trustmebro.reviews

CRISC

Course Resource · IT & cloud certifications · 33 mentions · 3 subreddits · discussed in r/cism, r/cissp, r/ISO27001

Reddit take

Not enough linked mention summaries yet; the source excerpts below are the evidence.

Pros

  • I’m on a roll now. I’m studying for CRISC and also learning Python.
  • I have previously sat and passed CISA and CRISC but to me CISM was far more nuanced than the other two.
  • I have 2 now crisc and cism both just from qanda and the stidy manual.
  • Parent context: I am confused about these 2:- Cism or crisc, which one should i pursue first, i am working in the grc domain along with tprm under the Cyber security. My role is mostly on security compliance, vendor assessment, risk and...
  • Based on you’re role I would do CRISC first out of the two.

Cons

  • Just shows how worthless all those badges or designations are. Big corps love that stuff though. Probably fit right in with banking or insurance companies. Short on talent. Long on credentials.
  • I have all isaca staff (CISA, CISM, CRISC) along with PMP and i'm jobless.
  • CRISC was way more specific, so I actually had a harder time preparing for it. CISM is much more on the strategic, governance, and alignment side of things.
  • I had to do that every question for the CRISC, CISM and for the CISSP (substituting with ISC2 cbok). It is what it is. Best, most right, bla bla bla it's all "according to our book, not real life".
  • I took CRISC and then CISM within three months.

Sentiment

23 positive (70%) · 4 mixed (12%) · 6 negative (18%)

Trust + time weighted score: +53% · raw score 52%

What redditors said (10 of 33)

I’m on a roll now. I’m studying for CRISC and also learning Python.
positive · u/D****u · r/cissp · comment · Aug 29, 2026 · open on Reddit ↗
I have previously sat and passed CISA and CRISC but to me CISM was far more nuanced than the other two.
positive · u/b****l · r/cism · Aug 24, 2026 · open on Reddit ↗
I have 2 now crisc and cism both just from qanda and the stidy manual.
positive · u/s****n · r/cism · comment · Aug 20, 2026 · open on Reddit ↗
Parent context: I am confused about these 2:- Cism or crisc, which one should i pursue first, i am working in the grc domain along with tprm under the Cyber security. My role is mostly on security compliance, vendor assessment, risk and mitigation, client Security questionnaires etc.. Reply: Honestly from your job description i'm not sure you'll qualify for CISM. Have you any experience with Incident Repsonse and Security Programs? If not, the by default CRISC is your only option.
positive · u/P****2 · r/cism · comment · Aug 19, 2026 · open on Reddit ↗
Based on you’re role I would do CRISC first out of the two.
positive · u/z****2 · r/cism · comment · Aug 19, 2026 · open on Reddit ↗
For CRISC and CISM, I had already most of the ISACA logic in my head, which made the QAE and the exam significantly easier.
positive · u/P****1 · r/cism · comment · Aug 11, 2026 · open on Reddit ↗
It’s more about getting the head around how ISACA Wants us to think than anything else, at least my experience from passing CISA and CRISC a few months ago.
positive · u/P****1 · r/cism · comment · Jul 17, 2026 · open on Reddit ↗
I think CRISC is also a great certification after CISM as it adds a risk logic that does benefit a security manager.
positive · u/O****6 · r/cism · comment · Jul 15, 2026 · open on Reddit ↗
Started with CRISC, studied for 5 days and crushed that one 2 weeks ago.
positive · u/H****2 · r/cissp · Jul 2, 2026 · open on Reddit ↗
Just shows how worthless all those badges or designations are. Big corps love that stuff though. Probably fit right in with banking or insurance companies. Short on talent. Long on credentials.
negative · u/s****e · r/cism · comment · Jun 24, 2026 · open on Reddit ↗

Compare

Related