Study offer Save 5% off your preparation plan Use codeEXAM4FUTURE5
View offer

ISC2 CCCertified in Cybersecurity

Updated for 2026 Answers include explanations

Build exam-day confidence with focused questions, clear explanations, realistic practice sessions, and the study format that fits your routine.

1,395 questions September 07, 2026 90-day updates Instant access

CC PDF & Test Engine Bundle

Premium PDF & Test Engine Bundle

  • 1,395 practice questions and answers
  • PDF and test-engine access
  • Detailed answer explanations
  • Updated September 07, 2026
  • 90 days of free updates
$133.98 0% off
$133.98
Preview exam

22 downloads in the last 7 days.

Choose the practice format that fits your routine.

Compare the live formats currently available for CC.

PDF Only

Printable Premium PDF only

0% off
$81.89 $62.99

Test Engine Only

Test Engine File for 3 devices and Web Test Engine

0% off
$92.29 $70.99

Map the current exam by question type and topic.

Use the live file breakdown to organize review around the highest-volume areas.

Question types

Single Choices
1,395
Explanation-led reviewAnswers include explanations to support focused revision.

Exam topics

  1. 01
    Security Principles362 questions
  2. 02
    Business Continuity (BC), Disaster Recovery (DR) & Incident Response Concepts246 questions
  3. 03
    Access Controls Concepts281 questions
  4. 04
    Network Security296 questions
  5. 05
    Security Operations210 questions

Recent learner outcomes for CC.

Reported results from customers using this preparation file.

39learners passed ISC2 CC
86.6%average reported exam score
90%reported question similarity

ISC2 CC exam details and FAQs.

