Certified in Governance, Risk and Compliance (CGRC) professionals carry the knowledge and skills to integrate governance, performance management, risk management and regulatory compliance. As organizational tech roadmaps and regulations evolve, these experts drive the progress necessary for businesses to grow, while following established guidance.

CGRC certification holders are being called upon to engage in the lifecycle of the certification by responding to a short survey on today’s work climate. This important step in the ISC2 examination evolution will help shape the certification’s future.

All CGRC members are encouraged to review the current CGRC exam outline and consider the following questions:

  1. Do you believe that the current CGRC exam outline adequately covers the existing and emerging cybersecurity techniques and threats CGRC practitioners are facing in their jobs today?
  2. If not, what sort of topics/content should be added to the CGRC exam outline?
  3. What content currently on the CGRC exam outline is no longer relevant to today’s professionals?

Please send your answers to these questions to cgrcjta@isc2.org no later than March 4, 2025. When sending your feedback, please be sure to include your ISC2 Member ID number. You can also submit this activity in the CPE portal to earn one credit.

This feedback will be compiled and presented to the Job Task Analysis (JTA) Committee and will help shape the upcoming CGRC JTA Workshop, tentatively scheduled for March 25-27, 2025.

About Job Task Analysis (JTAs)

JTAs are a methodical process used in determining the tasks performed in the field by current credential holders, as well as the knowledge and skills required to execute those tasks successfully. ISC2 maintains the accuracy, relevance and excellence of exams by conducting regular surveys and workshops with today’s cybersecurity professionals.