CRISC Passing Score and Scaled Scoring
The CRISC passing score is 450 or higher on ISACA's 200-to-800 scaled score range.
- It is not a raw percentage or a fixed number of correct questions.
- ISACA uses scaling to compare results across exam forms.
- Domain feedback is informational, while the overall score is based on scored items answered correctly across the exam.
On this page9 sections
- What score passes CRISC
- Why the score is scaled
- Scored and pretest questions
- How domain feedback works
- Examples of correct score interpretation
- Use practice scores as diagnostic evidence
- Results and rescoring
- Scoring myths to avoid
- Interpret the scale without inventing a raw cutoff The CRISC result is reported from 200 to 800, and 450 is the passing point. The score is scaled so that the reported standard can be used across different exam forms. It is not a percent correct. Since ISACA does not publish a conversion table from a raw number of correct items to a scaled score, a candidate cannot determine the required number of correct answers from 450 divided by 800. This matters when reviewing commercial practice tests. A 78 percent on a question bank can show that the candidate handled those questions well under those conditions. It does not establish an official CRISC scaled result. The question bank may use a different topic mix, difficulty, or scoring method. Use practice performance to find weak concepts and track progress on comparable fresh sets, not to claim an official pass prediction. Domain feedback gives another view, but it is not four separate pass marks. A candidate can have stronger performance in one domain and weaker performance in another while the overall scaled score determines pass or fail. If a report flags Risk Assessment, translate that label into tasks such as defining risk scenarios, analyzing likelihood and impact, and choosing appropriate risk information. Do not infer an exact number of missed questions from the feedback. Examples of useful interpretation A candidate receives 450. The result meets the stated threshold. The candidate should not conclude that the score means 56.25 percent correct or that every domain was equally strong. If the candidate is pursuing certification, the next step is to confirm experience eligibility and submit the application within the applicable window. A candidate receives 449. The result falls one scaled point below the threshold. It is a nonpassing result, but it does not show that exactly one answer separated the candidate from passing. The report may offer domain feedback, which can help choose a revision area, but it is not an item-by-item explanation. A candidate's practice average rises from 62 percent to 76 percent. That is useful evidence of improvement if the question sets are reasonably comparable and the candidate can explain missed answers. It still should not be converted into a guaranteed scaled score. A better readiness check combines outline coverage, timed work, and the ability to reason through new scenarios without recognizing a memorized answer. Scaled scoring and test format answer different questions. Scaling concerns how a result is reported. Adaptive testing concerns whether the exam selects questions based on previous answers. CRISC's public format describes 150 multiple-choice items in four hours and does not describe CAT. Do not infer that a test is adaptive simply because it uses a scaled score.
What score passes CRISC
ISACA's 2026 Exam Candidate Guide says that 450 or higher passes a CRISC exam. Scores are reported on a common scale from 200 to 800. ISACA describes 800 as a perfect score and 200 as the lowest possible score. A result of 450 represents ISACA's minimum standard of knowledge for the certification exam.
The 450 is a scaled score, not a raw percentage. It does not mean that you answered 450 questions correctly; the exam has 150 questions. It also does not mean 450 divided by 800 is the percentage of items you need correct. The scale's values are not a simple fraction of the question count.
| Score detail | Meaning |
|---|---|
| Scale minimum | 200 |
| Passing score | 450 or higher |
| Scale maximum | 800, described as perfect |
| Raw percent needed | ISACA does not publish a direct raw-percentage cutoff |
| Pretest items | Do not count toward the score; candidates cannot identify them |
| Domain feedback | Informational only; not a separate domain pass mark |
Why the score is scaled
ISACA explains that a scaled score converts the raw result to a common scale so that outcomes from different exam versions can be compared and reported consistently. Exam forms can contain different items. A common scale provides a stable reporting standard without claiming that every candidate saw the same questions.
ISACA does not publish a CRISC raw-score conversion table or a fixed count of correct answers needed for a 450. Candidates therefore cannot calculate an official pass estimate from a practice percentage. Two question banks can also differ in content, difficulty, explanation quality, and whether every practice item is treated equally. Their reported percentages are specific to those resources.
Do not infer an adaptive exam from the presence of a scaled score. The current public CRISC description and Candidate Guide list 150 multiple-choice questions in four hours; they do not identify computerized adaptive testing. Scaling is score reporting, while adaptive testing describes how an exam selects items. They are separate concepts.
