Earning your Certified Information Systems Auditor (CISA) certification can help you advance in your career. Explore what you’ll need to know before you take the exam and what kind of CISA salary you might expect after completing your certification.
![[Featured Image] Two smiling information systems auditors in business attire look at a computer screen in a busy office as they discuss CISA salary figures.](https://d3njjcbhbojbot.cloudfront.net/api/utilities/v1/imageproxy/https://images.ctfassets.net/wp1lcwdav1p1/2lSWWjACtPPlhAw5DEhjIJ/c79345977a20a62892942cfe1efadc97/GettyImages-149142232.webp?w=1500&h=680&q=60&fit=fill&f=faces&fm=jpg&fl=progressive&auto=format%2Ccompress&dpr=1&w=1000)
The salary you can expect to earn as a CISA professional will vary based on factors like your job title, experience in the field, and where you live.
A Certified Information Systems Auditor (CISA) professional earns an average base pay of $93,000 per year in the US, according to Glassdoor [1].
The company you work for can also influence how much you earn as a CISA professional.
You can pursue various positions with a CISA certification, including internal auditor, information systems (IS) analyst, IT audit manager, and IT security officer.
Explore the CISA certification, including the eligibility requirements, exam format, and the content you can expect to see on the exam, as well as what kind of CISA salary you can expect to earn. If you’re ready to start building your IT knowledge, consider enrolling in the IBM Information Technology (IT) and Cloud Fundamentals Specialization. In as little as two months, you’ll have the opportunity to learn foundational IT concepts like cloud computing, cybersecurity, database administration, and more. Upon completion, you'll have earned a career certificate for your resume.
The CISA credential is a globally recognized certification that demonstrates expertise in IT and business systems auditing. It is ranked among the top 15 IT certifications available in North America, according to a recent Skillsoft report based on average salary [2]. Holding this credential will designate you as someone who understands the IT auditing process, IT governance and management, and the operations, development, and implementation of IT systems.
With a CISA certification, you may hold various job titles, including internal auditor, information systems (IS) analyst, IT audit manager, IT security officer, IT consultant, IT risk and assurance manager, or privacy officer.
You will need to have advanced knowledge of the topics on the CISA exam before you take the test. You don’t need to have verified work experience prior to taking the exam. This means you can prepare for the CISA exam in the time it takes you to learn the material. In order to get officially CISA certified, you will need to have five or more years of experience in IT systems auditing.
You will have five years from passing your exam to earn this work experience, but you can also count relevant work experience from the last 10 years. You may also choose to gain five years of experience in the field before taking the certification exam. You may be able to waive some of the experience requirements if you’ve worked in a related field or have a traditional degree, such as an associate’s degree or bachelor’s degree [3].
Read more: Information Systems vs. Information Technology (IS vs. IT)
Once you register for the CISA exam, you will have six months to take the test. You will have four hours to complete the exam, which includes 150 multiple-choice questions. Your score will be calculated from the lowest score of 200 to the highest score of 800. You must receive a score of at least 450 to pass [4].
The content of the CISA exam has five main parts: the information systems auditing process; governance and management of IT; information systems acquisition, development, and implementation; information systems operations and business resilience; and protection of information assets.
Information systems auditing process: In the first part of the CISA exam, you will cover both the planning and execution of IT auditing, including standards, guidelines, and code of ethics, as well as how to conduct auditing project management, testing, evidence collection, and data analytics.
Governance and management of IT: In the second part of the exam, you’ll demonstrate your knowledge of IT governance, such as the laws, regulations, and industry standards that guide your work, as well as managing enterprise risk and setting IT policies. You’ll also demonstrate your knowledge of managing IT resources, vendors, and quality assurance.
Information systems acquisition, development, and implementation: In the third section, you’ll demonstrate your knowledge of conducting feasibility analysis, methods for developing systems, control identification and design, and implementation of information systems, such as system readiness and testing, implementation configuration, and post-implementation review.
Information systems operations and business resilience: In the fourth section, you’ll test your knowledge of IS operations, including IT components, IT asset management, system interfaces, operational log management, and database management. You’ll also demonstrate your knowledge of business resilience, including business impact analysis, business continuity plans, and disaster recovery plans.
Protection of information assets: In the last section of the exam, you’ll demonstrate your knowledge of information asset security and control, such as managing access, network and endpoint security, data loss prevention, data encryption, security testing, monitoring logs, tools, techniques, and incident response management.
The average salary for a CISA professional in the United States ranges from $93,000 to $123,000, according to three salary aggregate websites. Explore how the data breaks down across Glassdoor, Payscale, and ZipRecruiter [1, 5, 6]:
| Glassdoor | Payscale | ZipRecruiter |
|---|---|---|
| $93,000 | $123,000 | $109,713 |
Another way to compare the salary of a CISA professional is to look at what the average salary is for an IT auditor in the United States without specifying which certifications they might hold.
