategic, managerial, and operational aspects of information security management. This certification is ideal for individuals who want to map a career into the C-suite leadership path and gain the knowledge and professional experience needed to progress within their current capacities as information security managers.

Recommended experience

A minimum of two years of technical or management experience in any of the five CCISO domains, or holding a relevant certification such as CISSP, CISM, or CISA. Two or more years of experience in Governance and Risk Management; Two or more years of experience in Information Security Controls, Compliance, and Audit Management; Two or more years of experience in Security Program Management and Operations; Two or more years of experience in Information Security Core Competencies; Two or more years of experience in Strategic Planning, Finance, Procurement, and Vendor Management

The syllabus

What you’ll learn

Every domain and objective EC-Council measures, with the weight they carry on the exam.

The official EC-Council exam outline · checked 30 July 2026 · See the source

Governance, Risk, and Compliance
  • Information Security Management Program
  • Defining an Information Security Governance Program
  • Regulatory and Legal Compliance
  • Risk Management
4 objectives · 196 free questions · 41 pages
Information Security Controls and Audit Management
  • Designing, Deploying, and Managing Security Controls
  • Security Control Types and Objectives
  • Implementing Control Assurance Frameworks
  • Understanding the Audit Management Process
4 objectives · 173 free questions · 37 pages
Security Program Management and Operations
  • The Role of the CISO
  • Information Security Projects
  • Integrating Security Requirements into Operational Processes
  • Change Management and Version Control
4 objectives · 229 free questions · 47 pages
Information Security Core Competencies
  • Access Controls
  • Physical Security
  • Network Security
  • Threat and Vulnerability Management
  • Application Security
  • Encryption
  • Vulnerability Assessments and Penetration Testing
  • Computer Forensics and Incident Response
8 objectives · 409 free questions · 85 pages
Strategic Planning, Finance, Procurement, and Vendor Management
  • Security Strategic Planning
  • Alignment with Business Goals
  • Key Performance Indicators (KPI)
  • Financial Planning
  • Return on Investment (ROI) and Cost-Benefit Analysis
  • Vendor Management and Procurement Processes
6 objectives · 302 free questions · 63 pages
On the day

The exam itself

Everything EC-Council publishes about sitting it, and nothing we inferred.

Prerequisites

Have at least 2 years of technical or management experience in any of the following domains: Governance and Risk Management, Information Security Controls, Compliance, and Audit Management, Security Program Management and Operations, Information Security Core Competencies, or Strategic Planning, Finance, Procurement, and Vendor Management.

CertificationEC-Council Associate C|CISO
Exam formatMultiple-choice questions
Duration120 minutes
Questions150 questions
Passing score70%
DeliveryPearson VUE
LanguagesEnglish
Certification levelAssociate
After you pass

Where this credential goes next

The path EC-Council lays out, how the credential is kept, and where to book.

Step-by-step path to EC-Council Associate C|CISO

PrerequisiteHave at least 2 years of technical or management experience in any of the following domains: Governance and Risk Management, Information Security Controls, Compliance, and Audit Management, Security Program Management and Operations, Information Security Core Competencies, or Strategic Planning, Finance, Procurement, and Vendor Management.
EC-Council Associate C|CISO badgeCredential earnedEC-Council Associate C|CISO Associate level certification
Lifecycle status

This certification is currently active and available. EC-Council maintains this certification to validate current skills and industry relevance.

Exam status: ActiveMaintained by EC-Council

Exam registration

Register for the exam through Pearson VUE, EC-Council’s authorized testing partner.

Schedule your exam

Visit the official EC-Council certification page for exam policies and requirements.

View the official page
Your coach

And when you are serious, your coach Pip takes over

Your coach in the app reads what you have answered with the book closed and tells you one thing to do tonight. It will not count an answer you gave with the page open, and it will tell you when you are not ready.

See how the coach works
Before you book

Questions people ask

How does the Associate CCISO certification relate to the Certified CISO (CCISO) certification?

The Associate CCISO program is directly derived from the Certified CISO certification program. It uses the same courseware and training program, covering the same five domains, but is designed for candidates who do not yet meet the five years of experience required for the full CCISO. It serves as a stepping stone to obtaining the Certified CISO title.

What is the pathway from Associate CCISO to the full Certified CISO certification?

To obtain full Certified CISO status, candidates must meet the experience requirements by having a minimum of 5 years of experience in at least 3 of the 5 CCISO domains, earned while maintaining their Associate CCISO certification. After gaining the required experience, they complete a form to indicate their eligibility, which is verified. Once approved, they take the Certified CISO examination.

What are the cognitive levels assessed in the Associate CCISO exam?

The Associate CCISO exam assesses candidates across two cognitive levels: Level 1 – Knowledge-based questions, which assess the ability to recall memorized facts, and Level 2 – Application-based questions, which assess the ability to understand and apply a given concept in different scenarios.

Is training required to take the Associate CCISO exam?

Yes, candidates are required to take the training and then pass the exam to obtain certification. The program offers access to the same courseware and training delivered to Certified CISO candidates.

What job roles does the Associate CCISO certification prepare candidates for?

The certification prepares cybersecurity professionals for leadership roles within a CISO's office, such as information security managers, and helps them progress toward executive security leadership positions. It validates their ability to handle complex information security management system challenges and manage security programs.

Can I retake the training before taking the Certified CISO exam?

Yes, candidates have the option to retake the training prior to taking the Certified CISO examination. This is recommended because core training materials can change to maintain alignment with security industry changes.

Information freshness · Content last reviewed on 2026-07-30 Up to date
Practice free questions 1309 questions, free, no account needed.