Is CGEIT worth it — and is it for you?
A 9-minute orientation so you can decide with your eyes open.
CGEIT — Certified in the Governance of Enterprise IT — is ISACA's credential for the people who govern IT, not the people who run it. It is the only IT-governance certification aimed at the individual, and it is deliberately framework-agnostic: it tests judgement, not memorised checklists.
Who actually sits it
CIOs, IT directors, enterprise and governance architects, GRC leaders, consultants and senior auditors — people who advise or oversee how technology delivers enterprise value. ISACA expects roughly five years of governance-related experience for full certification, so it skews senior.
The shape of the exam
- 150 scenario questions, 4 hours. Pass mark is 450 on a 200–800 scale.
- Four domains, unevenly weighted — Governance of Enterprise IT 40%, Benefits Realization 26%, Risk Optimization 19%, IT Resources 15%.
- Not a recall test. Two or three options are usually technically right; one reflects sound governance judgement. That's the whole game.
Why it pays
CGEIT consistently ranks among the highest-earning IT certifications because it certifies board-facing judgement, not a tool. In a market now wrestling with AI governance, that judgement is scarce — and the 2024 exam refresh added AI governance, data-driven decision-making and ESG precisely because boards need it.
Key concepts to lock in
- CGEIT certifies governance judgement, not technical skill
- 150 questions · 4 hours · pass at 450/800
- Domain 1 is 40% of the exam — weight your effort
- 2024 refresh added AI governance, data-driven decisions, ESG