Scored and pretest questions
ISACA says the exam contains scored items and pretest items. Pretest items are not used to calculate the exam score. Candidates are not told which questions are pretest, so answer every item. The current guide's summary does not publish a CRISC-specific pretest count. Treating an uncertain item as experimental is a poor use of time.
The guide describes scores as based on the total scored items answered correctly. It also states there is no penalty for an incorrect response. If unsure, eliminate weak options and select the best supported answer. Leaving an item blank cannot improve the total.
How domain feedback works
ISACA provides domain-level information after testing, but the Candidate Guide says it is for informational purposes. The overall score is not a calculation that adds four individual domain percentages. Domain percentages describe the portion of exam content associated with each domain and are not used to calculate the score. The guide does not set a separate passing threshold for each domain.
This is useful when interpreting a result. A strong indicator in one domain does not independently cancel out a weak result elsewhere according to a publicly stated formula. A low domain indicator is a cue to review the tasks and your preparation records, not a list of exact questions missed. ISACA does not provide item-level results.
The current CRISC outline assigns Governance 26 percent, Risk Assessment 22 percent, Risk Response and Reporting 32 percent, and Technology and Security 20 percent. Those weights describe exam coverage, not a personal score multiplier or a domain cutoff. Give the larger domains appropriate preparation time while maintaining broad knowledge across all four.
Examples of correct score interpretation
A 450 result
A candidate receives 450. They passed because the score meets the threshold. The result does not tell them that they answered 56.25 percent of questions correctly or that exactly a certain raw number was right. They should review the official result and, if experience-qualified, proceed to the certification application.
A 449 result
A candidate receives 449. They did not meet the 450 passing threshold. The one scaled-score point is not equivalent to one question. The result also does not reveal which specific answer changed the outcome, because ISACA does not provide question-level data.
A high practice-bank score
A candidate scores 85 percent on a practice bank and asks whether that guarantees a pass. It does not. The bank's items and scoring are not converted by ISACA to the official scale. Review whether the bank follows the current 2025 outline and whether you can explain the reasons behind answers, including plausible distractors.
Use practice scores as diagnostic evidence
Practice performance is useful for tracking progress on a consistent resource. Take mixed sets under realistic timing, record topic or domain patterns, and separate confident answers from guesses. A guessed correct item may signal a knowledge gap. A confident wrong response may reveal a persistent misconception such as treating a control owner as the risk owner.
For each miss, write the scenario facts, requested action, your reasoning, and the better principle. Then solve a fresh variation after a delay. This tests whether you learned the concept or remembered the original key. Keep the question source aligned with the current outline; a resource built for earlier weights or tasks may not be a complete diagnostic.
If a practice service offers a score estimate, treat it as that provider's estimate unless ISACA has explicitly validated the conversion. Do not schedule or cancel an exam solely because a practice percentage maps to an imagined 450. Combine practice evidence with coverage of the task statements, timing, and your ability to reason through new cases.
Results and rescoring
The Candidate Guide says candidates receive a preliminary status at the end of the exam and an official score through MyISACA and email generally within 10 working days. It does not provide question-level results. A candidate who fails may request a rescore in writing within 30 days after the official result release. The listed fee is US$75, and PSI performs the rescore.
A passing result is the exam milestone. To become certified, submit the experience application within five years, document three years of relevant work across at least two domains, have a supervisor or manager verify experience, and pay the US$50 processing fee. The scaled score does not change those requirements.
Scoring myths to avoid
- 450 is a scaled score, not a raw count or percentage correct.
- There is no published direct conversion from a practice-bank percentage to the official score.
- Domain feedback is informational and does not create separate domain pass thresholds.
- Pretest questions do not count, but candidates cannot identify them during the exam.
- A scaled score by itself does not establish that the exam is adaptive.
- ISACA does not provide question-level scores or a public raw-question cutoff for a 450.
The candidate-facing rule is direct: 450 or higher passes. Interpret the score on ISACA's scale, use domain feedback as a learning aid, and do not claim a raw percentage that ISACA does not publish. That keeps your preparation decisions grounded in evidence rather than a fabricated conversion.