Introduction of ISC2 CC Exam!
The purpose of Certified in Cybersecurity is to validate foundational cybersecurity knowledge for people entering the field. ISC2 designed the credential for newcomers, including candidates without direct IT or cybersecurity work experience. It assesses whether a learner understands core concepts such as security principles, access controls, network security, resilience, incident response, and security operations. The certification is ANAB-accredited to ISO/IEC Standard 17024 and approved under the U.S. Department of Defense 8140.03 framework. In practical terms, CC can help a candidate demonstrate readiness for entry-level or junior cybersecurity work, but it is not a substitute for hands-on experience or role-specific training.
What is the Duration of ISC2 CC Exam?
The exam duration is 2 hours. ISC2 lists this time limit for the Certified in Cybersecurity examination, which uses Computerized Adaptive Testing (CAT). Plan to use the available time deliberately: read each prompt carefully, identify the security principle being tested, and avoid spending too long on one item. Because CAT adapts the assessment as you progress, focused reasoning is more useful than rushing through questions. Your appointment details and any current testing instructions should be checked after registration, since operational policies can change. The official CC Exam Outline remains the best reference for the current format and examination information.
What are the Number of Questions Asked in ISC2 CC Exam?
The number of questions is 100-125 items. The CC exam uses Computerized Adaptive Testing, so the total can vary within that published range rather than being a single fixed count for every candidate. Items are drawn from the current examination outline and cover five cybersecurity domains. Prepare for consistent performance across the outline instead of assuming that a short or long test indicates how well you are doing. Before booking, review the latest ISC2 exam page because examination specifications can be updated, including when a revised outline becomes effective. Use official domain weights to decide where your study time is most valuable.
What is the Passing Score for ISC2 CC Exam?
The passing score is 700 out of 1,000 points. ISC2 reports this as a scaled passing grade for the CC examination, not as a simple requirement to answer a stated percentage of items correctly. Since the exam uses Computerized Adaptive Testing and includes 100-125 items, candidates should concentrate on understanding concepts and applying them accurately rather than trying to calculate a target number of correct answers. Review the candidate policies and current exam outline before test day so you understand the applicable rules. A passing result is followed by ISC2’s certification application process, including the applicable Code of Ethics and privacy-policy agreements.
What is the Competency Level required for ISC2 CC Exam?
The expected competency level is foundational and entry-level. ISC2 positions CC for newcomers and states that no work experience is required, so it is not intended to measure advanced cybersecurity specialization. Candidates should understand basic security vocabulary, risk concepts, identity and access controls, networking fundamentals, continuity and incident response, and routine security operations. Foundational does not mean purely theoretical: you should be able to recognize appropriate controls and explain why a security practice supports confidentiality, integrity, or availability. Learners who lack an IT background may need extra time with networking and systems terminology before attempting the exam.
What is the Question Format of ISC2 CC Exam?
The question format includes multiple-choice and advanced item types. ISC2 also identifies the CC examination as Computerized Adaptive Testing, so the assessment experience is not necessarily identical to a conventional fixed-form test. Study by explaining why an answer is appropriate, not by memorizing isolated definitions. Scenario-based reasoning is especially useful for connecting a control, risk, or response action to the situation described. The official outline and ISC2 preparation resources should guide your practice, while third-party materials should be checked against the current domains and policies. Do not use unauthorized or recalled exam content as a study method.
How Can You Take ISC2 CC Exam?
The delivery method is through Pearson VUE testing centers worldwide. ISC2’s scheduling guidance directs candidates to purchase the exam, open Courses and Exams in their ISC2 account, select Schedule, and then complete the appointment through Pearson VUE. Enter your personal information exactly as it appears on the identification you will present; a mismatch can prevent you from testing and may affect fees. Candidates have up to 365 days from purchase to schedule and sit for the exam, and appointments cannot be rescheduled within 24 hours. Confirm available locations and appointment rules during registration.
What Language ISC2 CC Exam is Offered?
The available exam languages are English, Chinese, Japanese, German, and Spanish. ISC2 notes that Chinese-language CC exams are offered only during select appointment windows, so availability may depend on the date and location you choose. Select the language that lets you understand technical wording precisely, particularly distinctions between authorization, authentication, risk treatment, and incident response. Do not assume that every appointment supports every language; verify the choices shown during Pearson VUE scheduling. ISC2’s current CC Exam Outline is available in the listed languages and should be matched to the examination version you plan to take.
What is the Cost of ISC2 CC Exam?
The cost is U.S. $199 for standard CC exam registration in the Americas and all other regions not separately listed. ISC2 states that pricing and taxes are based on the exam location, so the amount and currency can vary elsewhere; the official pricing page and Pearson VUE checkout provide the current figure for your appointment. Separate charges may apply when changing plans: ISC2 lists a U.S. $50 rescheduling fee and a U.S. $100 cancellation fee. Training bundles, vouchers, regional pricing, and Peace of Mind Protection are different purchase options, so compare their terms before paying.
What is the Target Audience of ISC2 CC Exam?
The intended audience includes IT professionals, career changers, college students, recent graduates, prospective employees, and entry-level professionals who want to enter cybersecurity. ISC2 describes suitable candidates as problem solvers, creative and analytical thinkers, and people motivated to learn. The credential can be relevant to someone moving from technical support, administration, education, or another field, but the exam itself does not guarantee a job or establish competence for every security role. Use the CC domains to identify any background gaps, then compare the credential’s foundational scope with the duties and experience requirements of roles you want.
