JoJoCal19 wrote: » Can you advise of your work experience and any other certs? The CISM is oriented towards people with 5+ years of security management experience across the domains of the exam. Generally having enough experience in the domains is enough to pass with relative ease. Absent deep enough experience across all the domains, the Review Manual is recommended to fill in knowledge gaps. When going through the Q/A book, did you understand the reasons of the right answer? Also, the Q/A book is not recommended. The Online QAE database is much much better as it simulates actual exam experience better.