Interpret the scale without inventing a raw cutoff The CRISC result is reported from 200 to 800, and 450 is the passing point. The score is scaled so that the reported standard can be used across different exam forms. It is not a percent correct. Since ISACA does not publish a conversion table from a raw number of correct items to a scaled score, a candidate cannot determine the required number of correct answers from 450 divided by 800. This matters when reviewing commercial practice tests. A 78 percent on a question bank can show that the candidate handled those questions well under those conditions. It does not establish an official CRISC scaled result. The question bank may use a different topic mix, difficulty, or scoring method. Use practice performance to find weak concepts and track progress on comparable fresh sets, not to claim an official pass prediction. Domain feedback gives another view, but it is not four separate pass marks. A candidate can have stronger performance in one domain and weaker performance in another while the overall scaled score determines pass or fail. If a report flags Risk Assessment, translate that label into tasks such as defining risk scenarios, analyzing likelihood and impact, and choosing appropriate risk information. Do not infer an exact number of missed questions from the feedback. Examples of useful interpretation A candidate receives 450. The result meets the stated threshold. The candidate should not conclude that the score means 56.25 percent correct or that every domain was equally strong. If the candidate is pursuing certification, the next step is to confirm experience eligibility and submit the application within the applicable window. A candidate receives 449. The result falls one scaled point below the threshold. It is a nonpassing result, but it does not show that exactly one answer separated the candidate from passing. The report may offer domain feedback, which can help choose a revision area, but it is not an item-by-item explanation. A candidate's practice average rises from 62 percent to 76 percent. That is useful evidence of improvement if the question sets are reasonably comparable and the candidate can explain missed answers. It still should not be converted into a guaranteed scaled score. A better readiness check combines outline coverage, timed work, and the ability to reason through new scenarios without recognizing a memorized answer. Scaled scoring and test format answer different questions. Scaling concerns how a result is reported. Adaptive testing concerns whether the exam selects questions based on previous answers. CRISC's public format describes 150 multiple-choice items in four hours and does not describe CAT. Do not infer that a test is adaptive simply because it uses a scaled score.
Interpret the scale without inventing a raw cutoff The CRISC result is reported from 200 to 800, and 450 is the passing point. The score is scaled so that the reported standard can be used across different exam forms. It is not a percent correct. Since ISACA does not publish a conversion table from a raw number of correct items to a scaled score, a candidate cannot determine the required number of correct answers from 450 divided by 800. This matters when reviewing commercial practice tests. A 78 percent on a question bank can show that the candidate handled those questions well under those conditions. It does not establish an official CRISC scaled result. The question bank may use a different topic mix, difficulty, or scoring method. Use practice performance to find weak concepts and track progress on comparable fresh sets, not to claim an official pass prediction. Domain feedback gives another view, but it is not four separate pass marks. A candidate can have stronger performance in one domain and weaker performance in another while the overall scaled score determines pass or fail. If a report flags Risk Assessment, translate that label into tasks such as defining risk scenarios, analyzing likelihood and impact, and choosing appropriate risk information. Do not infer an exact number of missed questions from the feedback. Examples of useful interpretation A candidate receives 450. The result meets the stated threshold. The candidate should not conclude that the score means 56.25 percent correct or that every domain was equally strong. If the candidate is pursuing certification, the next step is to confirm experience eligibility and submit the application within the applicable window. A candidate receives 449. The result falls one scaled point below the threshold. It is a nonpassing result, but it does not show that exactly one answer separated the candidate from passing. The report may offer domain feedback, which can help choose a revision area, but it is not an item-by-item explanation. A candidate's practice average rises from 62 percent to 76 percent. That is useful evidence of improvement if the question sets are reasonably comparable and the candidate can explain missed answers. It still should not be converted into a guaranteed scaled score. A better readiness check combines outline coverage, timed work, and the ability to reason through new scenarios without recognizing a memorized answer. Scaled scoring and test format answer different questions. Scaling concerns how a result is reported. Adaptive testing concerns whether the exam selects questions based on previous answers. CRISC's public format describes 150 multiple-choice items in four hours and does not describe CAT. Do not infer that a test is adaptive simply because it uses a scaled score.
Common questions
What is the CRISC passing score?
A scaled score of 450 or higher on ISACA's 200-to-800 scale.
Does 450 mean 56.25% correct?
No. The CRISC score is scaled, and ISACA does not publish a direct raw-percentage conversion.
Are CRISC domain results part of the passing calculation?
The candidate guide says domain results are informational and domain percentages are not used to calculate the overall score.
Can I convert my practice-test percentage to the official score?
No official conversion is published. Use practice percentages as feedback on that question set, not as an ISACA score prediction.
How many CRISC questions are unscored?
ISACA says pretest questions are unscored but the current guide summary does not give a CRISC-specific count. Candidates cannot identify them.