According to most of these websites, CISA pays more than the average salary for an IT auditor:
| Role | Glassdoor | Payscale | ZipRecruiter |
|---|---|---|---|
| IT auditor (unspecified certifications) | $95,000 [7] | $85,214 [8] | $92,797 [9] |
| CISA professional | $93,000 [1] | $123,000 [5] | $109,713 [6] |
The exact amount you can expect to earn will vary based on factors like your job title, your experience in the field, and where you live.
*All salary data is current as of May 2026 and does not include additional pay like bonuses or commissions.
You will find that certain factors make a difference in how much you can expect to earn as a CISA professional. For example, the experience you have in the field, where you live and work, and the company you work for can all impact your salary.
You can find insight into how much experience will impact your salary by looking at Glassdoor’s estimates. They report that the average CISA salary will vary as follows [1]:
0–1 years: $69,000
1–3 years: $72,000
4–6 years: $85,000
7–9 years: $90,000
10–14 years: $97,000
15+ years: $103,000
Another factor that can change your average salary is where you live and work. So far, you’ve explored the average salaries across the United States, but consider how salaries break down across some of the highest-paying cities for CISA professionals [6]:
Berkeley, CA: $134,337
Foster City, CA: $127,873
Livermore, CA: $128,692
Nome, AK: $136,099
Palo Alto, CA: $128,970
San Francisco, CA: $129,261
San Jose, CA: $128,583
Santa Clara, CA: $128,851
Sitka, AK: $132,169
Sunnyvale, CA: $128,765
You may hold a CISA certification and work in a job title or role that differs from IT auditor. Your job title can be a factor that affects how much you can expect in average salary. For example, Payscale lists several jobs you might hold as a CISA and what you can expect in your average salary [5]:
Senior IT auditor: $96,903
Internal auditing manager: $115,345
Information security analyst: $101,429
IT director: $148,833
Chief information security officer: $199,330
IT manager: $132,243
IT auditor: $93,794
Payscale also offers insight into how different companies pay CISA professionals. Explore a few examples [5]:
Booz, Allen, and Hamilton: $135,985
Deloitte: $105,500
EY (Ernst & Young): $121,481
Grant Thornton Llp: $88,500
JP Morgan Chase: $174,086
Citigroup, Inc.: $166,500
Procter & Gamble Co.: $135,000
Amerigold Logistics LLC: $185,000
Stryker Corp.: $93,250
True Manufacturing: $133,172
Explore career paths, assess your skills, and connect with resume guidance while browsing our Career Resources Hub. Or if you want to learn more about IT, check out these free resources:
Get expert insights: 7 IT Certifications to Know + Career Benefits
Understand key terms: Information Technology (IT) Terms: A to Z Glossary
Watch on YouTube: IS vs IT: Which Tech Career Path Fits You?
With Coursera Plus, you can learn and earn credentials at your own pace from over 170 leading companies and universities. With a monthly or annual subscription, you’ll gain access to over 10,000 programs. Just check the course page to confirm your selection is included.
Glassdoor. “Salary: CISA in the United States, https://www.glassdoor.com/Salaries/cisa-salary-SRCH_KO0,4.htm.” Accessed May 14, 2025.
Skillsoft. “20+ Top-Paying IT Certifications for 2025, https://www.skillsoft.com/blog/top-paying-it-certifications#15.” Accessed May 14, 2026.
ISACA. “Certification Application: What are the requirements to become CISA certified?, https://support.isaca.org/s/article/What-are-the-requirements-to-become-CISA-certified.” Accessed May 14, 2026.
ISACA. “CISA Certification, https://www.isaca.org/credentialing/cisa.” Accessed May 14, 2026.
Payscale. “Salary for Certification: Certified Information Systems Auditor (CISA), https://www.payscale.com/research/US/Certification=Certified_Information_Systems_Auditor_(CISA)/Salary.” Accessed May 14, 2026.
ZipRecruiter. “CISA Salary, https://www.ziprecruiter.com/Salaries/Cisa-Salary.” Accessed May 14, 2026.
Glassdoor. “IT Auditor Salaries, https://www.glassdoor.com/Salaries/it-auditor-salary-SRCH_KO0,10.htm.” Accessed May 14, 2026.
Payscale. “Average Information Technology (IT) Auditor Salary, https://www.payscale.com/research/US/Job=Information_Technology_(IT)_Auditor/Salary.” Accessed May 14, 2026.
ZipRecruiter. “IT Auditor Salary, https://www.ziprecruiter.com/Salaries/It-Auditor-Salary.” Accessed May 14, 2026.
Editorial Team
Coursera’s editorial team is comprised of highly experienced professional editors, writers, and fact...
This content has been made available for informational purposes only. Learners are advised to conduct additional research to ensure that courses and other credentials pursued meet their personal, professional, and financial goals.