Current official format: the CISSP exam uses computerized adaptive testing for all exam languages, lasts up to three hours and contains 100–150 items. The passing standard is 700 out of 1,000 scaled points.
CAT is not a normal percentage test
In a linear mock exam, everyone receives a fixed set of questions and a raw percentage is calculated at the end. A computerized adaptive test continuously updates an estimate of your ability. After each answer, the engine selects another item intended to measure that estimate more precisely while maintaining the required exam-content coverage.
This is why two candidates can see different questions and finish after different numbers of items. The sequence is part of the measurement.
Why the exam stops
After the minimum length, the engine can end the exam when it can determine with high statistical confidence that your ability is above or below the passing standard. If it cannot make that determination, it continues asking questions, up to the maximum length or time limit.
An early stop is not automatically good or bad. It means the engine reached a confident decision. The result — not the question count — tells you which side of the standard you landed on.
The eight current CISSP domains
Adaptive selection does not remove the blueprint. Your exam still has to sample the content areas required by the current outline. A useful CAT simulator therefore needs both adaptive difficulty and blueprint constraints.
What realistic CAT practice should teach
- Commit to each answer. The live adaptive exam is forward-only; do not build a habit of revisiting every item.
- Manage a three-hour budget. Practice at a pace that leaves room for 150 items, even if your session may end earlier.
- Expect difficulty to feel uncomfortable. CAT selects informative questions near your estimated ability. Feeling challenged is not evidence that you are failing.
- Read for role and priority. CISSP frequently asks for the best management, governance or process decision, not the fastest technical action.
- Review ability trends and domain gaps. A single raw score hides whether your performance is stable or concentrated in a few familiar domains.
How CISSP Vault simulates the experience
CISSP Vault runs a local CAT-style engine with adaptive item selection, official domain weighting, a 100–150 question range, a three-hour timer and a confidence-based verdict. After the session it shows an ability trajectory and domain proficiency bands so you can see how the estimate changed.
It is a training simulation, not the official ISC2 scoring engine, and it cannot predict a live result with certainty. Its purpose is to rehearse the decision pressure and feedback loop that fixed mock exams leave out.
Official references
Exam format and domain weights were checked against the ISC2 CISSP Exam Outline and ISC2 Computerized Adaptive Testing guide. Last reviewed August 28, 2026.