What is the Average Salary of ISC2 CC Certified in the Market?
Salary context for CC should be treated as broad career information, not a certification-specific earnings promise. ISC2 reports that its members report 35% higher salaries than non-members, but that comparison does not establish that earning CC alone produces a particular salary or that it applies to every country, role, or experience level. Compensation varies with location, education, technical ability, clearance, job title, and prior work history. Research current salary data for specific entry-level roles such as security analyst or IT support specialist, and assess job descriptions alongside the credential. The certification may support credibility, while demonstrated skills and experience still influence pay.
Who are the Testing Providers of ISC2 CC Exam?
The testing provider is Pearson VUE, and ISC2 exams are delivered at Pearson VUE testing centers. After purchasing the CC exam, use your ISC2 account’s Courses and Exams area and select Schedule; the process redirects you to Pearson VUE to finalize the appointment. Review the appointment details carefully, including the name and identification information you submitted. Pearson VUE handles appointment availability and listed scheduling charges, while ISC2 supplies the certification requirements and examination policies. For changes, use the ISC2 account path first and then the relevant options in the Pearson VUE dashboard.
What is the Recommended Experience for ISC2 CC Exam?
The recommended experience is no prior cybersecurity work experience. ISC2 explicitly presents CC as an entry-level certification and says that no work experience is required, making it suitable for newcomers, students, and career changers. Even without formal employment, basic familiarity with computers, operating systems, networks, and everyday security practices can make preparation more efficient. If those fundamentals are unfamiliar, begin with introductory learning before attempting domain questions. Practical labs, safe home projects, or supervised IT tasks can reinforce understanding, but they are preparation aids rather than an eligibility requirement for the examination.
What are the Prerequisites of ISC2 CC Exam?
The prerequisite requirement is none for the CC certification exam. ISC2 states that no work experience is required, and its official self-paced CC training also lists no prerequisites. After passing, however, candidates must complete the ISC2 certification application within nine months of the exam date. The CC endorsement application has no work-experience requirement, but applicants must address the ISC2 Code of Ethics and privacy-policy requirements. Keep these stages separate: being eligible to sit the exam does not remove the need to complete the post-exam application process. Check ISC2’s current policies for any administrative obligations before registering.
What is the Expected Retirement Date of ISC2 CC Exam?
The active status is current, but ISC2 has announced an outline replacement rather than a retirement of the CC credential. The current CC Exam Outline is effective October 1, 2025, and ISC2 states that the exam will be based on a new outline effective September 1, 2026. Candidates should therefore confirm which outline applies to their scheduled appointment and study from the corresponding official materials. A change in exam content does not by itself mean the certification is retired. Use the CC certification page and exam-outline page for the latest transition information instead of relying on older preparation guides.
What is the Difficulty Level of ISC2 CC Exam?
A practical roadmap is to start with the current ISC2 CC Exam Outline, map its five domains into a study schedule, and note unfamiliar terms before doing practice work. Learn the highest-weight areas first while still covering every domain: Security Principles, Network Security, Access Controls Concepts, Security Operations, and Business Continuity, Disaster Recovery and Incident Response Concepts. Use ISC2’s official flash cards and self-study materials, then test your understanding with explanations rather than answer recall. Schedule only after reviewing your weak areas and checking the current registration rules. Leave time to verify identification details and appointment arrangements in your ISC2 and Pearson VUE accounts.
What is the Roadmap / Track of ISC2 CC Exam?
The topics covered are five current domains: Security Principles; Business Continuity, Disaster Recovery and Incident Response Concepts; Access Controls Concepts; Network Security; and Security Operations. ISC2 publishes the current average weights as 26%, 10%, 22%, 24%, and 18%, respectively. Within those areas, preparation should include confidentiality, integrity, availability, authentication, risk management, access-control approaches, networking fundamentals, data security, hardening, security awareness, continuity, disaster recovery, and incident response. Read the full exam outline because the domain titles are only a summary. ISC2 has announced a new outline effective September 1, 2026, so verify the version relevant to your exam date.
What are the Topics ISC2 CC Exam Covers?
Official practice question resources include ISC2’s CC practice quiz, official flash cards, and self-study materials. Use a sample question to test your reasoning: identify the underlying domain, eliminate options that conflict with the stated security objective, and explain why the remaining answer fits. Practice should expose gaps in concepts such as access control, risk treatment, network defenses, or incident response—not encourage memorization of recalled exam content. Compare every practice source with the latest ISC2 Exam Outline, especially around an outline transition. The official ISC2 self-paced course also provides knowledge checks and end-of-domain quizzes for structured review and feedback.
What are the Sample Questions of ISC2 CC Exam?
The difficulty is best understood as foundational but still challenging for candidates who are new to technology or security terminology. ISC2 classifies CC as entry-level, yet the exam spans security principles, resilience, access controls, network security, and security operations. Difficulty will depend on your prior exposure, reading accuracy, and ability to apply concepts in unfamiliar situations. Treat the credential as a broad fundamentals assessment rather than a test of advanced specialization. Build understanding domain by domain, revisit weak areas using official resources, and allow enough study time to interpret questions calmly rather than relying on memorized word lists.

Your next certification is closer than you think.

Compare another exam or continue building a focused ISC2 CC practice routine.

Explore Certifications See purchase options